Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Google Patches Maximum Severity CVSS 10 Flaw in Gemini CLI Amid Growing AI Tool Vulnerabilities

Apr 29, 2026 | Podcast

A CVSS 10.0 in Gemini CLI: How Agentic Workflows Are Reshaping Supply Chain Risk Google has patched a critical, maximum-severity vulnerability in its Gemini CLI tool — the @google/gemini-cli npm package and the google-github-actions/run-gemini-cli GitHub Actions...

Critical cPanel & WHM Authentication Bypass Vulnerability Actively Exploited in the Wild

Apr 28, 2026 | Podcast

https://www.rapid7.com/blog/post/etr-cve-2026-41940-cpanel-whm-authentication-bypass On April 28, 2026, cPanel issued an emergency security update addressing CVE-2026-41940, a critical authentication bypass vulnerability affecting cPanel & WHM and WP Squared...

Critical Linux “copyfiles” Vulnerability Grants Root Access on Major Distributions

Apr 27, 2026 | Podcast

https://xint.io/blog/copy-fail-linux-distributions A newly discovered Linux vulnerability, dubbed “copy_file_range” or “CopyFail,” is sending shockwaves through the cybersecurity community after researchers found it can be exploited to grant...

Anthropic Mythos Discovered 271 Security Vulnerabilities in Firefox

Apr 24, 2026 | Podcast

The zero-days are numbered  Mozilla has announced a groundbreaking collaboration with Anthropic that leveraged advanced AI models to identify and fix 271 security vulnerabilities in Firefox 150, marking a potential paradigm shift in software security. The Firefox team...

Malicious Cryptocurrency Wallet Apps Infiltrate China’s Apple App Store

Apr 23, 2026 | Podcast

https://securelist.com/fakewallet-cryptostealer-ios-app-store/119474 China’s Apple App Store has been compromised by a wave of fraudulent cryptocurrency wallet applications designed to steal users’ digital assets, according to recent security research....
« Older Entries
Next Entries »

Latest Posts

  • Apple Introduces Automatic Password Changing Feature for Compromised Credentials
  • OpenClaw AI Agent Found Vulnerable to Phishing Attacks, Leaking Sensitive User Data
  • Anthropic Rolls Out Claude Fable 5 in Limited-Time Free Release Before Usage-Based Pricing Kicks In
  • GitHub Announces Sweeping npm Security Overhaul to Combat Supply Chain Attacks
  • Critical HTTP/2 Bomb Vulnerability Exposes Major Web Servers to Remote Denial-of-Service Attacks

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (805)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan