#incident-response — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #incident-response, aggregated by home.social.
-
Want to be part of FIRST LAC 2026? We’d love to have you there, and we’d love to have you as a sponsor.
The FIRST Regional Symposium for Latin America & the Caribbean is an opportunity to bring together the people, ideas, and organizations working to strengthen incident response across the region.
Support the event as a sponsor and put your organization at the heart of the conversation.
📍 Mendoza, Argentina
📅 October 21–22, 2026Sponsorship opportunities are available now.
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #LAC #Sponsorship
-
New blog post! Yes another one!
Incident Story Time is a weekly ritual that gives us a chance to share and learn from incidents.
-
🌐 In this week's "Improving Security Across Nations with FIRST" video series, we spotlight Ken van Wyk, FIRST Member & President and Principal Consultant, KRvW Associates, LLC and #FIRSTCON26 speaker.
He shares how the friendships built outside the conference room are what make global incident response possible:
💡 A founding perspective - A FIRST member since the organization's start, with 11 years on the Steering Committee and Board of Directors
🗣️ Denver, 1992 - Recalls an evening after a long conference day that turned into hours of conversation with colleagues, swapping stories about life, not just work, and turning strangers into lifelong friends
🤝 Trust across borders - "Nobody has an agenda. It's just fun – and from that fun comes trust." That trust means calling a person you know when an incident hits, not just a national CSIRT
📺 Watch below!
-
Neue HiWay-Podcast-Folge: „Stimme, Kultur, Netzwerke: Was Frauen in der IT nach vorn bringt“ https://youtu.be/H23n3miURNo
Frauen anzustellen allein reicht nicht. Dafür zu sorgen, dass sie bleiben und aufsteigen, ist mindestens genauso wichtig. Linda Schwarz arbeitet als Security Consultant in der digitalen Forensik und kennt die IT-Sicherheit als Branche, in der Frauen deutlich in der Unterzahl sind. Im Gespräch mit Jaqueline Nayis erklärt sie, was Unternehmen verändern müssen, damit aus dem Einstieg eine langfristige Karriere werden kann.YouTube: https://youtu.be/H23n3miURNo
Spotify: https://open.spotify.com/show/6FwPurxOj5ND2H7UcVizA4
Apple: https://podcasts.apple.com/us/podcast/hiway-wegweiser-f%C3%BCr-digitalisierung-und-sicherheit/id1789738836Moderierte Expertentalks zu Themen, Trends & Herausforderungen aus
✔️ Cybersecurity
✔️ Digitale Transformation
✔️ Business Continuity & Krisenmanagement
✔️ IT-Management
✔️ Regulatorik, Compliance & GovernanceDie nächste HiWay-Folge erscheint am 16.09.2026
#incidentresponse #womenintech #cybersecurity #femaleleadership
-
This is an old blog post we made during Covid times.
What is interesting, however, is that most of the tools we talk about here are still ruling the roost in IR.
CyLR and Vol2 are pretty much the only things I wouldn't use today. If you add UAC, AVML, and Kunai, the list would be just as good in 2026 as it was in 2020!
Have I missed any new, awesome, developments?
https://www.halkynconsulting.co.uk/a/2020/11/dfir-with-low-cost-or-free-tools/
-
I've tried to create a Log2Timeline parser that will handle Kunai data. It is still very much an "alpha" version, but I'd welcome any feedback.
https://github.com/TazWake/Kunai_Parser_Plaso-l2t
#linux #dfir #log2timeline #incidentresponse #investigations #cybersecurity
-
Some logs should stay on the machine that collected them. LogoRRR opens and analyzes local files on your desktop. Loqi can investigate without sending the evidence elsewhere.
Image: AI-generated Loqi artwork.
-
Fire Ant Evolves: From Hypervisors to Trusted Infrastructure
Fire Ant, first reported in 2025, remained active in 2026 and expanded its operations beyond hypervisors into the trusted infrastructure that routes traffic, authenticates administrators, manages access, and records activity. The main finding is that the actor was no longer targeting only individual systems, it was targeting the infrastructure layer that controls how entire environments connect and operate both within and across organizational boundaries.
https://www.sygnia.co/blog/fire-ant-evolves-from-hypervisors-to-trusted-infrastructure/
#sygnia #incidentresponse #infosec #infrastructure #fireant #chain
-
Loqi has three logs open and one timestamp to chase. Linked views in LogoRRR keep related files aligned while you compare what happened around the same moment.
