<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Heimdal Security Blog</title>
	<atom:link href="https://heimdalsecurity.com/blog/feed/" rel="self" type="application/rss+xml" />
	<link></link>
	<description>A blog about all things internet security</description>
	<lastBuildDate>Thu, 13 Aug 2026 10:32:04 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.2</generator>
	<item>
		<title>The risk awareness radar. A superpower every MSP needs to train</title>
		<link>https://heimdalsecurity.com/blog/build-risk-awareness-radar/</link>
		
		<dc:creator><![CDATA[Adam Pilton]]></dc:creator>
		<pubDate>Thu, 06 Aug 2026 15:28:45 +0000</pubDate>
				<category><![CDATA[Industry trends]]></category>
		<category><![CDATA[Managed Service Providers]]></category>
		<category><![CDATA[MSP Security Playbook]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=88015</guid>

					<description><![CDATA[<p>Most of the cyber incidents landing on our desks these days start with someone believing a lie. It’s not a brilliant piece of code that causes most breaches. A convincing email, a confident phone call, and a fake sense of urgency can make people hand over exactly what the attacker needs. Last week I talked [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/build-risk-awareness-radar/">The risk awareness radar. A superpower every MSP needs to train</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/build-risk-awareness-radar/risk-awareness/</image><subtitle></subtitle>	</item>
		<item>
		<title>Heimdal data reveals MediaArena adware completes persistence before antivirus quarantine finishes</title>
		<link>https://heimdalsecurity.com/blog/mediaarena-adware-persistence-antivirus-quarantine/</link>
		
		<dc:creator><![CDATA[Madalina Popovici]]></dc:creator>
		<pubDate>Thu, 30 Jul 2026 12:49:55 +0000</pubDate>
				<category><![CDATA[All things Heimdal]]></category>
		<category><![CDATA[Cybersecurity News]]></category>
		<category><![CDATA[press release]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87993</guid>

					<description><![CDATA[<p>London, UK, 30 July 2026 &#8211; New data from Heimdal&#8217;s telemetry measures the gap between execution of the MediaArena adware and the completion of quarantine. The same pattern has been confirmed across more than 40 client environments. MediaArena is a browser-modifier adware family that Microsoft has tracked since 2023. It is low-severity, and that is [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/mediaarena-adware-persistence-antivirus-quarantine/">Heimdal data reveals MediaArena adware completes persistence before antivirus quarantine finishes</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/mediaarena-adware-persistence-antivirus-quarantine/heimdal-data-reveals-mediaarena-adware-completes-persistence-before-antivirus-quarantine-finishes-blog/</image><subtitle>Heimdal&#8217;s Threat Intelligence team directly measured, using its own telemetry, the timeline of a real infection.</subtitle>	</item>
		<item>
		<title>How Heimdal grew from a bold idea into a global cybersecurity platform</title>
		<link>https://heimdalsecurity.com/blog/how-heimdal-grew-global-cybersecurity-platform/</link>
		
		<dc:creator><![CDATA[Morten Kjaersgaard]]></dc:creator>
		<pubDate>Thu, 30 Jul 2026 08:32:57 +0000</pubDate>
				<category><![CDATA[All things Heimdal]]></category>
		<category><![CDATA[Managed Service Providers]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87972</guid>

					<description><![CDATA[<p>Heimdal did not start as a traditional cybersecurity company. It started with two Danish cybersecurity researchers, a piece of innovative technology and a challenge. Could they create something that could identify vulnerabilities, intercept malicious activity and help protect machines before threats could take hold? That technology went on to compete at the Defcon CTF world [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/how-heimdal-grew-global-cybersecurity-platform/">How Heimdal grew from a bold idea into a global cybersecurity platform</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/how-heimdal-grew-global-cybersecurity-platform/heimdal-and-brigantia-ten-year-partnership-2/</image><subtitle></subtitle>	</item>
		<item>
		<title>MediaArena malvertising: why a quarantine isn&#8217;t the end of the incident</title>
		<link>https://heimdalsecurity.com/blog/media-arena-malvertising-report/</link>
		
