Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

AI Agents Exploited via Official Company Files in Major Supply Chain Security Breach

Aug 31, 2026 | Podcast

https://medium.com/@alonhertz1/data-became-code-we-ran-code-inside-fortune-500s-using-files-they-published-for-ai-agents-0cd67ffbbffc Security researchers have uncovered a new class of cyberattack that required no hacking, no phishing, and no exploitation of known...

Over 9,300 Exposed AWS Keys Remain Active, Hundreds Granting Full Corporate Account Control

Aug 27, 2026 | Podcast

https://trufflesecurity.com/blog/leaked-corporate-aws-keys-held-full-admin-rights Truffle Security has published findings from four years of tracking publicly exposed Amazon Web Services access keys, revealing that more than 9,300 keys exposed between August 2022 and...

Two Alleged TeamPCP Members Arrested in Australia Following Longest Running Software Supply Chain Attack Spree on Record

Aug 26, 2026 | Podcast

https://krebsonsecurity.com/2026/08/two-alleged-teampcp-hackers-arrested-in-australia Australian Federal Police have arrested two men from Western Australia, aged 21 and 23, in connection with TeamPCP, a cybercrime and data extortion group described as responsible for...

Nearly 700 Rogue AI Agents Coordinated Attack on Hugging Face After Escaping Evaluation Environment

Aug 25, 2026 | Podcast

https://metr.org/blog/2026-08-26-openai-hugging-face-incident-investigation/#core-takeaways-about-this-incidenthttps://cdn.openai.com/pdf/67869394-cb91-4c12-888c-5cbd85c7814c/OpenAI-Hugging-Face%20Incident-Technical-Report.pdf New details have emerged about a July...

CISA Red Team Assessment Reveals Stark Contrast Between Two Organisations’ Cyber Defence Capabilities

Aug 24, 2026 | Podcast

https://www.cisa.gov/news-events/cybersecurity-advisories/aa26-237a The Cybersecurity and Infrastructure Security Agency has published a cybersecurity advisory detailing the findings from two simultaneous red team assessments conducted at critical infrastructure...

Quest Apartment Hotels Discloses Customer Data Breach Linked to Third-Party Vulnerability

Aug 18, 2026 | Podcast

https://www.abc.net.au/news/2026-08-19/quest-apartment-hotels-data-security-breach/107053574 Quest Apartment Hotels has informed customers of a data security breach involving unauthorised access to a database system, with the incident traced to a vulnerability...

Origin Energy Breach Traced to Former Accenture Employee at Manila Call Centre

Aug 17, 2026 | Podcast

https://www.abc.net.au/news/2026-08-18/origin-energy-hack-traced-to-accenture-manila-office/107049188 Investigators have linked the Origin Energy data breach, which exposed the personal information of approximately 900,000 current and former Australian customers, to a...

Developers Report Widespread Security and Privacy Failures in AI Coding Tools

Aug 12, 2026 | Podcast

https://arxiv.org/abs/2607.26390 Researchers from York University and the University of Calgary have published findings from a systematic analysis of developer complaints about large language model-based integrated development environments, covering tools including...

ASD and AICD Warn Boards That Frontier AI Is Fundamentally Reshaping Cyber Risk

Aug 11, 2026 | Podcast

https://www.cyber.gov.au/business-government/protecting-business-leaders/cyber-security-for-business-leaders/frontier-ai-cyber-threat-considerations-for-boards-of-directors The Australian Signals Directorate and the Australian Institute of Company Directors have...

AI Assistant Autonomously Hacks Gym Booking System in First Known Australian Case

Aug 10, 2026 | Podcast

https://www.abc.net.au/news/2026-08-10/ai-assistant-hacks-gym-website-aus-cyber-attack/107007986 An Australian has become the subject of what is believed to be the first known case in Australia of an AI agent autonomously carrying out a cyberattack, after his personal...
« Older Entries
Next Entries »

Latest Posts

  • State-Sponsored Hackers and Criminal Groups Exploited Claude AI for Attacks on Millions of Targets
  • OpenAI Publishes New Framework for Tracking AI Agents That Bypass Their Own Constraints
  • Revolut Confirms Customer Data Exposed After Fraudulent Government Requests Fooled Staff
  • Australia’s Cyber Security Agency Releases Guidance on Securing AI Agent Systems
  • Over One Million Students and Teachers Caught Up in Mathspace Data Breach After Vulnerability Left Unpatched for Weeks

Speaking Events

  • Speaker at Melbourne Secure Software And AppSec Summit 2026
  • Guest Lecture at UNSW Business School for INFS5907
  • Speaker at Bugcrowd Luncheon
  • Guest Lecture at UNSW
  • Panelist at SecTalks Legends – 2025

More Content

  • Articles (26)
  • Podcast (855)
  • Posts (29)
  • Publications (2)
  • Speaking (51)
  • X
  • RSS
Edwin Kwan