Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Swisscom

Swisscom Vendor Cyber Rating & Cyber Score

swisscom.ch

As No. 1, we inspire people in the connected world. With the latest technologies and innovations, together we have the opportunity to shape the future. To do this, we are and act trustworthy, committed and curious. Are you with us? Join us on this exciting journey and work with us or in one of the DevOps Centres in Riga or Rotterdam in different business areas on the latest technological trends. Find out more about us and our vacancies on our careers page: www.swisscom.ch/career We look forward to hearing from you!


Swisscom A.I CyberSecurity Scoring

Swisscom
Company Information
Website:https://www.swisscom.ch/
Employees number:15,556
Number of followers:189,163
NAICS:5415
Industry Type:IT Services and IT Consulting
Homepage:swisscom.ch
Swisscom Risk Score (AI oriented)
Between 750 and 799
logo
SwisscomIT Services and IT Consulting
Updated:
22/08/2026
757/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Swisscom Global Score (TPRM)
xxxx
logo
SwisscomIT Services and IT Consulting
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Swisscom
SwisscomFair
Current Score
757Baa (FAIR)
01000
2 incidents
-43 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
756Before Incident
JULY 2026
798Before Incident
Breach
28 Jul 2026Swisscom
Swiss Federal Office for Information Technology and Telecommunication: Swiss Government SharePoint Breach Compromised 200 Accounts

Swiss Federal SharePoint Breach Exposes 200 Accounts in Credential Theft Incident

755After Incident
MEDIUM-43
SWI1786128838
Swiss Federal SharePoint Breach Exposes 200 Accounts in Credential Theft Incident Switzerland’s Federal Office for Information Technology and Telecommunication (BIT) revealed a network intrusion targeting its federal SharePoint platform, resulting in the compromise of approximately 200 user accounts. Unusual activity was detected on July 28, with security specialists confirming the credential theft by July 31. No ransomware group has claimed responsibility, and BIT has not disclosed the specific vulnerability exploited. Investigators suspect the attack leveraged one of two SharePoint flaws patched in Microsoft’s July 2026 Patch Tuesday updates: CVE-2026-56164, a privilege escalation vulnerability actively exploited in the wild, or CVE-2026-50522, a critical remote code execution flaw that could allow attackers to steal SharePoint machine keys and maintain persistence. BIT has not confirmed which flaw was used, but the latter’s ability to enable long-term access raises concerns. While the breach exposed login credentials, BIT stated that the affected SharePoint platform does not store confidential or highly sensitive personal data, and no evidence suggests data exfiltration beyond the stolen credentials. The incident’s impact is thus limited to credential compromise rather than broader data theft. BIT responded swiftly to contain the breach, blocking external internet access to the SharePoint servers, applying patches, resetting affected account passwords, and reinstalling compromised servers. Federal employees have temporarily shifted to alternative file-sharing methods while remediation continues. The investigation involves collaboration with the Swiss Federal Office for Cyber Security and Microsoft. The breach underscores the high-value nature of government collaboration platforms, which often integrate with federal identity systems and shared documents. Even when data theft is not confirmed, credential compromise can pose political and supply-chain risks. The incident also highlights the urgency of applying critical patches attackers exploited flaws addressed in routine updates, demonstrating that delayed deployment can leave systems vulnerable. For other SharePoint deployments, the Swiss case serves as a cautionary example: rapid detection and containment limited the breach’s scope, preventing a potential full-tenant takeover. The ability to steal machine keys linked to CVE-2026-50522 could have allowed attackers to maintain persistent access, reinforcing the need for heightened monitoring of administrative accounts and key-management systems. The incident also reveals broader challenges in public-sector cybersecurity, including reliance on a single commercial platform and difficulties in detecting subtle credential abuse within large-scale collaboration environments. Other national administrations running SharePoint are now advised to verify the July 2026 patches, audit machine key storage, and ensure elevated accounts receive the same scrutiny as standard users.
INCIDENT DETAILS -
TYPE
Credential Theft
IMPACT
Data Compromised: Login credentials of ~200 accountsSystems Affected: Federal SharePoint platformOperational Impact: Temporary shift to alternative file-sharing methods
DATA BREACH
Type Of Data Compromised: Login credentialsNumber Of Records Exposed: 200Sensitivity Of Data: Low (no confidential or highly sensitive personal data)
JUNE 2026
798Before Incident
MAY 2026
799Before Incident
APRIL 2026
799Before Incident
MARCH 2026
801Before Incident
FEBRUARY 2026
801Before Incident
JANUARY 2026
801Before Incident
DECEMBER 2025
800Before Incident
NOVEMBER 2025
800Before Incident
OCTOBER 2025
800Before Incident
SEPTEMBER 2025
800Before Incident
FEBRUARY 2018
810Before Incident
Breach
01 Feb 2018Swisscom
Swisscom

Data Breach at Swiss Mobile Phone Operator

757After Incident
CRITICAL-53
SWI11477622
The data systems of a Swiss mobile phone operator were breached late last year. The contact details of about 800,000 customers were compromised. The names, addresses, telephone numbers and dates of birth of customers were accessed by an unknown party.
INCIDENT DETAILS -
TYPE
Data Breach
IMPACT
NamesAddressesTelephone NumbersDates of Birth
DATA BREACH
Personally Identifiable InformationNamesAddressesTelephone NumbersDates of Birth

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Swisscom ?
?
What was Swisscom's A.I Rankiteo Cyber Score in July 2026 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in June 2026 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Swisscom's A.I Rankiteo Cyber Score in September 2025 ?
?
What is the average per-incident point impact on Swisscom's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Swisscom ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Swisscom's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?