Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Thousands of Developer Secrets Exposed in Public GitLab Repositories

Dec 4, 2025 | Podcast

https://trufflesecurity.com/blog/scanning-5-6-million-public-gitlab-repositories-for-secrets Thousands of sensitive developer secrets have been inadvertently exposed through public GitLab repositories. The investigation, conducted by the Checkmarx security team, found...

WA Man Responsible for In-Flight “Evil Twin” WiFi Attacks Sentenced to 7 Years in Prison

Dec 3, 2025 | Podcast

https://www.afp.gov.au/news-centre/media-release/wa-man-jailed-stealing-intimate-material-and-using-evil-twin-wifi A WA man who was responsible for carrying out “evil twin” WiFi attacks on airline passengers has been sentenced to seven years in prison. The...

Widespread Npm Malware Attack Exposes Thousands of Developer Secrets

Dec 2, 2025 | Podcast

https://www.wiz.io/blog/shai-hulud-2-0-aftermath-ongoing-supply-chain-attack Security researchers have uncovered a widespread malware campaign targeting the popular npm package repository. Dubbed “Shai Hulud 2.0,” the attack is estimated to have exposed up...

Fake Calendly Invites Hijack Ad Manager Accounts by Spoofing Top Brands

Dec 1, 2025 | Podcast

https://pushsecurity.com/blog/uncovering-a-calendly-themed-phishing-campaign There’s a new phishing campaign that leverages fake Calendly invitations to hijack ad manager accounts. The attack targets users of popular platforms like Facebook, Google, and Microsoft Ads,...

FBI Warns of Soaring Account Takeover Fraud Ahead of Holiday Shopping Season

Nov 28, 2025 | Podcast

https://www.ic3.gov/PSA/2025/PSA251125 The Federal Bureau of Investigation (FBI) has issued a warning about the alarming rise in account takeover fraud schemes, urging the public to be vigilant against social engineering techniques perpetrated through texts, calls,...
« Older Entries
Next Entries »

Latest Posts

  • Apple Introduces Automatic Password Changing Feature for Compromised Credentials
  • OpenClaw AI Agent Found Vulnerable to Phishing Attacks, Leaking Sensitive User Data
  • Anthropic Rolls Out Claude Fable 5 in Limited-Time Free Release Before Usage-Based Pricing Kicks In
  • GitHub Announces Sweeping npm Security Overhaul to Combat Supply Chain Attacks
  • Critical HTTP/2 Bomb Vulnerability Exposes Major Web Servers to Remote Denial-of-Service Attacks

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (805)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan