Next week, on May 30th the NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) opens the 10th International Conference on Cyber Conflict, CyCon 2018. The anniversary event focuses on the theme of maximising effects in the cyber domain.
The 10th CyCon Starts Next Week
The 10th CyCon Starts Next Week
The 10th CyCon Hosts 700 Cyber Experts in Tallinn
CyCon 2019 Theme is Silent Battle in Cyber Space
Romania to Join the NATO Cooperative Cyber Defence Centre of Excellence in Tallinn
The Prime Minister of Romania, Mrs. Viorica Dăncilă, announced today during her visit to Estonia that Romania looks forward to joining NATO Cooperative Cyber Defence Centre of Excellence (CCDCOE) in 2019. NATO-accredited cyber defence hub in Tallinn welcomes the decision of Romania to become another NATO Ally to join the Centre.
Colonel Jaak Tarien to Become Director of the NATO Cooperative Cyber Defence Centre of Excellence
As of 1 September 2018 Colonel Jaak Tarien, former Commander of Estonian Air Force for the past six years, will assume the role of Director of the NATO Cooperative Cyber Defence Centre of Excellence based in Estonia.
Merle Maigre, current Director of CCDCOE, will take on a new challenge in September by joining CybExer Technologies, an Estonian cyber security company which is rapidly expanding its operations both in Estonia and abroad.
Colonel Jaak Tarien assumes command of NATO CCDCOE
Colonel Jaak Tarien, until recently the long-term Commander of Estonian Air Force, assumed today from Merle Maigre the role of Director of the NATO Cooperative Cyber Defence Centre of Excellence based in Tallinn.
CyCon 2019 Papers are Expected by 1 October
The Call for CyCon 2019 Papers is open until 1 October 2018. The theme for the eleventh International Conference on Cyber Conflict, hosted by the NATO Cooperative Cyber Defence Centre of Excellence, is ‘Silent Battle’. CyCon 2019 will take place in Tallinn, Estonia, from 28 to 31 May 2019.
The International Conference on Cyber Conflict, CyCon, is entering its second decade. Throughout the years, CyCon has established itself as a prominent multidisciplinary conference, introducing keynotes and panels focusing on the technical, legal, policy, strategy and military perspectives of cyber defence and security. This is undoubtedly thanks to the amount of high-quality original academic research presented at the conference. In 2018, the Academic Review Committee selected 22 articles that were presented at the conference and published in the proceedings.
NATO CCDCOE brings improvement through practice
The NATO Cooperative Cyber Defence Centre of Excellence contributes this week to the setup and organisation of NATO’s largest cyber exercise Cyber Coalition 2018 taking place in Tartu, Estonia. This year, the experts of the Centre contributed to the operational and legal part of the exercise scenario, adding respective challenges to the participating cyber experts across the Alliance.
New Study by the CCDCOE: Cyber Security Organisation in Turkey
New Study by the CCDCOE: Cyber Security Organisation in Turkey
A recent report by NATO CCDCOE “National Cyber Security Organisation: Turkey” outlines the current cyber security landscape in Turkey. Being the most recent issue of the NATO CCD COE’s National Cybersecurity Governance series, the report provides a comprehensive overview of the digital ecosystem in Turkey and describes the responsibilities of different national agencies designated to ensure the security in the cyberspace.
United Nations Office of Counter-Terrorism on X: "A 3-day training by @UN_OCT #UNCCT ...
Dark web monitoring en accountbewaking | Gentic Security
2 fatally shot at Oakland Hills home above UC Berkeley, police say - ABC7 San Francisco
Flydubai pilot Smit Machchhar recounts attack onboard flight - WBAL-TV
Sexual Assault and Sexual Harassment in the Coast Guard - RAND Corporation
North Korea fires unidentified projectile toward sea off east coast, Seoul says
US Troops Exit Iraq After 23 Years: Is Tehran Set To Fill The Vacuum? | Global Radar
FBI and US Coast Guard investigators have found evidence that hackers accessed the ... - Facebook
Langlade County cancels alert after missing woman found - Fox 11
U.S. CISA adds Zammad GmbH Zammad flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Zammad GmbH Zammad flaws to its Known Exploited Vulnerabilities catalog.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog:
- CVE-2026-102489 (CVSS score of 9.4) Zammad GmbH Zammad Session Fixation Vulnerability
- CVE-2026-102490 (CVSS score of 9.4) Zammad GmbH Zammad Improper Privilege Management Vulnerability
The first flaw, CVE-2026-102489, is a session hijacking vulnerability in Zammad that can lead to remote code execution as the zammad user. It affects Zammad 6.3.0 through 6.5.4. The flaw is also present in versions 7.0.0 through 7.1.3.
The second flaw, CVE-2026-102490, is a local privilege escalation vulnerability that allows the zammad user to gain root privileges. It affects Zammad versions from 1.5.0 through 7.1.0-alpha.
The two flaws can be chained: an attacker can first gain code execution as the zammad user through CVE-2026-102489 and then use CVE-2026-102490 to escalate to root.
The Dutch Institute for Vulnerability Disclosure, a nonprofit organization of volunteer security researchers whose whole job is finding and responsibly disclosing vulnerabilities in other people’s software, recently disclosed that it got breached through two zero-days in its own ticketing system.
The attackers got in through Zammad, an open-source helpdesk platform that DIVD used internally. Working with Merlon Security, DIVD identified two previously unknown vulnerabilities, tracked as CVE-2026-102489 and CVE-2026-102490.
Each vulnerability was serious on its own, but chaining them made the attack much more dangerous. The attackers could hijack sessions, run code remotely and move from a regular Zammad account to root access within seconds. DIVD said the speed was linked to the use of an AI agent during the attack.
“When hackers get hacked, we deal with it in hacker style. While trying to figure out how the attackers got into our own systems,