CYBERSECURITY PROVISION IN PUBLIC ADMINISTRATION: WARTIME CHALLENGES AND THREATS
DOI:
https://doi.org/10.25313/2617-572X-2026-2-11927Keywords:
public administration, cybersecurity, cyber incident, cyber-attack, SSSCIP, critical infrastructure, National Cyber Security Index (NCSI), information security, risk assessmentAbstract
Introduction. The article is devoted to researching the critical issue of ensuring cybersecurity in public administration bodies under the conditions of Russia’s full-scale aggression. The successful functioning of state institutions, the protection of national security, and public trust depend on the level of their cyber resilience. Effective response to cyber incidents is a complex process that requires serious planning, resources, and the formation of a secure virtual environment. In the modern digital era, public administration faces increasingly sophisticated cybercrimes, including DDoS attacks, exploitation of known vulnerabilities (CVE), malware, and phishing campaigns, which pose a serious threat. The relevance of the research is amplified by the growing number and complexity of cyberattacks, targeting public administration bodies, critical infrastructure, and enterprises vital for the functioning of Ukraine’s economy, starting from 2022. Special attention is given to the emergence of new types of threats, such as supply chain attacks and “Loop DoS Attacks”, which impact traditional protection methods. Objective. The objective of the article is to study the problems arising in the sphere of public administration related to cybersecurity under the conditions of Russia’s full-scale invasion, to analyze the effectiveness of the system for vulnerability detection and cyber incident response, and to determine ways to enhance cyber resilience and improve protection mechanisms. Materials and Methods. The research is based on the analysis of legislative and regulatory acts of Ukraine and the European Union, with a particular focus on the activities of the European Union Agency for Cybersecurity (ENISA), which is important for adapting national legislation. Scientific works of both domestic and foreign scholars were utilized, as well as empirical data from the statistical reports of the State Service of Special Communications and Information Protection of Ukraine (SSSCIP) regarding cyber incidents. The methods of theoretical generalization, grouping, comparative analysis (specifically, assessing Ukraine’s position in the National Cyber Security Index (NCSI)), and the method of systematization for developing a risk assessment system and cyber threat indicators were applied during the work. Results. The conducted analysis has shown that cybersecurity is gaining paramount importance in the national security system within the context of public administration. SSSCIP statistical data clearly demonstrate a progressing trend towards an increase in the number of cyber incidents, indicating the constant expansion of cyber warfare. The main targets of attacks remain government bodies, critical infrastructure, and enterprises essential for the functioning of Ukraine’s economy. The article systematizes the main types of cyber threats and defines their indicators (network, file, system, behavioral, and vulnerability exploitation), which require high specialist qualification. A number of systemic problems were also identified: insufficient integration of modern protection systems; a shortage of qualified cybersecurity specialists; and the neglect of cyber risks by senior management, who should bear responsibility for cyber defense. It is emphasized that increasing investment in cyber defense is necessary to mitigate risks. Prospects. The necessity of increasing the level of cyber resilience directly depends on the formation of a strong cybersecurity culture. Further research should be aimed at developing specific methodological approaches for the implementation of international cybersecurity standards and best practices (ISO 27001, SOC2, NIST CSF) when conducting audits and reviewing the state of cyber protection in Ukrainian public administration bodies. The implementation of these measures is critical for building effective plans to improve cyber defense.
References
Edwards M., Williams E., Peersman C., Rashid A. Characterising Cybercriminals: A Review. arXiv.org. 2022. URL: https://arxiv.org/pdf/2202.07419 (дата звернення: 02.12.2025).
Bada M., Benson L.E., McAlaney J.R.C. The Social and Psychological Impact of Cyber Attacks. Emerging Cyber Threats and Cognitive Vulnerabilities. Academic Press, 2019/20.
Napolitano G. A literature review on the role of cybersecurity in changing management accounting, auditing and governance. Monash University. URL: https://www.monash.edu/__data/assets/pdf_file/0006/3118902/ (дата звернення: 02.12.2025).
Кулешов М.В. Сутність та зміст розслідування кіберінцидентів та кібератак підрозділами служби безпеки України. Інформація і право. 2019. № 2(29). С. 115–122.
Ковальова А., Яковлева А., Чорна А. Кримінальна відповідальність за кіберзлочини, вчинені в умовах воєнного стану. В кн.: Матеріали конференцій МЦНД: [зб. тез доп.]. (19.04.2024; Кропивницький, Україна). С. 63–64.
Колесніков А., Зяйлик М. Економіко-правові засади розвитку кіберзлочинності та методів боротьби з нею. Актуальні проблеми правознавства. 2017. Вип. 1(9). С. 26–29.
Cyber Security Auditing, Assurance, and Awareness Through CSAM and CATRAM. Stati Uniti: IGI Global, 2020. С. 135–137. URL: https://dokumen.pub/qdownload/cyber-security-auditing-assurance-and-awareness-through-csam-andcatram‑9781799856092-1799856097.html (дата звернення: 02.12.2025).
Україна на 24 місці в рейтингу з кібербезпеки. AIN.UA. 2024. 16 черв. URL: https://ain.ua/2024/06/16/ukrayinana‑24‑misczi-vrejtyngu-z-kiberbezpeky/ (дата звернення: 02.12.2025).
Інтенсивність фішингових атак зросла, але люди стали більш обізнаними в питаннях кібергігієни: аналітичний звіт CERT-UA. Держспецзв’язку. URL: https://cip.gov.ua/ua/news/intensivnist-fishingovikh-atak-zrosla-ale-lyudi-stalibilsh-obiznanimi-v-pitannyakh-kibergigiyeni-analitichnii-zvit-cert-ua (дата звернення: 02.12.2025).
У 2024 році кількість кібератак на Україну зросла на 70%: [інформаційне повідомлення]. Інститут масової інформації (ІМІ). URL: https://imi.org.ua/news/u‑2024‑rotsi-kilkist-kiberatak-na-ukrayinu-zrosla-na‑70‑i65931 (дата звернення: 02.12.2025).
Downloads
Published
How to Cite
Issue
Section
License
Copyright (c) 2026 Юрій Володимирович Гончарук

This work is licensed under a Creative Commons Attribution 4.0 International License.