Cypriot government email services
| Primary URL | Location | Industry | www[.]gov[.]cy |
Country
Cyprus
|
Government - National
|
|---|
Profile
The organisation provides email services for the Cypriot government.
Its core product is a secure electronic mail platform used by government employees.
The service facilitates internal communication among ministries, agencies, and public institutions.
It also supports official correspondence with foreign governments and international organisations.
The platform is hosted and managed within Cyprus.
Access to the service is restricted to authorised personnel holding government credentials.
The service is intended to cover all email needs of the Cypriot public sector.
It operates as a unified system across multiple government departments.
By centralising email provision, it aims to ensure consistent security policies.
The organisation’s reach extends to every government entity that requires official electronic mail.
No public figures on user count or message volume are disclosed in the available sources.
The service functions as a critical component of the state’s digital infrastructure.
As a government-operated service, it is subject to national cybersecurity regulations and EU data protection directives.
The platform is designed to provide a controlled environment for handling sensitive official information.
In January 2018, the service was targeted in a DNS hijacking campaign attributed to actors acting in Turkey’s interests.
The attackers compromised domain name resolution to redirect users to fraudulent login pages.
This redirection aimed to harvest credentials from individuals attempting to access their government email accounts.
The campaign also affected email services in Greece, Iraq, Albania and Turkish civilian organisations.
Cypriot authorities confirmed awareness of the intrusion and reported that containment measures were implemented.
Other affected governments either reported no significant compromises or declined to comment on the incident.
Western officials characterised the activity as state‑backed espionage exploiting vulnerabilities in internet infrastructure.
The attackers leveraged weaknesses in the DNS infrastructure to intercept traffic to login portals and cloud services.
According to the reported timeline, the malicious activity had been ongoing since at least early 2018.
Despite the intrusion, the Cypriot government stated that no significant compromise of its email systems was confirmed.
The incident underscored the service’s role as a high‑value target for cyber espionage due to its handling of governmental communications.
Consequently, the event prompted a review of defensive measures surrounding the nation’s email infrastructure.
