<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>ThreeShield Cybersecurity Insights</title>
    <link>https://threeshield.ca/blog/</link>
    <description>CVE disclosures, ransomware analysis, phishing alerts, and compliance updates from ThreeShield Information Security Corporation in Calgary, Alberta.</description>
    <language>en-ca</language>
    <managingEditor>contact@threeshield.ca (ThreeShield Information Security)</managingEditor>
    <webMaster>contact@threeshield.ca (ThreeShield Information Security)</webMaster>
    <lastBuildDate>Tue, 14 Apr 2026 03:16:05 +0000</lastBuildDate>
    <atom:link href="https://threeshield.ca/feed.xml" rel="self" type="application/rss+xml"/>
    <image>
      <url>https://threeshield.ca/assets/img/favicon64.png</url>
      <title>ThreeShield</title>
      <link>https://threeshield.ca</link>
    </image>
    <item>
      <title><![CDATA[ABTraceTogether Security & Privacy Review - A]]></title>
      <link>https://threeshield.ca/blog/abtracetogether-security-privacy</link>
      <guid>https://threeshield.ca/blog/abtracetogether-security-privacy</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[ThreeShield's cybersecurity expert - a former auditor of Alberta Health Services - reviews ABTraceTogether, Alberta's COVID-19 contact tracing app..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[Ransomware Targeting Healthcare Organizations]]></title>
      <link>https://threeshield.ca/blog/akira-ransomware-healthcare-canada</link>
      <guid>https://threeshield.ca/blog/akira-ransomware-healthcare-canada</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[Akira ransomware has emerged as a leading threat to Canadian healthcare organizations,.]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[Your Datto, Nutanix, or Barracuda Appliance Ha]]></title>
      <link>https://threeshield.ca/blog/appliance-firmware-vulnerabilities</link>
      <guid>https://threeshield.ca/blog/appliance-firmware-vulnerabilities</guid>
      <pubDate>Mon, 03 Jun 2019 00:00:00 +0000</pubDate>
      <description><![CDATA[Managed appliances from Datto, Nutanix, and Barracuda contain commodity servers with default IPMI credentials and unpatched firmware..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[COVID-19 Business Continuity & Cybersecurity]]></title>
      <link>https://threeshield.ca/blog/covid19-business-continuity</link>
      <guid>https://threeshield.ca/blog/covid19-business-continuity</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[During COVID-19, businesses rushed to enable remote work - creating new cybersecurity vulnerabilities..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[How to Save 10-20% on Cyber Insurance by Fixin]]></title>
      <link>https://threeshield.ca/blog/cyber-insurance-savings-cis-lavawall</link>
      <guid>https://threeshield.ca/blog/cyber-insurance-savings-cis-lavawall</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[Cyber insurers are now running their own security scans before underwriting. Organizations that address what those scans find - and document it.]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[2024 DMARC Requirements - Gmail & Yahoo Email]]></title>
      <link>https://threeshield.ca/blog/dmarc-requirements-2024</link>
      <guid>https://threeshield.ca/blog/dmarc-requirements-2024</guid>
      <pubDate>Thu, 01 Feb 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[Gmail, Yahoo and others changed their email policies in 2024. If your domain isn't correctly set up with SPF, DKIM, and DMARC,.]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[CVE-2023-27739: EasyXDM Library XSS & Redirect]]></title>
      <link>https://threeshield.ca/blog/easyxdm-cve-2023-27739</link>
      <guid>https://threeshield.ca/blog/easyxdm-cve-2023-27739</guid>
      <pubDate>Mon, 27 Mar 2023 00:00:00 +0000</pubDate>
      <description><![CDATA[ThreeShield discovered CVE-2023-27739 in EasyXDM 2.5.20: arbitrary URL redirection, iframe tampering, cross-site scripting, and origin manipulation..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[Phishing Through Encrypted Email Services - Vi]]></title>
      <link>https://threeshield.ca/blog/encrypted-email-phishing</link>
      <guid>https://threeshield.ca/blog/encrypted-email-phishing</guid>
      <pubDate>Wed, 24 Mar 2021 00:00:00 +0000</pubDate>
      <description><![CDATA[Encrypted email services are now the preferred method for delivering phishing and ransomware undetected..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[How Hackers Use SharePoint and Google Drive fo]]></title>
