Czechia flagCzechia

Documented event/Security

APT28 Outlook cyber campaign

Czech Ministry of Foreign AffairsMay 3, 2024

What happened

Czechia, alongside Germany, the EU, NATO, and partners, issued an official statement on long-running APT28 cyber espionage activity. The statement links APT28 to Russian military intelligence and records Czech institutional targeting.

Context

Cyber attribution is often compressed into broad political claims. The official statement supports attribution and targeting; data loss, effect, and legal claims need separate records.

What is known

  • The Czech MFA source records an official condemnation and attribution statement for APT28.
  • The statement says some Czech institutions were targeted through a Microsoft Outlook vulnerability.
  • The source frames the activity as serious in the context of elections, democratic processes, and Russia's war against Ukraine.

Still unresolved

  • The record does not identify every affected Czech institution.
  • Technical indicators, remediation details, and incident impact require specialized source records.
  • Public claims about election impact or data theft need separate evidence.

Countries involved

Assessment and limits
Source support
Primary-source backed
Source records
1 record
Primary record
Attached
Country link
Czechia is directly represented in the event.

Evidence level applies to the official attribution and targeting statement. It does not quantify data loss, election effect, or every downstream cyberwarfare claim.

Methodology