Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Malicious NPM Packages Leverage Adspect Redirects to Evade Security and Lure Victims to Cryptocurrency Scams

Nov 21, 2025 | Podcast

https://socket.dev/blog/npm-malware-campaign-uses-adspect-cloaking-to-deliver-malicious-redirects Researchers have uncovered a concerning trend of malicious NPM packages that are abusing the Adspect cloud-based service to bypass security measures and lead unsuspecting...

Optus Fined $826,000 for Vulnerability That Enabled Scammers to Steal Phone Numbers and Access Bank Accounts

Nov 20, 2025 | Podcast

https://www.itnews.com.au/news/optus-takes-826000-hit-for-anti-scam-breaches-621882 In a significant blow to Australia’s second-largest telecommunications provider, Optus has been slapped with an $826,000 fine by the Australian Communications and Media Authority...

Azure Experiences Largest-Ever DDoS Attack, Highlighting Ongoing Threat to Cloud Infrastructure

Nov 19, 2025 | Podcast

https://techcommunity.microsoft.com/blog/azureinfrastructureblog/defending-the-cloud-azure-neutralized-a-record-breaking-15-tbps-ddos-attack/4470422 Microsoft’s Azure cloud platform has been the target of a record-breaking distributed denial-of-service (DDoS)...

Critical Vulnerability Discovered in W3 Total Cache WordPress Plugin Enabling PHP Command Injection

Nov 18, 2025 | Podcast

https://www.bleepingcomputer.com/news/security/w3-total-cache-wordpress-plugin-vulnerable-to-php-command-injection A critical security flaw has been identified in the popular W3 Total Cache (W3TC) WordPress plugin, which could allow unauthenticated attackers to...

WhatsApp Vulnerability Exposes User Phone Numbers, Enabling Large-Scale Enumeration Attacks

Nov 17, 2025 | Podcast

https://github.com/sbaresearch/whatsapp-census/blob/main/Hey_there_You_are_using_WhatsApp.pdf A recently disclosed vulnerability in the popular messaging app WhatsApp has raised significant security concerns, as it allows attackers to potentially access the phone...

OWASP Unveils AI Vulnerability Scoring System (AIVSS) to Assess AI-Powered Threats

Nov 14, 2025 | Podcast

https://aivss.owasp.org The Open Web Application Security Project (OWASP) has introduced the AI Vulnerability Scoring System (AIVSS), a framework designed to assess the security risks associated with artificial intelligence-powered technologies. The AIVSS aims to...
« Older Entries
Next Entries »

Latest Posts

  • Quest Apartment Hotels Discloses Customer Data Breach Linked to Third-Party Vulnerability
  • Origin Energy Breach Traced to Former Accenture Employee at Manila Call Centre
  • Developers Report Widespread Security and Privacy Failures in AI Coding Tools
  • ASD and AICD Warn Boards That Frontier AI Is Fundamentally Reshaping Cyber Risk
  • AI Assistant Autonomously Hacks Gym Booking System in First Known Australian Case

Speaking Events

  • Speaker at Melbourne Secure Software And AppSec Summit 2026
  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025

More Content

  • Articles (26)
  • Podcast (841)
  • Posts (29)
  • Publications (1)
  • Speaking (51)
  • X
  • RSS
Edwin Kwan