Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
Select Page

Critical Vulnerability Discovered in W3 Total Cache WordPress Plugin Enabling PHP Command Injection

Nov 18, 2025 | Podcast

https://www.bleepingcomputer.com/news/security/w3-total-cache-wordpress-plugin-vulnerable-to-php-command-injection A critical security flaw has been identified in the popular W3 Total Cache (W3TC) WordPress plugin, which could allow unauthenticated attackers to...

WhatsApp Vulnerability Exposes User Phone Numbers, Enabling Large-Scale Enumeration Attacks

Nov 17, 2025 | Podcast

https://github.com/sbaresearch/whatsapp-census/blob/main/Hey_there_You_are_using_WhatsApp.pdf A recently disclosed vulnerability in the popular messaging app WhatsApp has raised significant security concerns, as it allows attackers to potentially access the phone...

OWASP Unveils AI Vulnerability Scoring System (AIVSS) to Assess AI-Powered Threats

Nov 14, 2025 | Podcast

https://aivss.owasp.org The Open Web Application Security Project (OWASP) has introduced the AI Vulnerability Scoring System (AIVSS), a framework designed to assess the security risks associated with artificial intelligence-powered technologies. The AIVSS aims to...

Malicious NuGet Packages Deployed with Disruptive ‘Time Bomb’ Payloads

Nov 13, 2025 | Podcast

https://socket.dev/blog/9-malicious-nuget-packages-deliver-time-delayed-destructive-payloads Security researchers have uncovered a concerning series of malicious NuGet packages that contain harmful code designed to disrupt and sabotage various applications and...

Swiss Authorities Warn of Phishing Scam Targeting Lost iPhone Owners

Nov 12, 2025 | Podcast

https://www.ncsc.admin.ch/ncsc/en/home/aktuell/im-fokus/2025/wochenrueckblick_44.html The Swiss National Cyber Security Centre (NCSC) is alerting iPhone users to a concerning phishing scam that aims to steal their Apple ID credentials by falsely claiming to have found...

Dangerous runC Vulnerabilities Expose Docker and Kubernetes Containers to Potential Escape Attacks

Nov 11, 2025 | Podcast

https://www.wiz.io/vulnerability-database/cve/cve-2025-31133 Researchers have disclosed three critical vulnerabilities in the runC container runtime, a core component of Docker and Kubernetes, that could allow attackers to break out of the container environment and...

Mozilla Bolsters Firefox’s Anti-Fingerprinting Defences to Enhance User Privacy

Nov 10, 2025 | Podcast

Firefox expands fingerprint protections: advancing towards a more private web In a major privacy upgrade, Mozilla has introduced new anti-fingerprinting measures in the latest version of its Firefox web browser, Firefox 145. These enhanced protections aim to...

Louvre Heist Exposes Shocking Security Vulnerabilities, as Password to Video Surveillance System Was Simply “Louvre”

Nov 7, 2025 | Podcast

https://abcnews.go.com/International/password-louvres-video-surveillance-system-louvre-employee/story?id=127236297 In a stunning revelation, a Louvre museum employee has disclosed that the password to the world-famous institution’s video surveillance system was...

Researchers Uncover Vulnerabilities in FIA’s Driver Categorisation System, Exposing F1 Drivers’ Sensitive Data

Nov 6, 2025 | Podcast

https://ian.sh/fia In a concerning discovery, researchers have uncovered critical vulnerabilities in the FIA’s (Fédération Internationale de l’Automobile) driver categorisation system, drivercategorisation.fia.com, which allowed them to gain unauthorised...

Threat Actors Ramp Up Malicious Use of AI Tools, Posing Escalating Risks

Nov 5, 2025 | Podcast

https://cloud.google.com/blog/topics/threat-intelligence/threat-actor-usage-of-ai-tools Google’s Threat Intelligence Group (GTIG) has uncovered alarming trends in the adversarial misuse of artificial intelligence (AI) tools, marking a significant shift in how...
« Older Entries
Next Entries »

Latest Posts

  • FBI Warns of Soaring Account Takeover Fraud Ahead of Holiday Shopping Season
  • The Rise of Agentic Bots and the Need for Robust Bot Management
  • Beware of Android TV Streaming Boxes Linked to Cybercrime Activities
  • Panelist at SecTalks Legends – 2025
  • Massive Cyberattack Targets Real Estate Loan Vendor, Exposing Customer Data of Major Banks

Speaking Events

  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025
  • Speaker at The Artificial Unintelligence Conference
  • INFS2701 Guest Lecture at UNSW Business School
  • Speaker at ADAPT Cloud & Infrastructure Edge 2025

More Content

  • Articles (26)
  • Podcast (696)
  • Posts (25)
  • Speaking (47)
  • X
  • RSS
Edwin Kwan