Réunion — Cyber Threat Profile

Réunion, a French overseas department and EU outermost region, falls under France's national cyber framework — ANSSI/CERT-FR jurisdiction, GDPR enforcement via the CNIL, and the pending NIS2 transposition (loi Résilience) — while also fielding its own territorial CSIRT. CSIRT La Réunion, run by Réunion THD's Cyber Réunion pole and co-funded by ANSSI under France Relance, handled 34 confirmed incidents in its first year, led by phishing, ransomware and email compromise; the prefecture counted 14 incidents escalated to ANSSI in 2023, up from 11 in 2022. Notable attacks include a February 2023 intrusion at the CHU de La Réunion, contained with patient care preserved, and a November 2024 Termite ransomware attack on the Conseil départemental, forcing network disconnection and a CNIL notification. Exposure concentrates in public administration, healthcare and local SMEs.

Threat actors targeting Réunion

Most targeted sectors

Recent claimed incidents

Read the full analysis on IntelFusions