Monday , September 14 2026

ISC2 Aims to Bridge DFIR Skill Gap with New Certificate

ISC2 has launched a Threat Handling Foundations Certificate to assist cybersecurity experts in enhancing Digital Forensics and Incident Response (DFIR) amid rising disruptive attacks that may cause breaches.

DFIR is a complex field of incident response. This four-course program offers practical experience in building a DFIR program, digital forensics basics, incident management, and network threat hunting. Key topics include DFIR, security program management, evidence requirements, communication, security operations, and distinguishing between incidents and breaches.

Hackers deploy Casbaneiro Trojan that activates on bank websites

Casbaneiro is going after online banking users by sending fake messages that seem like urgent bills or legal papers. The...
Read More
Hackers deploy Casbaneiro Trojan that activates on bank websites

German police read Signal, Telegram, WhatsApp messages without breaking encryption

German law enforcement agencies are using features built into apps such as WhatsApp to monitor people’s messages without breaking their...
Read More
German police read Signal, Telegram, WhatsApp messages without breaking encryption

Urgent Patch! cPanel, GitLab Flaws Expose Users to RCE, File and Credential Theft

GitLab has released an important security update to fix two serious problems. These issues could allow unauthorized file access and...
Read More
Urgent Patch! cPanel, GitLab Flaws Expose Users to RCE, File and Credential Theft

Palo Alto PAN-OS Flaw Enables Root Arbitrary Code Execution

Palo Alto Networks has revealed a serious flaw in PAN-OS. It may let a remote attacker without a password run...
Read More
Palo Alto PAN-OS Flaw Enables Root Arbitrary Code Execution

Critical Check Point VPN flaws allow remote code execution attacks

Check Point Software has revealed and fixed two major VPN flaws, CVE-2026-85102 and CVE-2026-85103. Both have a top CVSS score...
Read More
Critical Check Point VPN flaws allow remote code execution attacks

Cisco confirms CVE-2026-20079 flaw in Secure FMC is exploited in attacks

Cisco has said that a serious security flaw CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being used...
Read More
Cisco confirms CVE-2026-20079 flaw in Secure FMC is exploited in attacks

Hackers exploit PaperCut flaws using hundreds of AI agents, compromising 440 servers globally

A Russian-speaking hacker has used artificial intelligence like never before. They sent out hundreds of AI agents to find and...
Read More
Hackers exploit PaperCut flaws using hundreds of AI agents, compromising 440 servers globally

CISA Says Chinese Firms Extracted Billions of Tokens From Frontier AI Models

Six Chinese AI companies ran large-scale attacks on American AI models since late 2024, according to U.S. cybersecurity and intelligence...
Read More
CISA Says Chinese Firms Extracted Billions of Tokens From Frontier AI Models

Nightmare Eclipse Drops New Microsoft Defender ‘ShieldCrash’ zero-day

An unknown security expert called Nightmare Eclipse has drops a new Microsoft Defender flaw called "ShieldCrash" right after Microsoft released...
Read More
Nightmare Eclipse Drops New Microsoft Defender ‘ShieldCrash’ zero-day

cPanel Flaw Lets Hosting Accounts With Mail Privileges Execute Code as Root

cPanel has shared CVE-2026-67401, a serious SQL injection flaw in EmailTrack. This flaw could allow attackers with permission to take...
Read More
cPanel Flaw Lets Hosting Accounts With Mail Privileges Execute Code as Root

Organizations face numerous attacks while having limited resources. The certificate provides a chance to learn real-world security techniques. ISC2 recommends prior experience but does not require it.

What’s On the Course Agenda?

Threats are rising fast, with attack surfaces expanding even faster. Organizations grapple with visibility, vulnerability patch management, and supply chain issues, which can make DFIR tricky. A plethora of security tools continues to emerge, but it can be tough to know which ones to buy and how to use them effectively. Learning how to “evaluate emerging tools, trends, and technologies in digital forensics” is one aspect of the Threat Handling Foundations Certificate.

Differentiating incidents from events and breaches is crucial, as it affects response and consequences. Breaches require extra attention regarding disclosure, legal issues, and data privacy.

The courses will teach how to identify common network threats and the difference between penetration testing and threat hunting. It’s essential to focus on high-risk threats, especially since security teams often have limited time.

Research Revealed DFIR Skills Gap:

ISC2 introduced a new certification after research revealed a notable gap in DFIR skills, according to COO Casey Marks. Specifically, 60% of cybersecurity experts noted that skill gaps hindered their organization’s security, and 25% said their teams lacked adequate DFIR knowledge. ISC2 worked with members and specialists to pinpoint the necessary skills and topics before launching the certification.

Breaches are now boardroom issues, not just IT ones, warns Marks. Organizations must invest in ongoing cybersecurity skills development to keep up with increasingly fast attackers. Consistent response is essential as threats rise and attackers grow more sophisticated.

Effective DFIR is crucial due to the increase in incidents and breaches. Organizations need to respond quickly and learn from these events to improve security.

“While identifying the source of a file server ransomware attack is often within the scope of many IT engineers, the deeper investigative tasks that follow an incident demand specialized expertise, meticulous care, and well-established procedures to ensure the findings are accurate and actionable,” he says.

Check Also

India: C-DOT Launches 14 Local Quantum-Safe Technologies

India is making its communication systems safer and stronger by launching 14 local quantum products. …