Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

First AI-Powered Ransomware Using Machine Learning to Generate Malicious Code

Aug 26, 2025 | Podcast

#ESETResearch has discovered the first known AI-powered ransomware, which we named #PromptLock. The PromptLock malware uses the gpt-oss:20b model from OpenAI locally via the Ollama API to generate malicious Lua scripts on the fly, which it then executes 1/6...

Google Mandates Identity Verification for All Android Developers to Combat Malware Threats

Aug 25, 2025 | Podcast

https://android-developers.googleblog.com/2025/08/elevating-android-security.html Google has announced a comprehensive new security initiative called “Developer Verification” that will require all Android app developers to verify their identities before...

Cybercriminals Exploit Japanese Unicode Character to Create Deceptive Booking.com Phishing Campaigns

Aug 22, 2025 | Podcast

https://www.bleepingcomputer.com/news/security/bookingcom-phishing-campaign-uses-sneaky-character-to-trick-you Threat actors have launched a sophisticated phishing campaign targeting Booking.com users by exploiting the Japanese hiragana character “ん” to...

Microsoft Teams Deploys Enhanced Security Features to Block Malicious URLs and Dangerous File Types

Aug 21, 2025 | Podcast

https://www.bleepingcomputer.com/news/security/microsoft-teams-to-protect-against-malicious-urls-dangerous-file-types Microsoft has announced significant security enhancements for Microsoft Teams that will strengthen protection against malware and file-based attacks...

Cybercriminals Launch Sophisticated ‘Ramp and Dump’ Schemes Targeting Brokerage Accounts Through Mobile Phishing

Aug 20, 2025 | Podcast

https://krebsonsecurity.com/2025/08/mobile-phishers-target-brokerage-accounts-in-ramp-and-dump-cashout-scheme Cybercriminal groups specializing in mobile phishing attacks have shifted their focus to targeting customers of major brokerage platforms, implementing a...

New HTTP/2 ‘MadeYouReset’ Attack Bypasses Security Limits to Enable Massive DoS Campaigns

Aug 19, 2025 | Podcast

https://deepness-lab.org/publications/madeyoureset/ Security researchers have discovered a critical new HTTP/2 vulnerability called MadeYouReset that enables attackers to bypass standard server connection limits and launch devastating denial-of-service attacks against...
« Older Entries
Next Entries »

Latest Posts

  • Malicious Websites Are Embedding Hidden Instructions to Hijack AI Agents Through Indirect Prompt Injection
  • Microsoft Introduces Smarter Bot Protection in Microsoft Teams Meetings
  • Anthropic to Restore Claude Fable Access After Export Control Suspension
  • Apple’s Hide My Email Service Has Been Leaking Real Email Addresses for Over a Year Despite Being Reported
  • Massive Automated Password Spray Attack Against Microsoft Azure Compromises 78 Accounts Across 64 Organisations

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (820)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan