Ok, this is definitely geeky, but I thought it was interesting:

“There’s a 4+ year old security hole in many XML parsers called XXE, the Xml eXternal Entity attack.” (from Some Bits: Nelson’s blog)

Read the whole thing here.