- Europe, like you've never read before -
Friday, 5 December 2025
No Result
View All Result
  • it ITA
  • en ENG
Eunews
  • Politics
  • World
  • Business
  • News
  • Defence
  • Net & Tech
  • Agrifood
  • Other sections
    • Culture
    • Diritti
    • Energy
    • Green Economy
    • Finance & Insurance
    • Industry & Markets
    • Media
    • Mobility & Logistics
    • Sports
  • Newsletter
  • European 2024
    Eunews
    • Politics
    • World
    • Business
    • News
    • Defence
    • Net & Tech
    • Agrifood
    • Other sections
      • Culture
      • Diritti
      • Energy
      • Green Economy
      • Finance & Insurance
      • Industry & Markets
      • Media
      • Mobility & Logistics
      • Sports
    No Result
    View All Result
    Eunews
    No Result
    View All Result

    Home » Net & Tech » Digital, public administration too vulnerable to cyber attacks

    Digital, public administration too vulnerable to cyber attacks

    The latest report by the EU Information Security Agency (ENISA) indicates that the digital infrastructures of public authorities are excessively easy targets for cyber predators, especially in the age of artificial intelligence

    Francesco Bortoletto</a> <a class="social twitter" href="https://twitter.com/bortoletto_f" target="_blank">bortoletto_f</a> by Francesco Bortoletto bortoletto_f
    12 November 2025
    in Net & Tech
    Foto: Parlamento europeo

    Foto: Parlamento europeo

    Brussels – The public administration is as greedy as it is an easy target for cyber attacks. Despite being one of the EU’s priority areas for action in cybersecurity, the defence of public digital infrastructure has lagged, exposing a range of services fundamental to citizens’ lives to increasing risks. Sounding the alarm is ENISA, the European Union Agency for Cybersecurity, in its November 2025 report. 

    The public administration (PA) sector, recalls the Athens-based body, is considered “highly critical” under the so-called NIS2 directive, with which the 12-star co-legislators (EU Parliament and Council) updated the relevant legislation in 2022. Those rules established a unified legal framework to ensure minimum security levels in 18 critical sectors, urging member states to define national cybersecurity strategies.

    Yet, ENISA’s report warns, the PA’s digital infrastructure remains too vulnerable to malicious action, despite its centrality in providing indispensable services to citizens, from education to healthcare, from transport to waste collection. The sector is “still developing its cybersecurity resilience,” reads an agency statement. Translated: it takes little to compromise it, even seriously.

    cyber sicurezza
    Photo via Imagoeconomica

    The report analysed 596 cyber incidents that occurred in 2024, targeting the public administrations of the Twenty-Seven. With 38 per cent of the reports, the Public Administration sector is defined as “at risk” and is the most affected in the EU. Specifically, the most affected were the central governments (69 per cent of the total), mainly through attacks on the websites of parliaments, ministries, and national authorities or agencies. 

    Among the most frequent types of incidents are Distributed denial of service (DDoS), which consist of an overload of requests directed at the targeted server, which stops working. They account for 60 per cent of the total but usually have short durations and produce a limited impact. More dangerous, though less frequent, are data breaches and so-called ransomware, i.e., malicious programmes (malware) that “infect devices” in various ways, demanding a ransom to unlock the devices or the files on them, if they are encrypted to prevent their use. 

    Data-related threats, ENISA explains, include both breaches per se (17.4 per cent of cases) and data exposures (1 per cent), and represent the second most frequent type of incidents recorded by PAs in 2024. The employment services, the platforms of local administrations, as well as the sites of law enforcement and educational systems, were in the crosshairs. 

    At the level of malicious actors, 2.5 per cent of total incidents are entities linked in some way to state powers, responsible for what the Agency calls cyberspionage campaigns. A small share, but one whose impact on national security may prove to be “significant.” The lion’s share—just under 63 per cent—is taken by the so-called hacktivists, i.e., individuals or collectives ideologically motivated to defend a political cause. Finally, “cybercrime operators” account for about 16 per cent of the total.

    hacktivisti
    Photo via Wikimedia Commons

    “EU public administrations are likely to remain the most affected sector in the short to medium term,” ENISA predicts, especially given the new possibilities offered by artificial intelligence (AI) developments. Among the services most at risk, according to the report, are those of tax portals, electronic identification systems, and court work management. 

    What to do, then? To counter DDoS, the EU Agency suggests strengthening controls to improve “architectural resilience and operational readiness,” also through operations such as enrolling critical sites in a “content distribution network” or protecting them with a “firewall for web applications.” 

