Application Security This Week for January 17

Breakdown of a malicious app that man-in-the-middled the Google Signin.


Good Wired article about tools the fibby uses to get around smartphone encryption.


Oh man, cross-origin images and data leakage.  Certainly adding this to my manual testing.


This has been patched, but a really good explainer on how the RCE in Office 365 was discovered.


Using game hacking to explain the danger of unsigned code.


