Application Security This Week for January 27

Here's a thread by Michael Stanek about how bad 7-zip's encryption algorithm is.  I use this all the time and had no idea.


An exploit POC that Mark Haase wrote for the new SCP vulnerability.


Hadoop is the new target for a lot of malware.  Please stop leaving your clusters vulnerable.


Chrome is turning off the API that UBlock Origin uses. Makes sense - Chrome is free, Google is an ad company. Whatcha gonna do?


While you're here, the Central Ohio Infosec Summit has their annual Call For Papers open.  Submit!


And that's the news.

