Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Apple Patches Zero-Click Messaging Vulnerability Exploited to Target European Journalists with Israeli Spyware

Jun 18, 2025 | Podcast

Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted Apple has confirmed that a critical zero-click vulnerability in its Messages app was actively exploited by sophisticated attackers to infect European journalists...
Researchers Expose Massive Dark Advertising Network Using Fake CAPTCHAs to Spread Disinformation and Malware

Researchers Expose Massive Dark Advertising Network Using Fake CAPTCHAs to Spread Disinformation and Malware

Jun 17, 2025 | Podcast

https://krebsonsecurity.com/2025/06/inside-a-dark-adtech-empire-fed-by-fake-captchas/ Security researchers have uncovered a sophisticated criminal advertising ecosystem that leverages fake CAPTCHA challenges to trick users into enabling malicious push notifications,...

Australian Regulator Orders Superannuation Funds to Strengthen Authentication After Cyber Attacks

Jun 16, 2025 | Podcast

https://www.apra.gov.au/for-action-information-security-obligations-and-critical-authentication-controls Australia’s financial regulator has issued an urgent directive to all superannuation funds, demanding they assess and strengthen their authentication...

Massive Supply Chain Attack Targets npm and PyPI Ecosystems, Affecting Nearly One Million Weekly Downloads

Jun 13, 2025 | Podcast

https://www.aikido.dev/blog/supply-chain-attack-on-react-native-aria-ecosystem Cybersecurity researchers have uncovered a sophisticated supply chain attack targeting over a dozen packages associated with GlueStack, delivering malware to developers worldwide. The...

Over 84,000 Roundcube Webmail Instances Exposed to Critical Remote Code Execution Flaw

Jun 12, 2025 | Podcast

https://fearsoff.org/research/roundcube More than 84,000 Roundcube webmail installations worldwide remain vulnerable to CVE-2025-49113, a critical remote code execution flaw that affects versions spanning over a decade and has already been exploited by cybercriminals...

Single Threat Actor Behind 100+ Backdoored GitHub Repositories Targeting Cybercriminals

Jun 11, 2025 | Podcast

The strange tale of ischhfd83: When cybercriminals eat their own Sophos researchers have traced more than a hundred backdoored malware repositories on GitHub to a single Russian threat actor using the identifier “ischhfd83,” who has been systematically...
« Older Entries
Next Entries »

Latest Posts

  • Australian Businesses Making Regular Ransomware Payments Despite Government Warnings
  • AI Excels at Finding Software Bugs But Struggles With Meaningful Remediation
  • Malicious Code Repositories Target Next.js Developers Through Fake Job Interview Projects
  • Google Disrupts Chinese Espionage Campaign Using Sheets for Command and Control
  • Critical Vulnerabilities in Anthropic’s Claude Code Enable Remote Code Execution and Credential Theft

Speaking Events

  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025
  • Speaker at The Artificial Unintelligence Conference
  • INFS2701 Guest Lecture at UNSW Business School
  • Speaker at ADAPT Cloud & Infrastructure Edge 2025

More Content

  • Articles (26)
  • Podcast (746)
  • Posts (26)
  • Publications (1)
  • Speaking (47)
  • X
  • RSS
Edwin Kwan