		<dc:creator><![CDATA[Alexandru Gurgu]]></dc:creator>
		<pubDate>Thu, 30 Jul 2026 08:21:38 +0000</pubDate>
				<category><![CDATA[Threat center]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87918</guid>

					<description><![CDATA[<p>If Microsoft Defender quarantines BrowserModifier:Win32/MediaArena on one of your endpoints, the alert reads like a win. Our SOC data says treat it as a live persistence incident instead. In the case we timed, the payload finished writing its persistence 21 seconds into execution. Quarantine didn&#8217;t complete until 29 seconds. By the time the alert fired, [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/media-arena-malvertising-report/">MediaArena malvertising: why a quarantine isn&#8217;t the end of the incident</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/media-arena-malvertising-report/mediaarena-blog-cover/</image><subtitle>By Alexandru Gurgu, Threat Intelligence Security Analyst, Heimdal</subtitle>	</item>
		<item>
		<title>Tools Change. Teach People How to Keep Up</title>
		<link>https://heimdalsecurity.com/blog/ai-strategy-insights-joe-head/</link>
		
		<dc:creator><![CDATA[Adam Pilton]]></dc:creator>
		<pubDate>Tue, 28 Jul 2026 14:51:27 +0000</pubDate>
				<category><![CDATA[Industry trends]]></category>
		<category><![CDATA[Managed Service Providers]]></category>
		<category><![CDATA[MSP Security Playbook]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87960</guid>

					<description><![CDATA[<p>&#8220;Make everyone one percent better and it compounds across the team.&#8221; That&#8217;s the line Joe Head wrote about his own job and when I read it back to him, he didn&#8217;t hesitate. &#8220;That is 100% the objective,&#8221; he said. Joe runs AI adoption for an 80-person team as the only AI automation specialist in the [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/ai-strategy-insights-joe-head/">Tools Change. Teach People How to Keep Up</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/ai-strategy-insights-joe-head/ai-strategy-insights/</image><subtitle>Why MSP Leaders Should Refuse to Build Their AI Strategy Around Any Single Tool</subtitle>	</item>
		<item>
		<title>The 4 best managed EDR service suppliers (and how to choose)</title>
		<link>https://heimdalsecurity.com/blog/best-managed-edr-services/</link>
		
		<dc:creator><![CDATA[Danny Mitchell]]></dc:creator>
		<pubDate>Thu, 23 Jul 2026 10:25:54 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87948</guid>

					<description><![CDATA[<p>There are several cybersecurity companies that offer managed EDR services in 2026. Here&#8217;s what actually separates them, and who each one suits. Most successful cyber attacks begin with a breached laptop, a smartphone or a server. Over the past 15 years, endpoint detection and response (EDR) has gone from niche to a mainstream security solution. [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/best-managed-edr-services/">The 4 best managed EDR service suppliers (and how to choose)</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/best-managed-edr-services/edr-featured-image-selection/</image><subtitle></subtitle>	</item>
		<item>
		<title>Top 4 Best SOC Platforms 2026 &#8211; Provider Comparison</title>
		<link>https://heimdalsecurity.com/blog/best-soc-platforms/</link>
		
		<dc:creator><![CDATA[Danny Mitchell]]></dc:creator>
		<pubDate>Wed, 22 Jul 2026 15:52:54 +0000</pubDate>
				<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87941</guid>

					<description><![CDATA[<p>Without the right tools, no security operations centre (SOC) can do its job properly. A SOC platform brings together a range of security technologies that let your analysts rapidly identify threats, investigate them and implement fixes. There are many cybersecurity tools that an SOC can use, and there are many vendors selling comparable products. The [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/best-soc-platforms/">Top 4 Best SOC Platforms 2026 &#8211; Provider Comparison</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/best-soc-platforms/soc-featured-image-selection/</image><subtitle></subtitle>	</item>
		<item>
		<title>Top 6 Managed Detection and Response Providers</title>
		<link>https://heimdalsecurity.com/blog/top-managed-detection-response-providers/</link>
		
		<dc:creator><![CDATA[Danny Mitchell]]></dc:creator>
		<pubDate>Fri, 10 Jul 2026 12:57:58 +0000</pubDate>
				<category><![CDATA[MXDR]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87867</guid>

