Edwin Kwan
  • Home
  • Speaker
  • Podcasts
    • Cyber Bites
    • AppSec Unlocked
    • It’s 5:05 Podcast
  • Journal
  • Publications
Select Page

Researchers Exploit AI Browser Reasoning to Train Self-Optimizing Phishing Scams in Under Four Minutes

Mar 9, 2026 | Podcast

https://guard.io/labs/agenticblabbering—how-ai-browsers-verbose-reasoning-fuels-the-ultimate-scamming-machine Security researchers at Guardio have demonstrated a critical vulnerability in AI-powered autonomous browsers by successfully tricking Perplexity’s...

Iranian Threat Actors Launch Hundreds of Attacks Against IP Surveillance Cameras Across Middle East

Mar 7, 2026 | Podcast

https://research.checkpoint.com/2026/interplay-between-iranian-targeting-of-ip-cameras-and-physical-warfare-in-the-middle-east Multiple Iranian hacking groups have conducted hundreds of exploitation attempts against internet-connected surveillance cameras across...

Hacktivist Groups Launch 149 DDoS Attacks Against 110 Organisations Following Middle East Military Operations

Mar 6, 2026 | Podcast

https://www.radware.com/security/threat-advisories-and-attack-reports/ddos-activity-following-operation-epic-fury-roaring-lion Cybersecurity researchers have documented a dramatic surge in retaliatory hacktivist activity following the U.S.-Israel coordinated military...

ClawJacked Vulnerability Allows Malicious Websites to Hijack Local OpenClaw AI Agents via WebSocket

Mar 5, 2026 | Podcast

https://www.oasis.security/blog/openclaw-vulnerability OpenClaw has patched a high-severity security flaw nicknamed ClawJacked that could allow malicious websites to connect to and commandeer locally running AI agents through a WebSocket attack. The vulnerability,...

Developer Faces $82,000 Bill After Stolen Google Gemini API Key Enables Massive Unauthorised Usage

Mar 4, 2026 | Podcast

https://old.reddit.com/r/googlecloud/comments/1reqtvi/82000_in_48_hours_from_stolen_gemini_api_key_my A small startup is confronting potential bankruptcy after unknown attackers exploited a compromised Google Gemini API key to rack up $82,314 in unauthorised charges...

DJI Romo Robot Vacuums Exposed Thousands of Devices Through Critical Security Flaws

Mar 3, 2026 | Podcast

https://www.theverge.com/tech/879088/dji-romo-hack-vulnerability-remote-control-camera-access-mqtt A Spanish AI strategist accidentally gained unauthorized access to approximately 7,000 DJI Romo robot vacuums worldwide after attempting to create a custom remote...

New South Wales Criminalises AI-Generated Deepfakes and Non-Consensual Intimate Content

Mar 2, 2026 | Podcast

https://dcj.nsw.gov.au/legal-and-justice/laws-and-legislation/image-based-abuse.html New South Wales has enacted comprehensive legislation criminalising the creation and distribution of sexually explicit deepfakes and non-consensual intimate imagery, marking a...

Australian Businesses Making Regular Ransomware Payments Despite Government Warnings

Feb 27, 2026 | Podcast

https://www.itnews.com.au/news/australias-big-end-of-town-is-paying-ransomware-groups-623791 At least 75 Australian businesses with annual turnover exceeding $3 million have admitted to paying ransomware demands during the first eight months of mandatory disclosure...

AI Excels at Finding Software Bugs But Struggles With Meaningful Remediation

Feb 26, 2026 | Podcast

https://www.theregister.com/2026/02/24/ai_finding_bugs/https://www.anthropic.com/news/claude-code-security Anthropic recently touted its Claude Code Security tool’s ability to discover over 500 vulnerabilities in production open-source codebases, positioning...

Malicious Code Repositories Target Next.js Developers Through Fake Job Interview Projects

Feb 25, 2026 | Podcast

Developer-targeting campaign using malicious Next.js repositories Microsoft security researchers have uncovered an attack campaign targeting Next.js developers through malicious code repositories disguised as legitimate job interview projects. The threat actors...
« Older Entries
Next Entries »

Latest Posts

  • Anthropic Mythos Discovered 271 Security Vulnerabilities in Firefox
  • Malicious Cryptocurrency Wallet Apps Infiltrate China’s Apple App Store
  • Microsoft Teams Becomes Prime Target for Helpdesk Impersonation Scams
  • Apple Patches iOS Bug That Preserved Deleted Notification Data
  • Claude Desktop Raises Privacy Concerns Over Silent Browser Extension Installation

Speaking Events

  • Guest Lecture at UNSW Business School for INFS5907
  • Panelist at SecTalks Legends – 2025
  • Keynote Speaker at Sydney AI Security Summit 2025
  • Speaker at The Artificial Unintelligence Conference
  • INFS2701 Guest Lecture at UNSW Business School

More Content

  • Articles (26)
  • Podcast (772)
  • Posts (26)
  • Publications (1)
  • Speaking (48)
  • X
  • RSS
Edwin Kwan