About
Matthew Lake is a web entrepreneur and vibe coder with a background in security. He believes developers are the first line of defense.
At CodeWalkers, he reports on security incidents in the industry and covers cybersecurity fundamentals, secure coding practices, threat modeling for developers, DevSecOps tooling, and compliance requirements that actually affect how you ship code.
His writing focuses on practical security for working developers, not abstract threat models that never translate to real codebases.
Topics
33 guides · 13 news
Guides & Articles (33)
- Codex vs Claude Code: Two Agentic Reviewers Compared AI Code Review
- Claude Code vs CodeRabbit: Precision Agent vs Dedicated Bot AI Code Review
- Complete Guide to Claude Code for PR Review (2026) AI Code Review
- Complete Guide to Codex as a Code Reviewer (2026) AI Code Review
- Complete Graphite Agent Review (2026) AI Code Review
- Complete BugBot Review (2026) AI Code Review
- Qodo Code Review Guide (2026) AI Code Review
- Complete CodeRabbit Review (2026) AI Code Review
- AI Code Review AI Code Review
- Complete Greptile Review (2026) AI Code Review
- Using Your Coding Agent as a Code Reviewer AI Code Review
- Complete GitHub Copilot Code Review Guide (2026) AI Code Review
- Application Security Application Security
- GitHub Code Security and Secret Protection Guide (2026) Application Security
- Complete Guide to Dependabot for Dependency Security (2026) Application Security
- Complete Guide to Aikido Security (2026) Application Security
- Dependabot vs Socket: Dependency Scanning and Supply Chain Defense Application Security
- Aikido vs SonarQube: All-in-One AppSec vs Deep SAST Application Security
- Snyk vs Aikido: Developer-First AppSec vs Modern All-in-One Application Security
- Top Application Security Tools Compared (2026) Application Security
- Complete Guide to SonarQube for Static Analysis (2026) Application Security
- Complete Guide to Snyk Application Security (2026) Application Security
- Complete Guide to Socket.dev for Supply Chain Security (2026) Application Security
- Codex vs CodeRabbit: In-Plan Reviewer vs Dedicated Bot AI Code Review
- CodeRabbit vs Qodo Merge: Which AI Reviewer to Pick AI Code Review
- CodeRabbit vs Cursor BugBot: Which AI Reviewer to Pick AI Code Review
- CodeRabbit vs GitHub Copilot Code Review AI Code Review
- CodeRabbit vs Greptile: Two Paid AI Reviewers Compared AI Code Review
- Greptile vs GitHub Copilot Code Review AI Code Review
- BugBot vs Greptile: Precision vs Codebase-Graph AI Review AI Code Review
- Cursor BugBot vs GitHub Copilot Code Review AI Code Review
- Top AI Code Review Tools Compared (2026) AI Code Review
- PHP Authentication and Sessions: A Security Reference Programming
News (13)
- OpenAI Releases GPT-6 Astra AI Models
- Anthropic Releases Claude Fable 5.1 and Claude Mythos 5.1 AI Models
- Anthropic Reviewed 141,006 Eval Runs and Found Three Real Compromises Security
- OpenAI's Models Escaped a Sandbox and Breached Hugging Face Security
- Sapphire Sleet npm Campaign: Microsoft Links Mastra and Axios Attacks to North Korea Security
- The Hades Worm Turns Your AI Coding Config into a Backdoor Security
- U.S. Government Suspends Claude Fable 5, Declares It a Cyberweapon Industry
- LiteLLM Supply Chain Attack: What Happened and What to Do Security
- Pentagon Declares Anthropic a Supply Chain Risk Security
- TeamPCP Compromised Trivy and LiteLLM; Sapphire Sleet Compromised Axios Security
- Trivy Security Scanner Compromised in Supply Chain Attack Security
- OpenAI, Surveillance, and Autonomous Weapons: Breaking Down the Pentagon Contract Fine Print Industry
- Axios npm Package Compromised: North Korean Hackers Target 100M Weekly Downloads Security