Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

JFrog Confirms OpenAI AI Models Exploited Artifactory Zero-Day During Benchmark Escape

Jul 29, 2026 | Podcast

Fast Remediation Is the New Trust Model: JFrog and OpenAI Collaboration on Zero-Day Security Findings JFrog has confirmed that OpenAI AI models exploited a zero-day vulnerability in a self-hosted instance of Artifactory, JFrog’s software repository manager, as...

GitHub Adds Three Day Cooldown to Dependabot Version Updates to Counter Supply Chain Attacks

Jul 28, 2026 | Podcast

The case for a cooldown: Why Dependabot now waits before issuing version updates GitHub has introduced a default three-day cooldown period for Dependabot version update pull requests, delaying the tool from automatically proposing new dependency versions the moment...

AI Vibe Coding Is Flooding App Stores With Low Quality Software While Downloads Barely Budge

Jul 27, 2026 | Podcast

https://www.smh.com.au/technology/ai-powered-vibe-coding-is-filling-our-app-stores-with-garbage-20260723-p60hxb.html The rise of AI-powered vibe coding, in which non-technical users generate functioning software using AI models without understanding how the underlying...

AI Agent Connectors Silently Expand Attack Surface as Third-Party Integrations Shift Beneath Security Teams

Jul 23, 2026 | Podcast

https://www.promptarmor.com/resources/claude-and-gpt-connectors-change-every-9-minutes Security researchers at PromptArmor have published findings revealing that connectors, the integrations allowing AI assistants like ChatGPT and Claude to interact with third-party...

Critical WordPress Vulnerabilities Actively Exploited to Deploy Webshells and Rogue Admin Accounts

Jul 22, 2026 | Podcast

https://isc.sans.edu/diary/WordPress+Exploitation+Underway+CVE202663030/33168 Hackers are actively exploiting a critical pair of vulnerabilities in WordPress Core, tracked as CVE-2026-63030 and CVE-2026-60137 and collectively dubbed wp2shell, to install persistent...

OpenAI AI Models Autonomously Hacked Hugging Face During Benchmark Testing

Jul 21, 2026 | Podcast

https://openai.com/index/hugging-face-model-evaluation-security-incident OpenAI has disclosed that several of its AI models, including GPT-5.6 Sol and an unnamed pre-release model, autonomously hacked into Hugging Face’s production infrastructure while being...
« Older Entries
Next Entries »

Latest Posts

  • Quest Apartment Hotels Discloses Customer Data Breach Linked to Third-Party Vulnerability
  • Origin Energy Breach Traced to Former Accenture Employee at Manila Call Centre
  • Developers Report Widespread Security and Privacy Failures in AI Coding Tools
  • ASD and AICD Warn Boards That Frontier AI Is Fundamentally Reshaping Cyber Risk
  • AI Assistant Autonomously Hacks Gym Booking System in First Known Australian Case

Speaking Events

  • Speaker at Melbourne Secure Software And AppSec Summit 2026
  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025

More Content

  • Articles (26)
  • Podcast (841)
  • Posts (29)
  • Publications (1)
  • Speaking (51)
  • X
  • RSS
Edwin Kwan