Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
Select Page

Massive Chinese ‘Salt Typhoon’ Cyberattack May Have Compromised Data from Nearly Every American

Sep 9, 2025 | Podcast

https://www.nytimes.com/2025/09/04/world/asia/china-hack-salt-typhoon.html Security officials and cybersecurity experts are warning that a sophisticated Chinese cyber espionage campaign known as Salt Typhoon represents China’s most ambitious hacking operation to...

Massive NPM Supply Chain Attack Compromises 18 Popular Packages with 2 Billion Weekly Downloads

Sep 8, 2025 | Podcast

https://www.sonatype.com/blog/npm-chalk-and-debug-packages-hit-in-software-supply-chain-attack Cybercriminals have executed what security researchers are calling the largest npm supply chain attack in history, compromising 18 highly popular JavaScript packages that...

Google Releases Massive Android Security Update Addressing 84 Vulnerabilities Including Two Actively Exploited Flaws

Sep 5, 2025 | Podcast

https://source.android.com/docs/security/bulletin/2025-09-01 Google has released its September 2025 Android security update, the largest patch bundle of the year containing fixes for 84 vulnerabilities, including two high-severity flaws that are being actively...

Melbourne Developer Exposes Critical Gift Card Security Flaw Allowing PIN Brute-Force Attacks

Sep 4, 2025 | Podcast

https://www.itnews.com.au/news/melbourne-dev-finds-gift-card-pins-can-be-brute-forced-620022 A Melbourne software developer has discovered a serious vulnerability in gift cards sold at Australian supermarkets that allows attackers to easily guess PINs and steal stored...

Cybercriminals Weaponise AI-Powered HexStrike Tool to Rapidly Exploit Newly Disclosed Vulnerabilities

Sep 3, 2025 | Podcast

https://www.bleepingcomputer.com/news/security/hackers-use-new-hexstrike-ai-tool-to-rapidly-exploit-n-day-flaws Cybercriminals are increasingly leveraging HexStrike-AI, a legitimate open-source penetration testing framework, to rapidly exploit newly disclosed n-day...

Zscaler Data Breach Exposes Customer Information Following Salesloft Drift Supply Chain Attack

Sep 2, 2025 | Podcast

https://www.zscaler.com/blogs/company-news/salesloft-drift-supply-chain-incident-key-details-and-zscaler-s-response Cybersecurity company Zscaler has confirmed it suffered a data breach after threat actors compromised its Salesforce instance through the Salesloft...
« Older Entries
Next Entries »

Latest Posts

  • OWASP Unveils AI Vulnerability Scoring System (AIVSS) to Assess AI-Powered Threats
  • Malicious NuGet Packages Deployed with Disruptive ‘Time Bomb’ Payloads
  • Swiss Authorities Warn of Phishing Scam Targeting Lost iPhone Owners
  • Dangerous runC Vulnerabilities Expose Docker and Kubernetes Containers to Potential Escape Attacks
  • Mozilla Bolsters Firefox’s Anti-Fingerprinting Defences to Enhance User Privacy

Speaking Events

  • Speaker at The Artificial Unintelligence Conference
  • INFS2701 Guest Lecture at UNSW Business School
  • Speaker at ADAPT Cloud & Infrastructure Edge 2025
  • Speaker at Sysdig Accelerate ’25 APJ Sydney
  • Speaker at EveryOps Day 2025

More Content

  • Articles (26)
  • Podcast (686)
  • Posts (25)
  • Speaking (45)
  • X
  • RSS
Edwin Kwan