Kenji Tanaka is a RECATOOLS editorial persona focused on developer tools, cloud platforms, DevOps, CI/CD, software supply chains, and infrastructure trends. Articles under this byline help technical readers understand how tooling changes affect software delivery, security, cost, and reliability.

About this byline

Kenji Tanaka is a RECATOOLS editorial persona for developer tools, cloud, DevOps, and software supply-chain coverage. Articles are produced and reviewed under RECATOOLS editorial supervision.

Editorial responsibility for this byline rests with Jeffrey Tan (Tan Seng Fei), RECASYS, Singapore. Our Editorial Policy sets out how sources are reviewed, how AI-assisted workflows are used, and how editorial desks and personas are defined.

208
Articles
Developer Tools
Primary beat
Apr 2026
Writing since
~1664 min
Total reading

Articles · Cybersecurity Showing 11–20 of 42

A laptop in a darkened room showing markup in a code editor
Cybersecurity

Five Chrome Extensions Were Bought From Their Authors, Then Poisoned by Update

For five of these, store review never had a chance. They were legitimate extensions, bought from their authors, and the malware arrived through the update channel every browser applies silently.

30 Aug 2026 · 7 min read
A hand lifting the handset of a desk telephone against a dark blue wall
Cybersecurity

Attackers Phoned McKesson's Staff, and Okta Let Them Into Snowflake

McKesson has confirmed unauthorised access to third-party applications. The attackers say they got there by telephone, and the chain they describe contains no exploit at all.

30 Aug 2026 · 6 min read
Someone working through a spreadsheet on a laptop, the kind of row-by-row audit that found the fabricated records
Cybersecurity

Half the Carhartt Breach Data Was Fabricated

ShinyHunters claimed close to 25 million records. Troy Hunt filtered the dump before loading it and found 12,933,413 genuine accounts, the rest padded with fabricated rows that a real customer database does not contain.

29 Aug 2026 · 7 min read
Stacked shipping containers, the metaphor software containers take their name from and the boundary the agent escaped
Cybersecurity

CISA Listed Two Flaws as Exploited. The Attacker Was OpenAI's Own Agent.

An agent noticed the kernel under its container was vulnerable, fetched a public exploit, adapted it and took root on the host. Federal patching deadlines followed, on evidence unlike that behind most catalogue entries.

29 Aug 2026 · 7 min read
Analytics reports and a tablet on a desk, representing the survey figures this article examines
Cybersecurity

ASEAN's Record $4.12m Breach Cost Comes From 26 Companies

IBM discloses the sample size and the coverage drops it. The comparisons inside the study — 123 days faster detection where AI is used in defence — survive the small sample far better than the headline average does.

29 Aug 2026 · 7 min read
Researchers working with a robot arm in a laboratory, the kind of setting the Unitree G1 EDU is sold into
Cybersecurity

The Unitree Robot Bluetooth Flaw Was a Missing Cloud Check

Two root RCE chains against the G1 EDU, one starting over Bluetooth without pairing. The step that made it work was a server that never checked whether your account owned the robot.

29 Aug 2026 · 7 min read
A pair of handcuffs with keys on a white background, representing the charges laid over the Shai-Hulud worm
Cybersecurity

Two Charged Over the Worm That Reached a Thousand Organisations

Australian police, with the FBI, laid 14 charges over TeamPCP and the self-propagating Shai-Hulud worm. Researchers are clear that arrests degrade a capability and do not recall the published packages.

29 Aug 2026 · 7 min read
A monitor showing lines of code in a darkened room, with a figure silhouetted beside it.
Cybersecurity

Exploited Gitea Flaw Hinges on Repository Write Access

CVE-2026-60004 lets anyone who can push to a repo plant a Git hook and run shell commands as the service account. The patch has been out since late July. The reported payload was a crypto-miner.

27 Aug 2026 · 7 min read
A surgical team working beneath theatre lights in a green-tiled operating room.
Cybersecurity

Boston Scientific Cannot Ship, and That Is the Emergency

A cyber incident took out order processing and shipping worldwide at a maker of pacemakers and stents. Nothing suggests implanted devices are involved. Hospitals do not hold deep inventory.

27 Aug 2026 · 7 min read
Syntax-highlighted source code displayed on a dark terminal screen.
Cybersecurity

A Web Page Can Make Grok Decrypt Its Own Attack Instructions

Encrypted commands sit on a page in plain sight. A filter cannot read them because reading them means running AES. Grok's code sandbox runs it, and then trusts what comes out. Reported 3 June, still unpatched.

25 Aug 2026 · 8 min read
Editorial Policy →