-
🌎 Save the Date!
Join the 2026 FIRST Regional Symposium Latin America & Caribbean in Mendoza, Argentina, on October 21–22, 2026.
https://www.first.org/events/symposium/latam2026/
Co-hosted by LACNIC and CERT.br / NIC.br, and co-located with LACNIC 46, the event will bring together FIRST members, CSIRTs, network operators, and cybersecurity professionals from across the region.
✅ Plenary Sessions – October 21
✅ Training Sessions – October 22
✅ Hybrid attendance optionsConnect, collaborate, and strengthen incident response capabilities across the LAC community.
#FIRST #LACNIC46 #CyberSecurity #IncidentResponse #CSIRT #InfoSec
-
We Have a DBIR for Breaches. We Have Nothing for AI yet.
https://youtu.be/6m4sXQv_yHQ #CyberSecurity #ArtificialIntelligence #AISecurity #ThreatIntelligence #InfoSec #CISO #RiskManagement #IncidentResponse #DataBreach #AIGovernance -
Loqi’s first move on a large log file: zoom out. LogoRRR’s visual map and heatmap show where activity clusters. Start reading where the picture gets busy.
-
🌐 FIRST's 2025 Annual Report is here, and it captures a year of real growth across our global community.
We welcomed 133 new applications and now stand at 834 teams, 4 associates, and 205 individual members across 113 countries. Our Annual Conference in Copenhagen brought together 1,056 delegates from 103 economies, and our trainers ran 41 workshops in 29 countries worldwide.
We also launched FIRST CORE with founding partner Fortinet, published our new Strategic Plan through 2028, welcomed four new Special Interest Groups, and inducted Rich Pethia, founder of the world's first CERT, into our Incident Response Hall of Fame.
None of this happens without the trust and collaboration of our members. Thank you for another year of improving security together.
📖 Read the full Report: https://go.first.org/mMkDK
-
The 2026 FIRST Regional Symposium for Latin America & the Caribbean is bringing cybersecurity and incident response professionals together in Mendoza, Argentina this October.
Become a sponsor and help support meaningful conversations, knowledge sharing, and collaboration across the regional security community.
📅 October 21–22, 2026
📍 Mendoza, ArgentinaInterested in sponsoring? Learn more about the opportunities available:
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #Sponsorship
-
RT @OpenAI: Wir haben eine gründliche Untersuchung des Hugging Face-Vorfalls durchgeführt.
mehr auf Arint.info
#AI #Cybersecurity #HuggingFace #IncidentResponse #MachineLearning #TechnicalReport #arint_info
-
🎥 #FIRSTCON26 talks are now on YouTube!
Missed a session at FIRSTCON26 — or want to revisit a favorite? The TLP:CLEAR recorded talks are now available to watch on demand!
Catch up on insights, discussions, and presentations from this year’s conference. 👇
Watch the FIRSTCON26 recordings on YouTube: https://www.youtube.com/playlist?list=PLTnBQ8P3bBrc
-
Loqi has opened the incident log and immediately regrets it. Open the file locally in LogoRRR, use the visual overview to find a starting point, and filter the remaining pile down.
Image: AI-generated Loqi artwork.
-
Discover how strict AI safety filters create a "safety penalty," hindering cybersecurity analysts from deobfuscating code and investigating actual breaches.
-
New by me: The Patch Window Has Collapsed. Defenders Need to Change Now
https://www.kylereddoch.me/blog/the-patch-window-has-collapsed-defenders-need-to-change-now/
#Cybersecurity #InfoSec #VulnerabilityManagement #PatchManagement #IncidentResponse #MSP
-
I’m super excited to share that there is one open Staff level (and one soon-to-be-open Sr level) Detection Engineer role on my team.
If you’re into cybersecurity & a technical leader who is in (or strongly adjacent to) detection engineering, able to work hybrid in Mountain View, CA, please have a look:
Staff Engineer, base pay $156-255,000
https://www.linkedin.com/jobs/view/4458544669/#detectionengineering #incidentresponse #getfedihired #jobalert #jobsearch
-
Civil society organizations hold sensitive data on vulnerable populations and activists, but they rarely have security budgets that match the risk. In a perspective piece for Cybersecurity for NGOs: Attack Prevention and Threat Response, a new book from Protect.ngo. FIRST CEO, Chris Gibson makes the case that preparation, not budget size, is what determines whether an organization survives a cyberattack.
