CYBERSECURITY OF PUBLIC ADMINISTRATION BODIES IN THE CONTEXT OF MODERN HYBRID THREATS: INSTITUTIONAL AND TECHNOLOGICAL ASPECTS
DOI:
https://doi.org/10.62664/cpa.2025.01.18Keywords:
cybersecurity, public administration, hybrid threats, cyber threats, cyber attacks, information security, state policy.Abstract
The article is devoted to the study of cybersecurity of public administration bodies in Ukraine in the context of modern hybrid threats, primarily caused by the aggression of the russian federation. The relevance of ensuring the resilience of state information and communication systems against massive cyberattacks, which are an integral part of hybrid warfare, is determined. The scientific novelty of this article lies in its comprehensive examination of the institutional and technological aspects of cybersecurity in public administration, specifically in the context of the hybrid war of 2020–2025, taking into account the experience of real cyberattacks during this period and the state's response.
The latest research and publications by Ukrainian and foreign experts, the regulatory framework of Ukraine in the field of cybersecurity, statistical data on cyber incidents in 2020–2025, and specific examples of cyberattacks on state authorities are analyzed. The study characterizes the institutional structure of Ukraine’s cybersecurity system (the role of the State Special Communications Service, the National Cyber Security Center, the Security Service of Ukraine, cyber units of law enforcement agencies, etc.) and modern technological means of protecting information systems of public administration bodies.
Recommendations are provided on improving state policy in the field of cybersecurity in Ukraine’s public administration, increasing the cyber resilience of state institutions, developing interagency and international coordination, and introducing best practices and protection technologies. It has been established that Ukraine’s experience is already proving useful to other countries, and by strengthening its own cyber security, our state is contributing to the collective security of the democratic world.
References
Balmforth T. (2024). Russian hackers were inside Ukraine telecoms giant for months – cyber spy chief. Reuters. Jan 5. URL: https://www.reuters.com/world/europe/russian-hackers-were-inside-ukraine-telecoms-giant-months-cyber-spy-chief-2024-01-04. [in English]
Pro osnovni zasady zabezpechennia kiberbezpeky Ukrainy (2017) : Zakon Ukrainy vid 5 zhovtnia 2017 r. № 2163–VIII. Vidomosti Verkhovnoi Rady Ukrainy. № 45. St. 403. [in Ukrainian]
Stratehiia kiberbezpeky Ukrainy na 2021–2025 roky (2021) / Rada nats. bezpeky i oborony Ukrainy; vvedena v diiu Ukazom Prezydenta Ukrainy vid 26.08.2021 r. № 447/2021. Kyiv, 25 s. [in Ukrainian]
Antoniuk Daryna. (2025). Latest gambit for Gamaredon : Fake Ukraine troop movement documents. The Record (RFN). Mar 31. URL: https://therecord.media/gamaredon-phishing-campaign-fake-ukraine-documents-remcos. [in English]
Fornusek M. (2024). SBU : Ukraine gathers evidence for ICC on Russian GRU hackers behind Kyivstar cyberattack. The Kyiv Independent. Apr 4. URL: https://kyivindependent.com/sbu-russian-hackers-behind-kyivstar. [in English]
Kiberataka na derzhavni reiestry Ukrainy (2024). Wikipediia. URL: https://uk.wikipedia.org/wiki/Кібератака_на_державні_реєстри_України_(2024). [in Ukrainian]
U Min`iusti zaiavyly pro vidnovlennia roboty Derzhreiestriv pislia masshtabnoi kiberataky. (2025). UNIAN. 20 sichnia. URL: https://www.unian.ua/society/kiberataka-na-min-yust-derzhavni-reyestri-vidnovili-robotu-12889875.html. [in Ukrainian]
Antoniuk D. (2025). Hackers hit Ukrainian state agencies, critical infrastructure with new «Wrecksteel» malware. The Record (Recorded Future News). April 3. URL: https://therecord.media/hackers-ukraine-critical-infrastructure-malware. [in English]
Stahie S. (2025). WRECKSTEEL Campaign Uses Fake HR Emails to Spy on Ukrainian Government Systems. Bitdefender Hot for Security. April 4. URL: https://www.bitdefender.com/en-us/blog/hotforsecurity/wrecksteel-fake-emails-spy-ukrainian. [in English]
CERT-UA. (2025). Recommended actions regarding WRECKSTEEL malware (Alert Report). In Security Affairs (Pierluigi Paganini, Ed.). URL: https://securityaffairs.com/176181/cyber-warfare-2/cert-ua-reports-attacks-in-march-2025-targeting-ukrainian-agencies-with-wrecksteel-malware.html. [in English]
Downloads
Published
Issue
Section
License
Creative Commons «Attribution» 4.0 WorldWide.