      <link>https://threeshield.ca/blog/file-sharing-phishing</link>
      <guid>https://threeshield.ca/blog/file-sharing-phishing</guid>
      <pubDate>Thu, 14 Jan 2021 00:00:00 +0000</pubDate>
      <description><![CDATA[Attackers compromise cloud accounts and use SharePoint, Dropbox, and Google Drive to deliver phishing and ransomware..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[Why the Fragmented Compliance Stack Is Costing]]></title>
      <link>https://threeshield.ca/blog/fragmented-compliance-stack-cost</link>
      <guid>https://threeshield.ca/blog/fragmented-compliance-stack-cost</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[Most organizations pay four separate vendors for compliance: a platform, a consultant, an auditor, and an MSP..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[HIPAA vs. Alberta HIA: What Calgary Healthcare]]></title>
      <link>https://threeshield.ca/blog/hipaa-vs-alberta-hia-calgary-healthcare</link>
      <guid>https://threeshield.ca/blog/hipaa-vs-alberta-hia-calgary-healthcare</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[Calgary healthcare organizations often confuse HIPAA (a US law) with Alberta's Health Information Act..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[December 2022 LastPass Breach - What You Need]]></title>
      <link>https://threeshield.ca/blog/lastpass-breach-2022</link>
      <guid>https://threeshield.ca/blog/lastpass-breach-2022</guid>
      <pubDate>Mon, 16 Jan 2023 00:00:00 +0000</pubDate>
      <description><![CDATA[The August and December 2022 LastPass breaches exposed encrypted password vaults. ThreeShield explains what LastPass customers need to know and do,.]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[LinkedIn Porn Extortion Scam - How to Protect]]></title>
      <link>https://threeshield.ca/blog/linkedin-porn-extortion-scam</link>
      <guid>https://threeshield.ca/blog/linkedin-porn-extortion-scam</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[The LinkedIn porn extortion scam is targeting professionals worldwide. Scammers claim to have embarrassing footage and demand payment..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[MFA / 2FA Setup Links for Cloud Services - Mic]]></title>
      <link>https://threeshield.ca/blog/mfa-setup-links</link>
      <guid>https://threeshield.ca/blog/mfa-setup-links</guid>
      <pubDate>Wed, 20 May 2020 00:00:00 +0000</pubDate>
      <description><![CDATA[Direct links to enable multi-factor authentication (MFA / 2FA) on Microsoft 365, Google, Amazon, LinkedIn, QuickBooks, GoDaddy, Xero,.]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[How MSPs Can Win Cybersecurity-Driven Clients]]></title>
      <link>https://threeshield.ca/blog/msp-win-cybersecurity-clients-without-cissp</link>
      <guid>https://threeshield.ca/blog/msp-win-cybersecurity-clients-without-cissp</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[Your prospects are asking for security capabilities you don't have. You don't need to hire a CISSP - you need the right augmentation partnership..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[OneNote Phishing Attacks - What to Quarantine]]></title>
      <link>https://threeshield.ca/blog/onenote-phishing</link>
      <guid>https://threeshield.ca/blog/onenote-phishing</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[Attackers are hiding malicious scripts inside OneNote files to bypass email security filters..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[Plex Media Server, LastPass, and Why Your RMM]]></title>
      <link>https://threeshield.ca/blog/plex-media-server-lastpass-rmm-gap</link>
      <guid>https://threeshield.ca/blog/plex-media-server-lastpass-rmm-gap</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[The 2022 LastPass breach originated from an employee's personal device running Plex Media Server. Most RMMs and MDM tools would not have detected it..]]></description>
      <category>Cybersecurity</category>
    </item>
    <item>
      <title><![CDATA[ESXiArgs VMware Ransomware - Why ThreeShield C]]></title>
      <link>https://threeshield.ca/blog/vmware-esxiargs-ransomware</link>
      <guid>https://threeshield.ca/blog/vmware-esxiargs-ransomware</guid>
      <pubDate>Mon, 01 Jan 2024 00:00:00 +0000</pubDate>
      <description><![CDATA[The ESXiArgs ransomware attack of February 2023 hit thousands of unpatched VMware ESXi servers. ThreeShield clients weren't affected..]]></description>
      <category>Cybersecurity</category>
    </item>
  </channel>
</rss>