					<description><![CDATA[<p>There are several major managed detection and response (MDR) companies to choose from. We&#8217;ve compared the main offerings of the best MDR providers to help you decide which is right for your organisation. Maybe it was a near miss, or a security team stretched too thin and drowning in alerts from dozens of tools. Whatever [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/top-managed-detection-response-providers/">Top 6 Managed Detection and Response Providers</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/top-managed-detection-response-providers/mdr-featured-image/</image><subtitle></subtitle>	</item>
		<item>
		<title>Cyber-Aware Customers Are Raising the Bar for MSPs and Other Vendors </title>
		<link>https://heimdalsecurity.com/blog/customers-raising-bar-msps/</link>
		
		<dc:creator><![CDATA[Adam Pilton]]></dc:creator>
		<pubDate>Wed, 08 Jul 2026 09:19:02 +0000</pubDate>
				<category><![CDATA[Industry trends]]></category>
		<category><![CDATA[Managed Service Providers]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87843</guid>

					<description><![CDATA[<p>Your client is no longer just buying your security advice. They’re auditing whether you live by it.  That was a clear message from my exclusive interview with Heather MacDonald Alford, an MSP finance specialist and owner of Counting Creators.  Heather’s exactly the kind of customer MSPs should be paying attention to. She’s informed, commercially minded, and willing to challenge vendors to [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/customers-raising-bar-msps/">Cyber-Aware Customers Are Raising the Bar for MSPs and Other Vendors </a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/customers-raising-bar-msps/heather-macdonald-interview-for-msps/</image><subtitle></subtitle>	</item>
		<item>
		<title>How to scale your patches without scaling your team (the patch wave)</title>
		<link>https://heimdalsecurity.com/blog/how-scale-patches-without-scaling-team/</link>
		
		<dc:creator><![CDATA[Danny Mitchell]]></dc:creator>
		<pubDate>Fri, 03 Jul 2026 15:30:53 +0000</pubDate>
				<category><![CDATA[Patch management]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87827</guid>

					<description><![CDATA[<p>Most breaches don&#8217;t start with a vulnerability nobody knew about. They start with one nobody patched in time. Vulnerability exploitation is now the single biggest way attackers get into a network. It has overtaken stolen credentials for the first time in the 19-year history of Verizon&#8217;s Data Breach Investigations Report, with 31% of breaches now [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/how-scale-patches-without-scaling-team/">How to scale your patches without scaling your team (the patch wave)</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/how-scale-patches-without-scaling-team/patch-wave-featured/</image><subtitle></subtitle>	</item>
		<item>
		<title>AI didn&#8217;t break patching. It showed us patching was already broken.</title>
		<link>https://heimdalsecurity.com/blog/ai-showed-patching-broken/</link>
		
		<dc:creator><![CDATA[Danny Mitchell]]></dc:creator>
		<pubDate>Fri, 03 Jul 2026 11:14:49 +0000</pubDate>
				<category><![CDATA[Patch management]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87821</guid>

					<description><![CDATA[<p>Claude Mythos, an AI model from Anthropic, has found 23,019 software vulnerabilities in the past month. Fewer than 1% of them have been patched. That gap is the story. Finding a vulnerability used to be the hard part, the thing that limited how fast software got fixed. AI just closed that gap to almost nothing. [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/ai-showed-patching-broken/">AI didn&#8217;t break patching. It showed us patching was already broken.</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/ai-showed-patching-broken/patch-wave-featured-1200x628/</image><subtitle></subtitle>	</item>
		<item>
		<title>Heimdal Launches MSP Onboarding Wizard to Help Partners Onboard Microsoft CSP Customers in 2 Minutes</title>
		<link>https://heimdalsecurity.com/blog/heimdal-msp-onboarding-wizard/</link>
		
		<dc:creator><![CDATA[Madalina Popovici]]></dc:creator>
		<pubDate>Wed, 01 Jul 2026 07:55:36 +0000</pubDate>
				<category><![CDATA[All things Heimdal]]></category>
		<category><![CDATA[Cybersecurity News]]></category>
		<category><![CDATA[press release]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87805</guid>

