
Published in 1998 and never replaced, RFC 2350 describes an incident response team in seven parts. What it demands, what has aged, how to write one.
A practical reading of the regulatory and normative frameworks of cybersecurity, grounded in concrete cases. NIS2, DORA, GDPR, ISO/IEC 27001 and 27701, PCI DSS, and the reference models specific to CERT and CSIRT teams: SIM3, FIRST, PRIS.

Executive Summary On December 22, 2024, the Cybersecurity and Infrastructure Security Agency (CISA) and the National Institute of Standards and Technology (NIST) published the initial draft of interagency report IR 8597 “Protecting Tokens and Assertions from Forgery, Theft, and Misuse”. This document is subject to public consultation until January 30, 2026, with comments submitted to…

Executive Summary RFC 9794 establishes standardized terminology for hybrid cryptographic schemes that combine post-quantum and traditional algorithms. As organizations prepare for the quantum computing threat, this reference document ensures consistent communication across protocols, standards, and security teams. It defines key concepts including PQ/T hybrid schemes, composite constructions, security properties (hybrid confidentiality, hybrid authentication), and certificate…