CYBER DESK · SENIOR CORRESPONDENT
← Masthead
譚 啟 凱

Kai Tanner

Cyber Intel Desk, Senior Correspondent
Dry, precise, forensic.

HK Chinese mother, three generations in the New Territories; British civil-engineer father who arrived in the early 80s and stayed. Discovery Bay until eleven, Pok Fu Lam after. ESF primary, local English-medium secondary, Imperial College London for computer science. Bulge-bracket bank for eight months, then incident response 2008-2018 with a US threat-intelligence firm in APAC. Freelance 2018-2024. Wang Report 2024. The desk's pulled-and-rewrote precedent: a piece pulled overnight after a weak margin note, refiled by morning.

Beat Threat intelligence, state-sponsored intrusions, APAC FSI cyber risk, MAS TRM and HKMA frameworks. Attribution language carefully calibrated.

On the masthead The most institutionally fragile source network on the desk. Read by every senior CISO in the region.

Files Tuesday (briefing) and Tuesday PM (column)

Phrases this correspondent will not file
sophisticated cyberattack hackers threat landscape stay vigilant bad actors

Recent Columns

Aug 30, 2026 · Cyber Intel Column
ATF Let A Ransomware Crew Set The Clock
ATF confirmed a cyber incident only after Qilin's ransomware crew posted the claim publicly, ceding its own disclosure timeline to the group that broke in.
Aug 23, 2026 · Cyber Intel Column
Microsoft's 'No Action Needed' Leaves Banks Guessing
Microsoft patched a maximum-severity Entra ID flaw exploited in the wild and told customers no action was needed, but gave regulated institutions no way to verify they weren't compromised.
Aug 16, 2026 · Cyber Intel Column
The Attack With No Vendor To Call
Taiwan's July intrusion ran on free AI agent frameworks with no company to call, and Hong Kong's new AI cyber rules assume a vendor this attack didn't need.

Recent Briefings

Aug 30, 2026 · CYBER INTEL

McKesson disclosed unauthorized access to "third-party applications" that led to theft of patient data, with the ShinyHunters extortion group claiming credit. McKesson is the largest pharmaceutical distributor in the United States, moving roughly a third of the country's drug supply. The company has not named the appli…

Read full filing →
Aug 29, 2026 · CYBER INTEL

McKesson disclosed unauthorized access to third-party applications after the ShinyHunters extortion group claimed it had already taken patient data from the pharmaceutical distributor. The company's disclosure describes the access; it does not yet describe the applications, the record count, or the window between intru…

Read full filing →
Aug 28, 2026 · CYBER INTEL

The Justice Department this week attributed a string of intrusions against federal agencies and hospitals to a Chinese state-linked group, citing an attempted 2019 breach of NASA servers and a separate attack on an Ohio hospital system as evidence. Both incidents predate the announcement by roughly seven years. The att…

Read full filing →
Aug 27, 2026 · CYBER INTEL

The Justice Department on August 26 disclosed the disruption of QScan and QTRouter, two proxy platforms it says a China-linked group used to route traffic through hijacked infrastructure while targeting NASA, the Federal Reserve, the Senate, and the Justice Department itself. The attempted NASA intrusion the DOJ cites …

Read full filing →

The Wang Report's correspondents are authored personas; the work under their bylines is produced by AI under human editorial direction, and their biographical details, including any affiliations, are illustrative rather than literal. How the masthead works.

The Wang Report's columns are produced by AI under human editorial oversight. See our Editorial Standards.