Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Scattered Spider Cybercrime Group Shifts Focus to US Insurance Industry After Retail Attacks

Jun 19, 2025 | Podcast

https://www.theregister.com/2025/06/16/scattered_spider_targets_insurance_firms Google’s threat intelligence team has issued urgent warnings that the notorious Scattered Spider cybercrime group has pivoted from targeting retail companies to launching...

Apple Patches Zero-Click Messaging Vulnerability Exploited to Target European Journalists with Israeli Spyware

Jun 18, 2025 | Podcast

Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted Apple has confirmed that a critical zero-click vulnerability in its Messages app was actively exploited by sophisticated attackers to infect European journalists...
Researchers Expose Massive Dark Advertising Network Using Fake CAPTCHAs to Spread Disinformation and Malware

Researchers Expose Massive Dark Advertising Network Using Fake CAPTCHAs to Spread Disinformation and Malware

Jun 17, 2025 | Podcast

https://krebsonsecurity.com/2025/06/inside-a-dark-adtech-empire-fed-by-fake-captchas/ Security researchers have uncovered a sophisticated criminal advertising ecosystem that leverages fake CAPTCHA challenges to trick users into enabling malicious push notifications,...

Australian Regulator Orders Superannuation Funds to Strengthen Authentication After Cyber Attacks

Jun 16, 2025 | Podcast

https://www.apra.gov.au/for-action-information-security-obligations-and-critical-authentication-controls Australia’s financial regulator has issued an urgent directive to all superannuation funds, demanding they assess and strengthen their authentication...

Massive Supply Chain Attack Targets npm and PyPI Ecosystems, Affecting Nearly One Million Weekly Downloads

Jun 13, 2025 | Podcast

https://www.aikido.dev/blog/supply-chain-attack-on-react-native-aria-ecosystem Cybersecurity researchers have uncovered a sophisticated supply chain attack targeting over a dozen packages associated with GlueStack, delivering malware to developers worldwide. The...

Over 84,000 Roundcube Webmail Instances Exposed to Critical Remote Code Execution Flaw

Jun 12, 2025 | Podcast

https://fearsoff.org/research/roundcube More than 84,000 Roundcube webmail installations worldwide remain vulnerable to CVE-2025-49113, a critical remote code execution flaw that affects versions spanning over a decade and has already been exploited by cybercriminals...
« Older Entries
Next Entries »

Latest Posts

  • New “ClawHub” and “ClawSwarm” Malware Campaigns Target AI Agents for Crypto Recruitment
  • KnowBe4 Research Reveals 86% of Phishing Attacks Are Now AI-Driven
  • Google Patches Maximum Severity CVSS 10 Flaw in Gemini CLI Amid Growing AI Tool Vulnerabilities
  • Critical cPanel & WHM Authentication Bypass Vulnerability Actively Exploited in the Wild
  • Critical Linux “copyfiles” Vulnerability Grants Root Access on Major Distributions

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (777)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan