DACH Threat Landscape 2026: What SMEs Must Know

DACH region 2026 cyber threat landscape overview for German, Austrian and Swiss companies

A ransomware incident can halt a production line, disrupt a logistics network or leave a clinic scrambling to access essential systems. Across Germany, Austria and Switzerland, those risks are no longer hypothetical. ENISA’s 2025 Threat Landscape report names ransomware as the most disruptive and economically damaging activity in the EU, while hacktivist activity, most of…

Read More

Salesforce Agentforce AI Agent Vulnerability

Salesforce Agentforce AI agent vulnerability let a web form hijack CRM data with zero clicks. Patched already, but the pattern will repeat elsewhere.

A Salesforce Agentforce AI agent vulnerability, publicly disclosed September 24 by research firm Zenity Labs under the name “SalesBleed,” let an attacker plant a hidden instruction in an ordinary sales lead form and later exfiltrate CRM data with zero clicks, once an employee simply asked their AI agent to look at the newest lead. Salesforce…

Read More

Citrix NetScaler unauthenticated RCE vulnerability

Citrix NetScaler unauthenticated RCE vulnerability lets attackers run commands with no login. Two zero-days exploited, patch now, CISA deadline Sep 30.

Citrix confirmed on September 27 that a Citrix NetScaler unauthenticated RCE vulnerability, tracked as two separate CVEs, was already being exploited in the wild before any patch existed. CVE-2026-88771 lets an attacker with no credentials run arbitrary commands on any NetScaler ADC or Gateway appliance in a vulnerable version, default configuration included. Its sibling flaw,…

Read More

Arista VeloCloud Orchestrator vulnerability

An Arista VeloCloud Orchestrator vulnerability (CVSS 10.0) lets attackers reach privileged functions with no credentials. Patch and hunt for backdoors now.

An Arista VeloCloud Orchestrator vulnerability, CVE-2026-93952 (CVSS 10.0), lets an attacker reach privileged internal functions on the on-premises controller for an entire SD-WAN fabric without any credentials at all. Arista confirmed active exploitation and shipped a patch on September 22. This is the second maximum-severity CVE in this exact product line in 2026, after the…

Read More

Top 5 Cybersecurity News

Top 5 Cybersecurity News September 25 2026 DIESEC weekly security briefing

This week’s Top 5 Cybersecurity News follows a thread that has been building across 2026: attackers are no longer trying to bypass the perimeter; they are subverting the infrastructure that maintains it. Russia’s Sandworm group deployed an updated Cyclops Blink botnet variant through Cisco’s firewall management console, turning the administrative plane into an entry point.…

Read More