Public sector: Focus on data and service availability The public sector remains highly exposed to cyberattacks, with a notable increase in both attack attempts and cyber incidents in 2023. Despite this rise, the severity of these incidents decreased year-on-year, resulting in a lower overall impact. Impact of cyber incidents, comparison of public sector respondent testimonies vs. average (% of respondents) Cross-sector average Public sector 1% Loss of client, partner or citizen trust 6% 5% 5% Data integrity loss 4% 4% Breach of data confidentiality 4% 5% Data leak 5% Damage to the organisation's reputation 11 % 8% 9% Other 17 % 20 % Deployment of IT and financial resources to mitigate impacts 25 % Limiting the availability of services 35 % 0% 10 % 20 % 30 % 40 % 50 % The majority of cyberattacks targeted data availability, particularly though DDoS campaigns directed at Czech government and public institutions Figure 16 Compared to last year, the degree to which they could be directly linked to specific actions taken by the Czech Republic in support of Ukraine has decreased, but most of these campaigns were still attributable to Russian-affiliated actors. As in the previous year, these attacks were less sophisticated and had a limited impact 30

Select target paragraph3