					<description><![CDATA[<p>COPENHAGEN, Denmark, 1 July 2026 &#8211; Heimdal today announced the launch of MSP Onboarding Wizard, a new capability that helps managed service providers onboard Microsoft Cloud Solution Provider (CSP) customers inside the Heimdal platform faster and with less manual work. Built for MSPs managing multiple Microsoft tenants, MSP Onboarding Wizard reduces customer onboarding from around [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/heimdal-msp-onboarding-wizard/">Heimdal Launches MSP Onboarding Wizard to Help Partners Onboard Microsoft CSP Customers in 2 Minutes</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/heimdal-msp-onboarding-wizard/heimdal-msp-onboarding-wizard-2/</image><subtitle>New feature reduces manual setup, speeds up customer activation, and helps MSPs scale Microsoft CSP estates with less operational work.</subtitle>	</item>
		<item>
		<title>How Dynamic Defense shuts an attacker out without shutting down the business</title>
		<link>https://heimdalsecurity.com/blog/how-dynamic-defense-shuts-attacker-out/</link>
		
		<dc:creator><![CDATA[Morten Kjaersgaard]]></dc:creator>
		<pubDate>Fri, 26 Jun 2026 15:49:14 +0000</pubDate>
				<category><![CDATA[Endpoint security]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87796</guid>

					<description><![CDATA[<p>AI has handed hackers a resource advantage. Winning it back means spending your own resources far more precisely, and that&#8217;s the strategy we call Dynamic Defense. The principle is simple. Contain the threat just enough, for just long enough, until the risk is removed. This piece shows how that works as a five-stage loop that [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/how-dynamic-defense-shuts-attacker-out/">How Dynamic Defense shuts an attacker out without shutting down the business</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/how-dynamic-defense-shuts-attacker-out/dynamic-defense-featured-image/</image><subtitle></subtitle>	</item>
		<item>
		<title>Static security has run out of road. The case for Dynamic Defense</title>
		<link>https://heimdalsecurity.com/blog/case-dynamic-defense/</link>
		
		<dc:creator><![CDATA[Morten Kjaersgaard]]></dc:creator>
		<pubDate>Fri, 26 Jun 2026 10:10:38 +0000</pubDate>
				<category><![CDATA[Endpoint security]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87789</guid>

					<description><![CDATA[<p>AI has flipped the economics of cybersecurity in the attacker&#8217;s favor. For most of the last decade, defenders held the cost advantage, buying down their risk with a stack of largely static controls. That advantage is gone, and winning it back is the central problem facing every security team in 2026. I think the answer [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/case-dynamic-defense/">Static security has run out of road. The case for Dynamic Defense</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/case-dynamic-defense/featured-image-3/</image><subtitle></subtitle>	</item>
		<item>
		<title>Breaking the MSP Echo Chamber: The Power of Community</title>
		<link>https://heimdalsecurity.com/blog/msp-community-breaking-echo-chamber/</link>
		
		<dc:creator><![CDATA[Livia Gyongyoși]]></dc:creator>
		<pubDate>Wed, 24 Jun 2026 11:46:03 +0000</pubDate>
				<category><![CDATA[Industry trends]]></category>
		<category><![CDATA[Managed Service Providers]]></category>
		<category><![CDATA[MSP Security Playbook]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">https://heimdalsecurity.com/blog/?p=87772</guid>

					<description><![CDATA[<p>MSPs spend too much time talking to other MSPs and not enough time talking to the people they&#8217;re supposed to serve.  That’s Paul Croker’s view of some of the channel’s biggest growth problems.   While most industry events bring technology professionals together, they rarely put them in the same room as the business leaders making [&#8230;]</p>
<p>The post <a href="https://heimdalsecurity.com/blog/msp-community-breaking-echo-chamber/">Breaking the MSP Echo Chamber: The Power of Community</a> appeared first on <a href="https://heimdalsecurity.com/blog">Heimdal Security Blog</a>.</p>
]]></description>
		
		
		
		<image>https://heimdalsecurity.com/blog/msp-community-breaking-echo-chamber/new-blog-cover-7-3/</image><subtitle>An Interview with Paul Croker</subtitle>	</item>
	</channel>
</rss>
