Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
Select Page

Apple Patches Zero-Click Messaging Vulnerability Exploited to Target European Journalists with Israeli Spyware

Jun 18, 2025 | Podcast

Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted Apple has confirmed that a critical zero-click vulnerability in its Messages app was actively exploited by sophisticated attackers to infect European journalists...
Researchers Expose Massive Dark Advertising Network Using Fake CAPTCHAs to Spread Disinformation and Malware

Researchers Expose Massive Dark Advertising Network Using Fake CAPTCHAs to Spread Disinformation and Malware

Jun 17, 2025 | Podcast

https://krebsonsecurity.com/2025/06/inside-a-dark-adtech-empire-fed-by-fake-captchas/ Security researchers have uncovered a sophisticated criminal advertising ecosystem that leverages fake CAPTCHA challenges to trick users into enabling malicious push notifications,...

Australian Regulator Orders Superannuation Funds to Strengthen Authentication After Cyber Attacks

Jun 16, 2025 | Podcast

https://www.apra.gov.au/for-action-information-security-obligations-and-critical-authentication-controls Australia’s financial regulator has issued an urgent directive to all superannuation funds, demanding they assess and strengthen their authentication...

Massive Supply Chain Attack Targets npm and PyPI Ecosystems, Affecting Nearly One Million Weekly Downloads

Jun 13, 2025 | Podcast

https://www.aikido.dev/blog/supply-chain-attack-on-react-native-aria-ecosystem Cybersecurity researchers have uncovered a sophisticated supply chain attack targeting over a dozen packages associated with GlueStack, delivering malware to developers worldwide. The...

Over 84,000 Roundcube Webmail Instances Exposed to Critical Remote Code Execution Flaw

Jun 12, 2025 | Podcast

https://fearsoff.org/research/roundcube More than 84,000 Roundcube webmail installations worldwide remain vulnerable to CVE-2025-49113, a critical remote code execution flaw that affects versions spanning over a decade and has already been exploited by cybercriminals...

Single Threat Actor Behind 100+ Backdoored GitHub Repositories Targeting Cybercriminals

Jun 11, 2025 | Podcast

The strange tale of ischhfd83: When cybercriminals eat their own Sophos researchers have traced more than a hundred backdoored malware repositories on GitHub to a single Russian threat actor using the identifier “ischhfd83,” who has been systematically...
« Older Entries
Next Entries »

Latest Posts

  • OWASP Unveils AI Vulnerability Scoring System (AIVSS) to Assess AI-Powered Threats
  • Malicious NuGet Packages Deployed with Disruptive ‘Time Bomb’ Payloads
  • Swiss Authorities Warn of Phishing Scam Targeting Lost iPhone Owners
  • Dangerous runC Vulnerabilities Expose Docker and Kubernetes Containers to Potential Escape Attacks
  • Mozilla Bolsters Firefox’s Anti-Fingerprinting Defences to Enhance User Privacy

Speaking Events

  • Speaker at The Artificial Unintelligence Conference
  • INFS2701 Guest Lecture at UNSW Business School
  • Speaker at ADAPT Cloud & Infrastructure Edge 2025
  • Speaker at Sysdig Accelerate ’25 APJ Sydney
  • Speaker at EveryOps Day 2025

More Content

  • Articles (26)
  • Podcast (686)
  • Posts (25)
  • Speaking (45)
  • X
  • RSS
Edwin Kwan