Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Developer Faces $82,000 Bill After Stolen Google Gemini API Key Enables Massive Unauthorised Usage

Mar 4, 2026 | Podcast

https://old.reddit.com/r/googlecloud/comments/1reqtvi/82000_in_48_hours_from_stolen_gemini_api_key_my A small startup is confronting potential bankruptcy after unknown attackers exploited a compromised Google Gemini API key to rack up $82,314 in unauthorised charges...

DJI Romo Robot Vacuums Exposed Thousands of Devices Through Critical Security Flaws

Mar 3, 2026 | Podcast

https://www.theverge.com/tech/879088/dji-romo-hack-vulnerability-remote-control-camera-access-mqtt A Spanish AI strategist accidentally gained unauthorized access to approximately 7,000 DJI Romo robot vacuums worldwide after attempting to create a custom remote...

New South Wales Criminalises AI-Generated Deepfakes and Non-Consensual Intimate Content

Mar 2, 2026 | Podcast

https://dcj.nsw.gov.au/legal-and-justice/laws-and-legislation/image-based-abuse.html New South Wales has enacted comprehensive legislation criminalising the creation and distribution of sexually explicit deepfakes and non-consensual intimate imagery, marking a...

Australian Businesses Making Regular Ransomware Payments Despite Government Warnings

Feb 27, 2026 | Podcast

https://www.itnews.com.au/news/australias-big-end-of-town-is-paying-ransomware-groups-623791 At least 75 Australian businesses with annual turnover exceeding $3 million have admitted to paying ransomware demands during the first eight months of mandatory disclosure...

AI Excels at Finding Software Bugs But Struggles With Meaningful Remediation

Feb 26, 2026 | Podcast

https://www.theregister.com/2026/02/24/ai_finding_bugs/https://www.anthropic.com/news/claude-code-security Anthropic recently touted its Claude Code Security tool’s ability to discover over 500 vulnerabilities in production open-source codebases, positioning...

Malicious Code Repositories Target Next.js Developers Through Fake Job Interview Projects

Feb 25, 2026 | Podcast

Developer-targeting campaign using malicious Next.js repositories Microsoft security researchers have uncovered an attack campaign targeting Next.js developers through malicious code repositories disguised as legitimate job interview projects. The threat actors...
« Older Entries
Next Entries »

Latest Posts

  • New macOS ClickFix Attack Silently Mounts Disk Images to Deploy Information-Stealing Malware
  • WhatsApp Phishing Attack Uses Fake Business Documents to Compromise PCs
  • Anthropic’s Mythos AI Model Found Vulnerabilities in Classified US Government Systems Within Hours
  • Five Eyes Cyber Chiefs Issue Urgent Joint Warning: AI Is Reshaping Cyber Risk Faster Than Anyone Anticipated
  • Fake ABC News Website Scam Using Facebook Ads to Defraud Australians of Hundreds of Thousands of Dollars

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (815)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan