ctipilot.ch

Home · Briefs · CTI Weekly Summary — 2026-W25 (Jun 15 – Jun 21, 2026)

G7 Évian cybersecurity declaration calls PQC an "urgent priority" — and the expected hacktivist DDoS materialised on day one

From CTI Weekly Summary — 2026-W25 (Jun 15 – Jun 21, 2026) · published 2026-06-22

The G7 Cybersecurity Working Group declaration, adopted around the Évian summit (15–17 June), names post-quantum cryptography an "urgent priority" with a call for coordinated industry-government migration, alongside AI-cyber dual-use risk, telecom resilience and SME cybersecurity; the European Commission issued a welcome statement linking it to the NIS2/CRA stack (ANSSI; European Commission, 2026-06-17). The PQC-urgency framing aligns with Swiss federal cryptographic-migration planning. Resolving the W24 looking-ahead watch item: the NCSC-CH-predicted hacktivist DDoS did materialise — NoName057(16) ran layer-7 DDoS on 15 June against public-sector and tourism sites in the Swiss-bordering Haute-Savoie department (Évian-les-Bains, Thonon-les-Bains, Saint-Gingolph municipalities, the EVA'D transport portal), causing temporary outages with no data compromise (Cyberattaque.org, 2026-06-16; NCSC-CH pre-event advisory). Attribution rests on the group's Telegram self-claim; no Swiss federal sites were reported hit. The lesson reconfirmed: NCSC-CH's pre-event DDoS guidance for summit-adjacent organisations was correctly calibrated, and the NoName057(16) pattern around Swiss-adjacent summits (cf. Bürgenstock 2024) holds.