Georgia — Cyber Threat Profile
Georgia's 2026 cybersecurity posture is anchored by the Personal Identity Protection Act and the Data Breach Notification Law, which now mandate "expedient" reporting to regulators. The nation has adopted the NIST Cybersecurity Framework as a baseline for its critical infrastructure, particularly in the banking and energy sectors. Facing constant hybrid threats, the government is deepening its collaboration with the EU's Cyber Reserve and aligning its domestic laws with NIS2 requirements. Technical priorities include the validation of e-signatures under the Electronic Records Act and the enforcement of PCI DSS standards for its rapidly expanding fintech ecosystem.- National CERT/CSIRT: CERT.DGA.GOV.GE
- Data protection authority: Office of the Personal Data Protection inspector of Georgia (source: CNIL)
- World Cybercrime Index 2024 (origin significance): 0.27 / 100, #66 worldwide
- Secure Internet servers per 1M people (2024): 5,293.4 (source: World Bank)
- Internet users (2024): 83.8% of population (source: World Bank)
Threat actors targeting Georgia
- APT28 APT
- Curly COMrades APT
- Sandworm Team APT
- Akira Ransomware · 1 incident(s)
- CMD Ransomware · 1 incident(s)
- INC Ransom Ransomware · 1 incident(s)
- Medusa Ransomware Ransomware · 1 incident(s)
- NightSpire Ransomware · 1 incident(s)
Most targeted sectors
- Healthcare 2 incident(s)
- Financial Services 1 incident(s)
- Hospitality & Tourism 1 incident(s)
- Legal 1 incident(s)
Recent claimed incidents
- Medlink Georgia 2026-06-30 · Healthcare
- IOTA HOTEL TBILISI 2026-03-03 · Hospitality and Tourism
- Hawk Law Group 2026-02-01
- Aldagi 2025-08-27 · Financial Services
- Imedi L 2024-05-02 · Healthcare