Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

60% of MD5 Password Hashes Now Crackable in Under an Hour With a Single GPU

May 8, 2026 | Podcast

https://www.kaspersky.com/blog/passwords-hacking-research-2026/55743 New research from Kaspersky, released on World Password Day 2026, delivers a wake-up call for organisations still relying on MD5 hashing to protect user credentials. Analyzing a dataset of more than...

Survey Finds 1 in 8 Employees Consider Selling Company Login Credentials Justifiable

May 7, 2026 | Podcast

https://www.cifas.org.uk/workplace-fraud-trends-2025 A alarming report from UK fraud prevention organisation Cifas has revealed that 13 percent of employees either have sold company login credentials in the past year or know someone who has, and an equally troubling...

Malicious OpenClaw Skill Weaponizes AI Agent Framework to Distribute Malwar

May 6, 2026 | Podcast

https://www.zscaler.com/blogs/security-research/malicious-openclaw-skill-distributes-remcos-rat-and-ghostloader Zscaler ThreatLabz researchers have uncovered a campaign in which threat actors weaponised the OpenClaw open-source AI agent framework to distribute both...

ACSC Issues Warning Over ClickFix Attacks Deploying Vidar Stealer Malware

May 5, 2026 | Podcast

https://www.cyber.gov.au/about-us/view-all-content/alerts-and-advisories/clickfix-distributing-vidar-stealer-via-wordpress-targeting-australian-infrastructure Australia’s cybersecurity authorities have issued an official warning regarding an active and...

Cybercriminals Abuse Amazon SES to Launch Undetected Phishing Campaigns

May 4, 2026 | Podcast

https://securelist.com/amazon-ses-phishing-and-bec-attacks/119623 Security researchers have uncovered a new phishing campaign exploiting Amazon Simple Email Service (SES), Amazon’s legitimate cloud-based email platform, to send malicious emails that bypass...

New “ClawHub” and “ClawSwarm” Malware Campaigns Target AI Agents for Crypto Recruitment

May 1, 2026 | Podcast

https://www.manifold.security/blog/clawhub-clawswarm-agent-crypto-recruitment Head of Research, Ax Sharma, at Manifold Security have uncovered a sophisticated new threat campaign leveraging two related malware frameworks — dubbed “ClawHub” and...

KnowBe4 Research Reveals 86% of Phishing Attacks Are Now AI-Driven

Apr 30, 2026 | Podcast

https://www.knowbe4.com/press/knowbe4-research-finds-86-of-phishing-attacks-are-ai-driven New research from cybersecurity awareness training firm KnowBe4 has uncovered a striking and alarming trend in the phishing threat landscape: a staggering 86% of phishing attacks...

Google Patches Maximum Severity CVSS 10 Flaw in Gemini CLI Amid Growing AI Tool Vulnerabilities

Apr 29, 2026 | Podcast

A CVSS 10.0 in Gemini CLI: How Agentic Workflows Are Reshaping Supply Chain Risk Google has patched a critical, maximum-severity vulnerability in its Gemini CLI tool — the @google/gemini-cli npm package and the google-github-actions/run-gemini-cli GitHub Actions...

Critical cPanel & WHM Authentication Bypass Vulnerability Actively Exploited in the Wild

Apr 28, 2026 | Podcast

https://www.rapid7.com/blog/post/etr-cve-2026-41940-cpanel-whm-authentication-bypass On April 28, 2026, cPanel issued an emergency security update addressing CVE-2026-41940, a critical authentication bypass vulnerability affecting cPanel & WHM and WP Squared...

Critical Linux “copyfiles” Vulnerability Grants Root Access on Major Distributions

Apr 27, 2026 | Podcast

https://xint.io/blog/copy-fail-linux-distributions A newly discovered Linux vulnerability, dubbed “copy_file_range” or “CopyFail,” is sending shockwaves through the cybersecurity community after researchers found it can be exploited to grant...
« Older Entries

Latest Posts

  • 60% of MD5 Password Hashes Now Crackable in Under an Hour With a Single GPU
  • Survey Finds 1 in 8 Employees Consider Selling Company Login Credentials Justifiable
  • Malicious OpenClaw Skill Weaponizes AI Agent Framework to Distribute Malwar
  • ACSC Issues Warning Over ClickFix Attacks Deploying Vidar Stealer Malware
  • Cybercriminals Abuse Amazon SES to Launch Undetected Phishing Campaigns

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025

More Content

  • Articles (26)
  • Podcast (782)
  • Posts (26)
  • Publications (1)
  • Speaking (50)
  • X
  • RSS
Edwin Kwan