Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

TeamPCP Supply Chain Attack Hits Widely Used AI Tool, Exposing Millions of Systems

Mar 25, 2026 | Podcast

https://www.endorlabs.com/learn/teampcp-isnt-done A hacker group known as TeamPCP has been caught planting malicious code inside litellm, a popular AI software library downloaded roughly 95 million times per month. Two versions of the package – 1.82.7 and 1.82.8...

Hacker Claims Breach of US Law Enforcement Tip Platform, Exposing Over 8 Million Confidential Reports

Mar 24, 2026 | Podcast

https://www.itnews.com.au/news/hacker-says-they-compromised-millions-of-confidential-police-tips-624447 A hacker operating under the alias “Internet Yiff Machine” has claimed responsibility for breaking into P3 Global Intel, a tip intelligence platform...

Australia’s Critical Infrastructure Security Laws (SoCI) Branded “Toothless” as Review Calls for Urgent Overhaul

Mar 23, 2026 | Podcast

https://www.aph.gov.au/Parliamentary_Business/Tabled_Documents/15638 An independent review of Australia’s Security of Critical Infrastructure (SoCI) Act has delivered a damning verdict, finding that the legislation is widely perceived as ineffective and failing...

Google’s Cloud Threat Horizons Report: Attackers Exploit Cloud Vulnerabilities More Than Weak Credentials

Mar 13, 2026 | Podcast

https://services.google.com/fh/files/misc/cloud_threat_horizons_report_h12026.pdf According to Google’s Cloud Threat Horizons Report, cybercriminals targeting cloud environments have been increasingly exploiting system vulnerabilities in addition to relying on...

Microsoft Teams Phishing Campaign Deploys Backdoors to Target Employees

Mar 12, 2026 | Podcast

https://www.bluevoyant.com/blog/new-a0backdoor-linked-to-teams-impersonation-and-quick-assist-social-engineering A new phishing campaign exploiting Microsoft Teams has come to light, aiming to compromise employees by delivering backdoor malware. Attackers are...

Malicious npm Package Impersonates OpenClaw Installer to Deploy Remote Access Trojan and Harvest macOS Credentials

Mar 11, 2026 | Podcast

https://research.jfrog.com/post/ghostclaw-unmasked Cybersecurity researchers have identified a malicious npm package masquerading as an OpenClaw installer that deploys a remote access trojan and exfiltrates sensitive data from compromised systems. The package, named...
« Older Entries
Next Entries »

Latest Posts

  • AI Emerges as a Game-Changer in Cyber Defence, Australian Signals Directorate Reports
  • Anthropic’s Restricted Claude Mythos Model Moves Closer to Public Release
  • Anthropic’s AI Model Finds Over Ten Thousand Critical Vulnerabilities in Global Software Infrastructure
  • npm Introduces Human Approval Gates to Counter Software Supply Chain Attacks
  • HackerOne Slashes Bug Bounty Payouts as AI Floods Open-Source Security Programs

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (796)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan