CSIDB logo
Incident

Development Foundation of Armenia

Incident posture

Attack window
Aug 2017
Location
Armenia
Status
Historical
CIA posture
Available to members
Updated
2025-12-01 00:00

Linked entities

Victim
Development Foundation of Armenia
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
Aug 2017
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

Turkish hackers, collaborating with Azerbaijani counterparts, targeted multiple Armenian websites, including the Development Foundation of Armenia and the Civil Service Council’s official site. The attackers primarily focused on tourism-related platforms, breaching and defacing the sites as part of a broader campaign against Armenian digital infrastructure. The incident underscored persistent regional cyber hostilities, with unauthorized access compromising organizational operations and public-facing services.

Motives

Detailed motive labels are available to members.

1 motive

TTPs

Detailed technique labels are available to members.

1 technique

Description

On August 7, 2017, Turkish hackers conducted cyberattacks against multiple Armenian websites, targeting at least seven entities primarily within Armenia’s tourism sector. The attacks were carried out in coordination with Azerbaijani hackers, according to Samvel Martirosyan, an information security expert who disclosed the incident to Armenpress. Among the confirmed victims was the official website of the Development Foundation of Armenia, a government-affiliated organization focused on economic development initiatives. The hackers successfully breached these websites, though the specific methods of intrusion or defacement content were not detailed in available reports. The timing and targeting suggested a politically motivated campaign, aligning with ongoing regional tensions between Armenia, Turkey, and Azerbaijan. No immediate claims of responsibility or explicit motives were publicly documented in the source material.

The attackers also compromised the official website of Armenia’s Civil Service Council, a government body overseeing administrative appointments and reforms. Martirosyan characterized the hackers’ activities as “criminal,” emphasizing the cross-border collaboration between Turkish and Azerbaijani actors. The incident underscored vulnerabilities in Armenia’s public-facing digital infrastructure, particularly within tourism and governmental domains. No further technical specifics—such as duration of downtime, data exfiltration, or remediation steps—were disclosed in the source material. The breach highlighted the persistent threat of geographically motivated cyber operations in the South Caucasus region during this period.

Sources

Sources available to members: 1 source.

CSIDB