Cyber Team is RECATOOLS’ cybersecurity desk, covering vulnerabilities, data breaches, supply-chain attacks, threat intelligence, exploit activity, and security best practices. The desk focuses on practical implications for developers, SMEs, IT teams, and ASEAN organisations.

About this byline

Cyber Team is a specialist RECATOOLS editorial desk focused on cybersecurity coverage. Articles are produced and reviewed under RECATOOLS editorial supervision. The articles listed here keep this byline. New coverage on these beats is published under the persona whose beat it falls in: Kenji Tanaka for vulnerabilities, patching and supply-chain security, and Priya Nair for threat intelligence, attribution and privacy.

Editorial responsibility for this byline rests with Jeffrey Tan (Tan Seng Fei), RECASYS, Singapore. Our Editorial Policy sets out how sources are reviewed, how AI-assisted workflows are used, and how editorial desks and personas are defined.

153
Articles
Cybersecurity
Primary beat
Jan 2026
Writing since
~1054 min
Total reading

Articles Showing 41–50 of 153

A phone face-down on a wooden desk beside an open paper notebook and a pen, under a single warm desk lamp
Cybersecurity

Account Security You Can Finish in an Afternoon

Four jobs, ordered by how much loss each one prevents, with the arguments settled by the standard rather than by folklore. NIST advises against the ninety-day password change and the mandatory symbol; it requires the thing almost nobody does. And while writing this we found our own passphrase generator defaulting to something that cracks in ninety seconds while calling it Reasonable — so that is in here too, with the fix.

1 Aug 2026 · 9 min read
An aerial view of a city skyline illuminated at night.
Cyber Threat Intel

ThreatBook Puts a Number on APAC's Year: 15,205 Incidents, and Indonesia Growing Fastest

The firm's first mid-year Asia-Pacific report covers twelve months and more than nineteen markets. Singapore ranks sixth by volume, Malaysia tenth, and dual extortion is now the default in Indonesian ransomware cases.

29 Jul 2026 · 6 min read
Darkened hall of server cabinets with a wall clock close to midnight — illustrating the three-day remediation clocks these SharePoint entries carried.
Cybersecurity

Four SharePoint Flaws Entered CISA's Catalogue in Twenty-Two Days — One Left a Single Working Day

CVE-2026-50522 was exploited hours after proof-of-concept code appeared, and stolen machine keys survive the patch. Our reading of the catalogue shows four of the fourteen SharePoint entries CISA has ever listed arrived this month.

29 Jul 2026 · 6 min read
An empty office chair pushed back from a desk at night, a single monitor still running
Cyber Threat Intel

An AI Agent Ran Unsupervised Inside Thailand's Finance Ministry — Doing the Legwork, Not the Break-In

Researchers recovered five logs showing an open-source AI agent enumerating a ministry host without per-command approval. How the intruder got in is still unknown, and the target-specific work was written by a person.

29 Jul 2026 · 6 min read
A sub-editor's desk at night, printed intelligence reports fanned out under a lamp
Cyber Threat Intel

Cold-Chain Shutdown in Japan, AI in Two Attack Chains, and Eight New Ransomware Listings

Nichirei lost four days of refrigerated logistics to a server compromise. An Iranian-linked group is using generative AI for phishing craft. And a third of July's exploited-vulnerability additions were perimeter devices.

29 Jul 2026 · 6 min read
An engineer probing a circuit at a lab bench, an oscilloscope behind showing a distorted waveform
Cyber Threat Intel

A Grid Attack That Needs No Grid Access — and the Conditions Everyone Dropped

Bit2Watt rents GPUs and modulates their load. No CVE, no privilege escalation, no substation. We read the paper: six GPUs were measured, a thousand were simulated, and the headline figures need a grid that is 90% renewable.

28 Jul 2026 · 6 min read
Ethernet patch cables plugged into a network switch.
Cybersecurity

Check Point Confirms an Exploited SmartConsole Bypass — Its Second KEV Entry in Forty-Four Days

The advisory is exemplary and the hotfix shipped the same day. The pattern behind it is the story: two of Check Point's three all-time KEV entries landed this summer, both authentication bypasses.

26 Jul 2026 · 6 min read
A retro time clock and stack of punch cards against a dark brick wall in an industrial setting.
Cybersecurity

CISA's Patch Deadlines Collapsed From 21 Days to Three — and It Started Four Months Before the Directive That Gets the Credit

We measured every deadline in the KEV catalog's 1,653 entries. The 21-day window was retired on 5 March; BOD 26-04 arrived on 10 June. Ten of the 32 three-day clocks since then contain a single working day.

26 Jul 2026 · 7 min read
Two categories of hash function on one scale: four deliberately slow password hashing schemes at 1.4 to 36.8 guesses per second, and four fast general-purpose hashes near three million, separated by a factor of 544,280.
Cybersecurity

Which Hash for What: MD5, SHA-256, and the Password Mistake

"MD5 is broken, so hash your passwords with SHA-256 instead" gets both halves wrong, in opposite directions. What broke in MD5 was collision resistance, which password storage never relied on; what makes SHA-256 unfit for passwords is speed, which MD5 shares. This guide separates a collision from a preimage — 2^63.1 against 2^160 — measures four hash functions at three million guesses a second on one core, and ends with a table of which algorithm belongs on which job.

25 Jul 2026 · 22 min read
A snowy directional signpost showing distances to cities from Jonkoping, Sweden.
Cybersecurity

Who Sees Your DNS? DoH, DoT and What Encrypted DNS Actually Hides (2026)

DoT, DoH and DoQ encrypt your DNS queries, but destination IPs, the TLS SNI and your resolver still see plenty. What the RFCs actually promise, 2026 state.

22 Jul 2026 · 12 min read
Editorial Policy →