<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[📬 FIRST&#x27;s Q1FY26 Newsletter is here, and it&#x27;s packed.]]></title><description><![CDATA[<p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f4ec.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--mailbox_with_mail" style="height:23px;width:auto;vertical-align:middle" title="📬" alt="📬" /> FIRST's Q1FY26 Newsletter is here, and it's packed.</p><p>Here's a look at what's inside:</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f50d.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--mag" style="height:23px;width:auto;vertical-align:middle" title="🔍" alt="🔍" /> On Vulnerabilities &amp; VulnCon</p><p>FIRST Chair Olivier Caleff reflects on VulnCon 2026 and what it means for how CSIRTs approach vulnerability management, from prioritization to escalation to the evolving role of EPSS in daily operations.</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f30d.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--earth_africa" style="height:23px;width:auto;vertical-align:middle" title="🌍" alt="🌍" /> Global Policy &amp; the UN Cybersecurity Mechanism</p><p>FIRST is engaging with the newly launched UN Global Cybersecurity Mechanism (G-Mech), bringing operational incident response expertise to international policy discussions.</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f3c5.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--sports_medal" style="height:23px;width:auto;vertical-align:middle" title="🏅" alt="🏅" />Member Spotlight: Koen Van Impe</p><p>20+ years in cybersecurity, a core contributor to the MISP project, and a tireless open-source advocate.</p><p>Koen's work is a reminder of what community-first contribution looks like in practice.</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f4ca.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--bar_chart" style="height:23px;width:auto;vertical-align:middle" title="📊" alt="📊" /> SIG Updates</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2705.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--white_check_mark" style="height:23px;width:auto;vertical-align:middle" title="✅" alt="✅" /> STP SIG published a white paper, authored by AUSCERT, on the future of CERTs/CSIRTs/ISACs<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2705.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--white_check_mark" style="height:23px;width:auto;vertical-align:middle" title="✅" alt="✅" /> Vulnerability SIG forecast report predicted 2026 will be the first year to exceed 50,000 published CVEs<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2705.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--white_check_mark" style="height:23px;width:auto;vertical-align:middle" title="✅" alt="✅" /> CTI SIG launched new educational videos and a blog series<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2705.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--white_check_mark" style="height:23px;width:auto;vertical-align:middle" title="✅" alt="✅" /> NETSEC SIG published guidance on characterizing abusive IP proxies<br /><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/2705.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--white_check_mark" style="height:23px;width:auto;vertical-align:middle" title="✅" alt="✅" /> Metrics SIG released Version 1.0 of Metrics for the FIRST CSIRT Services Framework</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f331.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--seedling" style="height:23px;width:auto;vertical-align:middle" title="🌱" alt="🌱" /> Community &amp; Capacity Building</p><p>FIRST CORE welcomed support from the Internet Society and Internet Society Foundation through the newly launched Common Good Cyber Fund.</p><p>In two years, FIRST's Africa Regional Liaison initiative has worked with 1,210 cybersecurity professionals and delivered 50+ initiatives across 33 countries.</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f3a4.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--microphone" style="height:23px;width:auto;vertical-align:middle" title="🎤" alt="🎤" /> Events &amp; Conferences</p><p>A strong start to the year with three Technical Colloquia: Paris, Bangalore, and Uzbekistan, each bringing together regional communities to share lessons on resilience, AI, and cyber response.</p><p>FIRST also announced its three flagship 2026 conferences: VulnCon (Scottsdale), the CTI Conference (Munich), and the 38th Annual Conference (Denver).</p><p><img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f4c5.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--date" style="height:23px;width:auto;vertical-align:middle" title="📅" alt="📅" /> Looking Ahead</p><p>The 2026 FIRST AGM takes place June 15 during the Annual Conference in Denver and will also be streamed for remote observation.</p><p>Members, make sure your voting rep is updated before May 12!</p><p>Read more <img src="https://board.circlewithadot.net/assets/plugins/nodebb-plugin-emoji/emoji/android/1f449.png?v=28325c671da" class="not-responsive emoji emoji-android emoji--point_right" style="height:23px;width:auto;vertical-align:middle" title="👉" alt="👉" /> <a href="https://go.first.org/smsdl" rel="nofollow noopener"><span>https://</span><span>go.first.org/smsdl</span><span></span></a></p><p><a href="https://infosec.exchange/tags/CyberDefense" rel="tag">#<span>CyberDefense</span></a> <a href="https://infosec.exchange/tags/cybersecurity" rel="tag">#<span>cybersecurity</span></a> <br /><a href="https://infosec.exchange/tags/IncidentResponse" rel="tag">#<span>IncidentResponse</span></a> <a href="https://infosec.exchange/tags/infosec" rel="tag">#<span>infosec</span></a></p>]]></description><link>https://board.circlewithadot.net/topic/28104de8-eb1b-43de-87b8-f93417aa85d4/first-s-q1fy26-newsletter-is-here-and-it-s-packed.</link><generator>RSS for Node</generator><lastBuildDate>Fri, 15 May 2026 08:46:27 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/topic/28104de8-eb1b-43de-87b8-f93417aa85d4.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 29 Apr 2026 17:00:20 GMT</pubDate><ttl>60</ttl></channel></rss>