It is clear from the July summary that phishing emails, seemingly sent on behalf of the police and claiming the expiry of Smart-ID, were the most common type. Other messages sent pretending to be the police claimed that the recipient was subject to legal proceedings and the email was a summons to a hearing. The emails phishing for Smart-ID account details claimed that the account of the user had been suspended and they had to verify their identity to restore it. Emails were sent from a domain that is not related to Smart-ID services in any way and they contained links to phishing sites.
In the middle of July, a faulty software update of CrowdStrike caused global interruptions, incapacitating 8.5 million Windows devices and impacting the operation of many organisations and services. The malfunction resulted in a so-called blue screen in the affected Windows workstations and servers, leading to disruptions in the work of many providers of vital and important services, such as hospitals, airports, harbours, and banks. The CrowdStrike malfunction also affected checking into Ryanair flights at the Tallinn Airport. Fortunately, the malfunction had little impact on us.
The European Football Championships (UEFA Euro 2024) brought along cyber attacks. A CyberInt report revealed that the number of cyber attacks against the members of the UEFA (Union of European Football Associations) had increased during the Euro 2024 and several dark web forums were offering the account details of thousands of UEFA partners and clients for sale. In addition, DDoS attacks against media channels reporting on the games were carried out. The report states that the increase in the number of cyber attacks in relation to a large sports event has become the new normal, while also predicting the same for the Olympic Games in Paris.
The monthly summary also provides an overview of the efforts of RIA to improve cybersecurity in Estonia. Among all else, we published new materials to help companies start to implement cybersecurity measures more easily. The initial measures of the Estonian Information Security Standard (E-ITS) are primarily meant for companies that have not systematically addressed cybersecurity before and do not have to comply with the requirements of the Cybersecurity Act, but want to protect their business operations and customer data better.
Moreover, until 2 September, SMEs can apply for a grant for the evaluation and upgrade of their cybersecurity to prevent damage caused by cyber attacks or technical malfunctions. The amount of the grant is 60,000 euros and it consists of two parts: 10,000 euros for the evaluation of the cybersecurity of the company and 50,000 euros for development. For more information about applying for the cyber grant, please visit the website of Enterprise Estonia.
The Ministry of Economic Affairs and Communications and RIA completed the Estonian national cybersecurity strategy for 2024–2030 ‘Läbivalt IT-vaatlikum Eesti’ (‘A more IT-conscious Estonia’) which sets the safety and trustworthiness of Estonian cyberspace as well as its resilience to cyber threats as its main objectives. The cybersecurity strategy is available here.
Read more about these and other topics in the monthly review of the situation in cyberspace by the Information System Authority.