    Regarding incidents involving data, recommendations include multi-factor authentication with conditional access and privileged access management. Regarding ransomware, the implementation of specific protocols, such as Endpoint Detection and Response (EDR), is mentioned. In general, ENISA recommends improved preparedness and response, and greater cooperation between Member State authorities, both domestically and across countries.

    English version by the Translation Service of Withub
    Tags: attacchi ddoscybersecuritydatidirettiva NIS2enisapublic administration

    Related Posts

    Politics

    EU unveils controversial Democracy Shield with new information monitoring centre

    12 November 2025
    von der leyen gaza
    Business

    Digital data, GDPR “simplification” serves corporate interests—and limits user privacy

    10 November 2025
    map visualization
    US President Donald Trump gives a thumbs up as he departs the stage during the signing ceremony of a peace deal with the President of Rwanda Paul Kagame and the President of the Democratic Republic of the Congo Felix Tshisekedi at the United States Institute of Peace in Washington, DC, on December 4, 2025. Trump on Thursday brings the leaders of Rwanda and the Democratic Republic of Congo together to endorse a deal that Trump has hailed as his latest peace triumph despite ongoing violence on the ground. Trump hopes the agreement will pave the way for the United States to gain access to critical minerals in the eastern DRC, a violence-torn region home to many of the key ingredients in modern technologies such as electric cars. (Photo by ANDREW CABALLERO-REYNOLDS / AFP)

    The US wants to “cultivate resistance” to Europe’s decline. No comment from Brussels

    by Simone De La Feld @SimoneDeLaFeld1
    5 December 2025

    The National Security Strategy outlined by the Trump administration is a slap in the face to Europe, which risks the...

    OPERAIO ANZIANO OPERAI ANZIANI LAVORO FABBRICA PRODUZIONE GENERATE AI IA

    Italians to Meloni: ”No to raising retirement age”

    by Emanuele Bonini emanuelebonini
    5 December 2025

    The latest Eurobarometer survey sees a clear opposition to working more. Majority called for reforming work and health, strengthening the...

    Italian, EU, NATO and Latvian flags are lined up ahead of the mmeeting of the Italian and Latvian Prime Ministers in Riga on July 10, 2023. (Photo by Gints Ivuskans / AFP)

    ICE listens to Europe: “NATO’s new procurement policy and procedures”

    by Redazione eunewsit
    5 December 2025

    For the director of the Brussels Office, Tindaro Paganini, "it is essential that Italian companies are fully aware" of the...

    ANDREJ BABIŠ MEMBRO DELLA CAMERA DEI DEPUTATI DELLA REPUBBLICA CECA LEADER ANO

    Czech Republic: Andrej Babiš solves his conflict of interest; he’s no longer ‘Babisconi’

    by Enrico Pascarella
    5 December 2025

    The future prime minister has announced that he will dispose of the shares in his multinational company Agrofert. One hundred...

    • Director’s Point of View
    • Letters to the Editor
    • Opinions
    • About us
    • Contacts
    • Privacy Policy
    • Cookie policy

    Eunews is a registered newspaper
    Press Register of the Court of Turin n° 27


     

    Copyright © 2025 - WITHUB S.p.a., Via Rubens 19 - 20148 Milan
    VAT number: 10067080969 - ROC registration number n.30628
    Fully paid-up share capital 50.000,00€

     

    No Result
    View All Result
    • it ITA
    • en ENG
    • Newsletter
    • Politics
    • World politics
    • Business
    • General News
    • Defence & Security
    • Net & Tech
    • Agrifood
    • Altre sezioni
      • European Agenda
      • Culture
      • Diritti
      • Energy
      • Green Economy
      • Gallery
      • Finance & Insurance
      • Industry & Markets
      • Letters to the Editor
      • Media
      • Mobility & Logistics
      • News
      • Opinions
      • Sports
    • Director's Point of View
    • L’Europa come non l’avete mai ascoltata
    • Draghi Report
    • Eventi
    • Eunews Newsletter

    No Result
    View All Result
    • it ITA
    • en ENG
    • Newsletter
    • Politics
    • World politics
    • Business
    • General News
    • Defence & Security
    • Net & Tech
    • Agrifood
    • Altre sezioni
      • European Agenda
      • Culture
      • Diritti
      • Energy
      • Green Economy
      • Gallery
      • Finance & Insurance
      • Industry & Markets
      • Letters to the Editor
      • Media
      • Mobility & Logistics
      • News
      • Opinions
      • Sports
    • Director's Point of View
    • L’Europa come non l’avete mai ascoltata
    • Draghi Report
    • Eventi
    • Eunews Newsletter

    Attention