His argument centers on three things NGOs can control:
1️⃣ Foundational security habits like network segmentation, multi-factor authentication, and retiring old credentials
2️⃣ Treating cybersecurity as a leadership issue rather than an IT problem, with response plans tested before a crisis hits
3️⃣ Building relationships with trusted incident response communities, like FIRST or regional CERTs, that provide real-time threat intelligence and peer support no single organization could develop aloneLearn more: https://go.first.org/iY4k5
-
Get your organization in front of the right audience. 🌎
Sponsoring the FIRST Regional Symposium for Latin America & the Caribbean is a great opportunity to connect with cybersecurity professionals, strengthen relationships, and raise your organization’s profile within the regional incident response community.
Join us in Mendoza, Argentina, October 21–22, 2026.
🎯 Connect.
🤝 Collaborate.
📣 Be part of the conversation.Explore sponsorship opportunities today:
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #CSIRT #IncidentResponse
-
You have a five-year-old firmware flaw and wallets draining with no confirmed number of how many customers are exposed.
In this week's Discernible Experience scenario, subscribers will step into the role of Head of Security at a hardware wallet company confirming active exploitation, but with only a wide-range estimate to work from.
The hard part now is recommending action despite the uncertainty & staying accountable to that call as the picture changes.
Precision under uncertainty is a critical communication skill & this is what we train for.
-
🚨 LAST CALL FOR SPEAKERS! 🚨
We’ve extended the deadline for the FIRST Latin America & Caribbean Regional Symposium 2026 Call for Speakers!
📅 New deadline: August 23
Have a cybersecurity topic, case study, research, or experience to share? This is your chance to bring your perspective to the FIRST community.
🎤 Get your proposal in before the new deadline!
👉 https://www.first.org/events/symposium/latam2026/
#FIRST #FIRSTLAC #Cybersecurity #CallForSpeakers #IncidentResponse
-
The 2026 FIRST Regional Symposium for Latin America & the Caribbean is bringing cybersecurity and incident response professionals together in Mendoza, Argentina this October.
Become a sponsor and help support meaningful conversations, knowledge sharing, and collaboration across the regional security community.
📅 October 21–22, 2026
📍 Mendoza, ArgentinaInterested in sponsoring? Learn more about the opportunities available:
🔗 https://www.first.org/events/symposium/latam2026/
#FIRSTLAC26 #FIRSTEvents #Cybersecurity #IncidentResponse #Sponsorship
-
Calling all cybersecurity professionals, academics, and CSIRTs to join us in Luxembourg for #VulnOptiCON 2026, FIRST's evolution of Vuln4Cast!
📆 September 23-25, 2026
Hosted in partnership with the Computer Incident Response Centre Luxembourg (CIRCL), this year's event theme is "The A-Eyes See All." Keynote speakers Jaya Baloo, COO & CISO at AISLE and a world-renowned top 100 CISO, and Regina Joseph, a leading behavioral scientist and applied forecasting expert, will share actionable strategies for defenders and forecasting teams facing unprecedented levels of change driven by AI.
The three-day program covers:
✅ Global & Open Ecosystems: rethinking vulnerability tracking for an open security landscape
✅ Forecasting & Metrics: measuring and forecasting exploitation conditions
✅ Policy & Program Futures: what's next for the CVE Program
✅ Data & Observable Evidence: what happens when the industry sets its own standards
✅ Next-Gen Threat Detection: detecting threats that cannot yet be named🎟️ Limited tickets available
🔗 Learn more about the speaker lineup: https://go.first.org/kxOHk -
Security Tip: Don't let a breach silence your response team. 🛡️
When an attacker gains access to your network, they often monitor internal communications like Slack or Email. Establishing "out-of-band" (OOB) communication channels—completely independent of your corporate infrastructure—is critical for a coordinated response.
Plan your secure OOB strategy before you need it.
Stay ahead of threats: https://cvedatabase.com
-
🏅 Mañana miércoles 19 de agosto iniciamos el Curso Maltego Graph ⚔️ 19, 20, y 21 de Agosto 2026 ♾ De 8:00 pm a 11:00 pm (UTC -05:00) [9 horas] 🌎 WhatsApp: https://wa.me/reydes 🚀 Información: https://www.reydes.com/archivos/cursos/Curso_Maltego.pdf #cybersecurity #infosec #security #cyber #zerotrust #incidentresponse #endpointsecurity