Author name: POPP3R

When Business Email Compromise Survives the Takedown

Law enforcement took down Kratos. But the 1,800 criminal subscribers who paid for that phishing-as-a-service platform still have the kit code, and security researchers confirm they are already adapting it. For Canadian finance teams and executives, the practical question is not whether criminals will continue using these techniques; it is whether your organization is ready

When Business Email Compromise Survives the Takedown Read More »

Security Awareness for Nonprofits: The Interlock Problem

The clients of the Centre for Newcomers came to Calgary for a fresh start. On July 17, 2026, they got something else: their personal records, immigration files, and sensitive status documents became part of a 380 GB haul claimed by the Interlock ransomware group. The organisation, a Calgary-based nonprofit providing immigration and settlement services across

Security Awareness for Nonprofits: The Interlock Problem Read More »

Ransomware Awareness Training: The July Imperative

A single compromised employee account was all it took for ShinyHunters to access 70,000 Canadians’ personal records at Canada Life in April 2026. No exotic vulnerability, no extended campaign: one credential, one door left unlocked, and a major Canadian financial services provider was facing a data breach notification and an extortion deadline simultaneously. For the

Ransomware Awareness Training: The July Imperative Read More »

The SharePoint Zero-Day and Employee Security Training

Every second Tuesday of the month, Microsoft releases security updates, and IT teams across the country quietly begin a race against exploitation. This month, the stakes are higher than usual. Microsoft’s April 2026 Patch Tuesday addressed 167 vulnerabilities, including eight rated critical and two zero-days, one of which is already being actively exploited in the

The SharePoint Zero-Day and Employee Security Training Read More »