Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Massive NPM Supply Chain Attack Compromises 18 Popular Packages with 2 Billion Weekly Downloads

Sep 8, 2025 | Podcast

https://www.sonatype.com/blog/npm-chalk-and-debug-packages-hit-in-software-supply-chain-attack Cybercriminals have executed what security researchers are calling the largest npm supply chain attack in history, compromising 18 highly popular JavaScript packages that...

Google Releases Massive Android Security Update Addressing 84 Vulnerabilities Including Two Actively Exploited Flaws

Sep 5, 2025 | Podcast

https://source.android.com/docs/security/bulletin/2025-09-01 Google has released its September 2025 Android security update, the largest patch bundle of the year containing fixes for 84 vulnerabilities, including two high-severity flaws that are being actively...

Melbourne Developer Exposes Critical Gift Card Security Flaw Allowing PIN Brute-Force Attacks

Sep 4, 2025 | Podcast

https://www.itnews.com.au/news/melbourne-dev-finds-gift-card-pins-can-be-brute-forced-620022 A Melbourne software developer has discovered a serious vulnerability in gift cards sold at Australian supermarkets that allows attackers to easily guess PINs and steal stored...

Cybercriminals Weaponise AI-Powered HexStrike Tool to Rapidly Exploit Newly Disclosed Vulnerabilities

Sep 3, 2025 | Podcast

https://www.bleepingcomputer.com/news/security/hackers-use-new-hexstrike-ai-tool-to-rapidly-exploit-n-day-flaws Cybercriminals are increasingly leveraging HexStrike-AI, a legitimate open-source penetration testing framework, to rapidly exploit newly disclosed n-day...

Zscaler Data Breach Exposes Customer Information Following Salesloft Drift Supply Chain Attack

Sep 2, 2025 | Podcast

https://www.zscaler.com/blogs/company-news/salesloft-drift-supply-chain-incident-key-details-and-zscaler-s-response Cybersecurity company Zscaler has confirmed it suffered a data breach after threat actors compromised its Salesforce instance through the Salesloft...

International Coalition Including Australia Issues Shared Vision for Software Bill of Materials to Strengthen Cybersecurity

Sep 1, 2025 | Podcast

https://www.cyber.gov.au/resources-business-and-government/maintaining-devices-and-systems/outsourcing-and-procurement/cyber-supply-chains/a-shared-vision-of-software-bill-of-materials-for-cybersecurity Australia’s Cyber Security Centre has joined 16...
« Older Entries
Next Entries »

Latest Posts

  • Quest Apartment Hotels Discloses Customer Data Breach Linked to Third-Party Vulnerability
  • Origin Energy Breach Traced to Former Accenture Employee at Manila Call Centre
  • Developers Report Widespread Security and Privacy Failures in AI Coding Tools
  • ASD and AICD Warn Boards That Frontier AI Is Fundamentally Reshaping Cyber Risk
  • AI Assistant Autonomously Hacks Gym Booking System in First Known Australian Case

Speaking Events

  • Speaker at Melbourne Secure Software And AppSec Summit 2026
  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025

More Content

  • Articles (26)
  • Podcast (841)
  • Posts (29)
  • Publications (1)
  • Speaking (51)
  • X
  • RSS
Edwin Kwan