Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Malicious OpenClaw Skill Weaponizes AI Agent Framework to Distribute Malwar

May 6, 2026 | Podcast

https://www.zscaler.com/blogs/security-research/malicious-openclaw-skill-distributes-remcos-rat-and-ghostloader Zscaler ThreatLabz researchers have uncovered a campaign in which threat actors weaponised the OpenClaw open-source AI agent framework to distribute both...

ACSC Issues Warning Over ClickFix Attacks Deploying Vidar Stealer Malware

May 5, 2026 | Podcast

https://www.cyber.gov.au/about-us/view-all-content/alerts-and-advisories/clickfix-distributing-vidar-stealer-via-wordpress-targeting-australian-infrastructure Australia’s cybersecurity authorities have issued an official warning regarding an active and...

Cybercriminals Abuse Amazon SES to Launch Undetected Phishing Campaigns

May 4, 2026 | Podcast

https://securelist.com/amazon-ses-phishing-and-bec-attacks/119623 Security researchers have uncovered a new phishing campaign exploiting Amazon Simple Email Service (SES), Amazon’s legitimate cloud-based email platform, to send malicious emails that bypass...

New “ClawHub” and “ClawSwarm” Malware Campaigns Target AI Agents for Crypto Recruitment

May 1, 2026 | Podcast

https://www.manifold.security/blog/clawhub-clawswarm-agent-crypto-recruitment Head of Research, Ax Sharma, at Manifold Security have uncovered a sophisticated new threat campaign leveraging two related malware frameworks — dubbed “ClawHub” and...

KnowBe4 Research Reveals 86% of Phishing Attacks Are Now AI-Driven

Apr 30, 2026 | Podcast

https://www.knowbe4.com/press/knowbe4-research-finds-86-of-phishing-attacks-are-ai-driven New research from cybersecurity awareness training firm KnowBe4 has uncovered a striking and alarming trend in the phishing threat landscape: a staggering 86% of phishing attacks...

Google Patches Maximum Severity CVSS 10 Flaw in Gemini CLI Amid Growing AI Tool Vulnerabilities

Apr 29, 2026 | Podcast

A CVSS 10.0 in Gemini CLI: How Agentic Workflows Are Reshaping Supply Chain Risk Google has patched a critical, maximum-severity vulnerability in its Gemini CLI tool — the @google/gemini-cli npm package and the google-github-actions/run-gemini-cli GitHub Actions...
« Older Entries
Next Entries »

Latest Posts

  • Passkeys vs Passwords: Readers Debate Whether a Smartphone PIN Can Really Be Safer Than a Complex Password
  • FIFA Bug in World Cup Streaming Infrastructure Opened Door to Remote Takeover
  • The Digital Trove: How a Single Hack Exposed One Man’s Entire Life and Why We’re All Vulnerable
  • A Three-Stage Vulnerability Chain Turning Microsoft 365 Copilot Into a Silent Data Exfiltration Weapon
  • Malicious JetBrains Marketplace Plugins Discovered Stealing AI API Keys from Developers

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (810)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan