<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-US">
  <id>https://www.shield.travel/en/atom.xml</id>
  <title>Shield — Operational security. No bullshit.</title>
  <subtitle>Reference knowledge base on protecting identity, devices and data. Field-adapted.</subtitle>
  <link rel="self" href="https://www.shield.travel/en/atom.xml" type="application/atom+xml" />
  <link rel="alternate" href="https://www.shield.travel/en/" />
  <updated>2026-05-14T00:00:00.000Z</updated>
  <author>
    <name>Shield / Privateer</name>
    <uri>https://privateer.expert</uri>
  </author>
  <rights>© Privateer</rights>
  <entry>
    <id>https://www.shield.travel/en/travel/holidays-privacy/</id>
    <title>Holidays and privacy: the threat model you forget in a swimsuit</title>
    <link rel="alternate" href="https://www.shield.travel/en/travel/holidays-privacy/" />
    <published>2026-05-14T00:00:00.000Z</published>
    <updated>2026-05-14T00:00:00.000Z</updated>
    <summary>On holiday, you drop every guard at the moment you expose the most: real-time geolocated photos, hotel Wi-Fi, children&apos;s devices, empty house announced publicly. The leisure threat model, handled without paranoia.</summary>
    <category term="privacy" />
    <category term="holidays" />
    <category term="geolocation" />
    <category term="social media" />
    <category term="children" />
    <category term="public Wi-Fi" />
    <category term="photo metadata" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/travel/industrial-espionage-travel/</id>
    <title>Industrial espionage while travelling: what your devices reveal</title>
    <link rel="alternate" href="https://www.shield.travel/en/travel/industrial-espionage-travel/" />
    <published>2026-04-09T00:00:00.000Z</published>
    <updated>2026-04-09T00:00:00.000Z</updated>
    <summary>Business travel is when an organisation is most exposed, and least suspicious. Real attack vectors, documented cases, and proportionate preparation for executives and teams travelling with valuable information.</summary>
    <category term="industrial espionage" />
    <category term="business travel" />
    <category term="data extraction" />
    <category term="border" />
    <category term="economic intelligence" />
    <category term="business trip" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/organization/field-incident-response/</id>
    <title>Field incident response: the first 90 minutes</title>
    <link rel="alternate" href="https://www.shield.travel/en/organization/field-incident-response/" />
    <published>2026-03-05T00:00:00.000Z</published>
    <updated>2026-03-15T00:00:00.000Z</updated>
    <summary>What to do in the first 90 minutes of a security incident, in the field, without enterprise resources.</summary>
    <category term="incident response" />
    <category term="NIST 800-61" />
    <category term="90 minutes" />
    <category term="containment" />
    <category term="forensics" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/organization/exposed-executive/</id>
    <title>Exposed executive: specific threat model</title>
    <link rel="alternate" href="https://www.shield.travel/en/organization/exposed-executive/" />
    <published>2026-02-19T00:00:00.000Z</published>
    <updated>2026-03-12T00:00:00.000Z</updated>
    <summary>Threats specific to the media or financially exposed executive, actual attack vectors, and proportionate measures.</summary>
    <category term="executive" />
    <category term="CEO" />
    <category term="spear phishing" />
    <category term="deepfake" />
    <category term="CEO fraud" />
    <category term="BEC" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/organization/corporate-travel-policy/</id>
    <title>Corporate travel policy: beyond the 40-page document</title>
    <link rel="alternate" href="https://www.shield.travel/en/organization/corporate-travel-policy/" />
    <published>2026-01-29T00:00:00.000Z</published>
    <updated>2026-03-10T00:00:00.000Z</updated>
    <summary>Building a travel policy that is actually used, with protection level calibrated by destination.</summary>
    <category term="travel policy" />
    <category term="NIS 2" />
    <category term="governance" />
    <category term="country tier" />
    <category term="CISO" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/travel/return-from-mission/</id>
    <title>Return from mission: the post-mortem nobody does</title>
    <link rel="alternate" href="https://www.shield.travel/en/travel/return-from-mission/" />
    <published>2026-01-08T00:00:00.000Z</published>
    <updated>2026-03-01T00:00:00.000Z</updated>
    <summary>What you do when you come back from a high-risk trip: device audit, credential rotation, mission report.</summary>
    <category term="return from mission" />
    <category term="forensics" />
    <category term="credential rotation" />
    <category term="debrief" />
    <category term="incident" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/travel/pre-departure-prep/</id>
    <title>Pre-departure preparation: a checklist by threat level</title>
    <link rel="alternate" href="https://www.shield.travel/en/travel/pre-departure-prep/" />
    <published>2025-12-11T00:00:00.000Z</published>
    <updated>2026-02-18T00:00:00.000Z</updated>
    <summary>The exhaustive preparation checklist before a business trip, calibrated by destination country and profile.</summary>
    <category term="travel checklist" />
    <category term="pre-departure" />
    <category term="threat level" />
    <category term="backup" />
    <category term="emergency contacts" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/travel/hotels-security/</id>
    <title>Hotels: what can be compromised in 4 hours</title>
    <link rel="alternate" href="https://www.shield.travel/en/travel/hotels-security/" />
    <published>2025-11-20T00:00:00.000Z</published>
    <updated>2026-01-30T00:00:00.000Z</updated>
    <summary>The real compromise vectors in a hotel: Wi-Fi, safes, locks, staff, a room left alone.</summary>
    <category term="hotel" />
    <category term="hotel Wi-Fi" />
    <category term="hotel safe" />
    <category term="lock" />
    <category term="Unsaflok" />
    <category term="clean desk" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/travel/traveling-to-china/</id>
    <title>Travelling to China: an honest threat model</title>
    <link rel="alternate" href="https://www.shield.travel/en/travel/traveling-to-china/" />
    <published>2025-10-30T00:00:00.000Z</published>
    <updated>2026-02-25T00:00:00.000Z</updated>
    <summary>What Chinese law imposes, what happens in practice, and the minimum hardware preparation for a business trip.</summary>
    <category term="China" />
    <category term="PIPL" />
    <category term="surveillance" />
    <category term="VPN" />
    <category term="travel laptop" />
    <category term="Great Firewall" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/travel/borders-customs/</id>
    <title>Borders and customs: the routine nobody prepares for</title>
    <link rel="alternate" href="https://www.shield.travel/en/travel/borders-customs/" />
    <published>2025-10-09T00:00:00.000Z</published>
    <updated>2026-02-15T00:00:00.000Z</updated>
    <summary>Your real rights, what customs can actually do, and practical preparation to minimise exposure without breaking the law.</summary>
    <category term="border search" />
    <category term="CBP" />
    <category term="customs" />
    <category term="compelled disclosure" />
    <category term="travel laptop" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/connectivity/esim-travel/</id>
    <title>eSIM for travel: the discreet digital passport</title>
    <link rel="alternate" href="https://www.shield.travel/en/connectivity/esim-travel/" />
    <published>2025-09-18T00:00:00.000Z</published>
    <updated>2026-01-08T00:00:00.000Z</updated>
    <summary>Using a local data eSIM to travel without exposing your home number, comparing the options, managing the residual risks.</summary>
    <category term="eSIM" />
    <category term="Airalo" />
    <category term="Holafly" />
    <category term="roaming" />
    <category term="IMEI" />
    <category term="travel number" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/connectivity/dns-hardening/</id>
    <title>DNS: the link no one hardens</title>
    <link rel="alternate" href="https://www.shield.travel/en/connectivity/dns-hardening/" />
    <published>2025-08-28T00:00:00.000Z</published>
    <updated>2026-02-01T00:00:00.000Z</updated>
    <summary>Why cleartext DNS queries are an underestimated surveillance vector, and how to enable DoH or DoT in 10 minutes. Quad9, NextDNS, Mullvad, self-hosted: who does what.</summary>
    <category term="DNS" />
    <category term="DoH" />
    <category term="DoT" />
    <category term="NextDNS" />
    <category term="Quad9" />
    <category term="Cloudflare" />
    <category term="ISP surveillance" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/connectivity/public-wifi/</id>
    <title>Public Wi-Fi: reasonable paranoia</title>
    <link rel="alternate" href="https://www.shield.travel/en/connectivity/public-wifi/" />
    <published>2025-08-07T00:00:00.000Z</published>
    <updated>2026-01-25T00:00:00.000Z</updated>
    <summary>The real risk level in 2025, what changed with ubiquitous HTTPS, and the good practices that remain relevant.</summary>
    <category term="public Wi-Fi" />
    <category term="MITM" />
    <category term="captive portal" />
    <category term="VPN" />
    <category term="HTTPS" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/connectivity/vpn-reality/</id>
    <title>VPN: 95% of the marketing is false</title>
    <link rel="alternate" href="https://www.shield.travel/en/connectivity/vpn-reality/" />
    <published>2025-07-17T00:00:00.000Z</published>
    <updated>2026-02-20T00:00:00.000Z</updated>
    <summary>What a VPN really protects, what it doesn&apos;t, and how to choose the right one for the right use.</summary>
    <category term="VPN" />
    <category term="WireGuard" />
    <category term="privacy" />
    <category term="IP" />
    <category term="threat model" />
    <category term="Mullvad" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/devices/os-hardening/</id>
    <title>Hardening your OS: Windows, macOS, Linux</title>
    <link rel="alternate" href="https://www.shield.travel/en/devices/os-hardening/" />
    <published>2025-06-26T00:00:00.000Z</published>
    <updated>2026-03-05T00:00:00.000Z</updated>
    <summary>The 10 hardening measures that genuinely change your security level, by OS, with no advanced technical skills required.</summary>
    <category term="hardening" />
    <category term="CIS Benchmark" />
    <category term="Windows Defender" />
    <category term="macOS Gatekeeper" />
    <category term="Linux" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/devices/yubikey-fido2/</id>
    <title>YubiKey and FIDO2 keys: everything you weren&apos;t told</title>
    <link rel="alternate" href="https://www.shield.travel/en/devices/yubikey-fido2/" />
    <published>2025-06-05T00:00:00.000Z</published>
    <updated>2026-02-10T00:00:00.000Z</updated>
    <summary>Choosing, configuring, managing and not locking yourself out with hardware authentication keys.</summary>
    <category term="YubiKey" />
    <category term="FIDO2" />
    <category term="WebAuthn" />
    <category term="PIV" />
    <category term="backup key" />
    <category term="lockout" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/devices/travel-laptop/</id>
    <title>Travel laptop: the machine that can be lost</title>
    <link rel="alternate" href="https://www.shield.travel/en/devices/travel-laptop/" />
    <published>2025-05-15T00:00:00.000Z</published>
    <updated>2026-01-20T00:00:00.000Z</updated>
    <summary>Configuring a laptop that can be seized, lost, or stolen without operational consequences. Setup, preparation, behavior at the border.</summary>
    <category term="travel laptop" />
    <category term="border search" />
    <category term="encryption" />
    <category term="MDM" />
    <category term="minimized data" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/devices/work-phone/</id>
    <title>Work phone: Android, iPhone, or nothing</title>
    <link rel="alternate" href="https://www.shield.travel/en/devices/work-phone/" />
    <published>2025-04-24T00:00:00.000Z</published>
    <updated>2026-03-01T00:00:00.000Z</updated>
    <summary>An honest comparison of the two platforms for professional use in a constrained environment, with the real trade-offs.</summary>
    <category term="iPhone" />
    <category term="Android" />
    <category term="GrapheneOS" />
    <category term="MDM" />
    <category term="mobile security" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/devices/disk-encryption/</id>
    <title>Disk encryption, really?</title>
    <link rel="alternate" href="https://www.shield.travel/en/devices/disk-encryption/" />
    <published>2025-04-03T00:00:00.000Z</published>
    <updated>2026-02-05T00:00:00.000Z</updated>
    <summary>BitLocker, FileVault, LUKS: what&apos;s enabled by default, what actually protects, and the attacks that get through anyway.</summary>
    <category term="BitLocker" />
    <category term="FileVault" />
    <category term="LUKS" />
    <category term="TPM" />
    <category term="DMA attack" />
    <category term="cold boot" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/identity/defensive-osint/</id>
    <title>Defensive OSINT: what you let leak</title>
    <link rel="alternate" href="https://www.shield.travel/en/identity/defensive-osint/" />
    <published>2025-03-13T00:00:00.000Z</published>
    <updated>2025-12-20T00:00:00.000Z</updated>
    <summary>Using offensive intelligence tools on yourself to anticipate what an adversary will see in 2 hours.</summary>
    <category term="OSINT" />
    <category term="reconnaissance" />
    <category term="Maltego" />
    <category term="EXIF" />
    <category term="metadata" />
    <category term="Sherlock" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/identity/sim-swap/</id>
    <title>SIM swap: 4 hours to become you</title>
    <link rel="alternate" href="https://www.shield.travel/en/identity/sim-swap/" />
    <published>2025-02-20T00:00:00.000Z</published>
    <updated>2026-01-10T00:00:00.000Z</updated>
    <summary>How a 4-hour attack can compromise your complete identity, and why SMS as MFA factor is a systemic risk.</summary>
    <category term="SIM swap" />
    <category term="carrier" />
    <category term="port-out PIN" />
    <category term="SMS MFA" />
    <category term="social engineering" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/identity/mfa-google-authenticator/</id>
    <title>MFA: why your Google Authenticator app betrays you</title>
    <link rel="alternate" href="https://www.shield.travel/en/identity/mfa-google-authenticator/" />
    <published>2025-01-30T00:00:00.000Z</published>
    <updated>2026-02-28T00:00:00.000Z</updated>
    <summary>All MFA solutions are not equal. Anatomy of attacks bypassing TOTP, and migration path to FIDO2.</summary>
    <category term="MFA" />
    <category term="TOTP" />
    <category term="FIDO2" />
    <category term="phishing" />
    <category term="Evilginx" />
    <category term="adversary-in-the-middle" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/identity/email-is-passport/</id>
    <title>Your email address is your digital passport</title>
    <link rel="alternate" href="https://www.shield.travel/en/identity/email-is-passport/" />
    <published>2025-01-09T00:00:00.000Z</published>
    <updated>2026-01-30T00:00:00.000Z</updated>
    <summary>Why the main email is the root of all compromise, and how to harden access without locking yourself out.</summary>
    <category term="email" />
    <category term="MFA" />
    <category term="FIDO2" />
    <category term="recovery" />
    <category term="password manager" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/reality/data-brokers/</id>
    <title>Data brokers: the leak you pay for</title>
    <link rel="alternate" href="https://www.shield.travel/en/reality/data-brokers/" />
    <published>2024-12-05T00:00:00.000Z</published>
    <updated>2026-02-14T00:00:00.000Z</updated>
    <summary>Who collects your data, how, why it&apos;s structurally hard to stop, and what you can reasonably do.</summary>
    <category term="data broker" />
    <category term="Acxiom" />
    <category term="opt-out" />
    <category term="GDPR" />
    <category term="Incogni" />
    <category term="DeleteMe" />
    <category term="Optery" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/reality/identity-compartmentation/</id>
    <title>Identity compartmentation: operating with multiple yous</title>
    <link rel="alternate" href="https://www.shield.travel/en/reality/identity-compartmentation/" />
    <published>2024-11-14T00:00:00.000Z</published>
    <updated>2025-12-10T00:00:00.000Z</updated>
    <summary>Building watertight identities by use. The four-identity model, tools per compartment, the non-contamination rule, and rotation as maintenance.</summary>
    <category term="compartmentation" />
    <category term="identity" />
    <category term="alias" />
    <category term="SimpleLogin" />
    <category term="email" />
    <category term="OPSEC" />
    <category term="non-contamination" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/reality/right-to-be-forgotten/</id>
    <title>The right to be forgotten: why it almost never works</title>
    <link rel="alternate" href="https://www.shield.travel/en/reality/right-to-be-forgotten/" />
    <published>2024-10-24T00:00:00.000Z</published>
    <updated>2025-11-20T00:00:00.000Z</updated>
    <summary>An honest anatomy of the GDPR right to erasure — what it covers, what it doesn&apos;t, and the pragmatic alternatives when deletion is out of reach.</summary>
    <category term="right to be forgotten" />
    <category term="GDPR" />
    <category term="CNIL" />
    <category term="de-indexing" />
    <category term="erasure" />
    <category term="Streisand effect" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/reality/exposure-audit/</id>
    <title>The exposure audit: 2 hours to map what&apos;s leaking</title>
    <link rel="alternate" href="https://www.shield.travel/en/reality/exposure-audit/" />
    <published>2024-10-03T00:00:00.000Z</published>
    <updated>2026-01-15T00:00:00.000Z</updated>
    <summary>Step-by-step method to inventory what is already public about you. Free tools, priority order, decisions to make.</summary>
    <category term="audit" />
    <category term="exposure" />
    <category term="OSINT" />
    <category term="HIBP" />
    <category term="Google dorks" />
    <category term="threat model" />
  </entry>
  <entry>
    <id>https://www.shield.travel/en/reality/data-already-public/</id>
    <title>Your data is already public. What that really changes.</title>
    <link rel="alternate" href="https://www.shield.travel/en/reality/data-already-public/" />
    <published>2024-09-12T00:00:00.000Z</published>
    <updated>2026-03-08T00:00:00.000Z</updated>
    <summary>The privacy-first fiction serves everyone except you. An honest inventory of what has already leaked, and the strategic shift to operating in an assumed-leaked state.</summary>
    <category term="exposure" />
    <category term="leak" />
    <category term="data broker" />
    <category term="privacy" />
    <category term="threat model" />
    <category term="OSINT" />
    <category term="compartmentation" />
  </entry>
</feed>