Three CVSS 10.0 Vulnerabilities in Ubiquiti UniFi OS — Zero Auth, Full Network Control

Three CVSS 10.0 vulnerabilities in Ubiquiti UniFi OS. One exploit chain. Full network control. Zero authentication required. If you use UniFi in your office — and most DACH SMBs do — this is your highest-priority patch this week. CISA added three Ubiquiti vulnerabilities to its Known Exploited Vulnerabilities catalog on June 23, confirming active exploitation…

Read More

World Cup Cybersecurity: What SMEs Need to Know

World Cup cybersecurity — cyber risks for SMEs in major sporting event ecosystems

World Cup cybersecurity risks do not begin and end with FIFA. The 2026 World Cup has captured the attention of billions of fans globally — and that same visibility attracts cybercriminals, hacktivists, fraudsters, and potentially nation-state actors. The risks extend far beyond the official organisers, the large ticketing companies, and the stadium operators. Large global…

Read More

DragonForce Ransomware Hides C2 Traffic Inside Microsoft Teams Relay Servers

Ransomware operators found a backdoor into your network. It looks exactly like a Teams meeting. Symantec and Carbon Black disclosed that DragonForce ransomware affiliates deployed Backdoor.Turn — a Go-based implant that tunnels its command-and-control traffic through Microsoft Teams TURN relay servers. The malware obtains an anonymous Teams visitor token, uses a legitimate Microsoft relay for…

Read More