Axtarış...

Statistics of information security measures in the information resources of state institutions for the first quarter of 2026

The Special Communication and Information Security State Service of Republic of Azerbaijan continues to carry out regular comprehensive measures to ensure the security of internet information resources of state bodies and to protect the digital environment.

During the first quarter of 2026, the number of domains registered in the field of domain name management by SCISSS constituted 17, the number of subdomains constituted 123, at the same time 21 domains and 52 subdomains were eliminated, which is of significant importance in terms of optimization of the “GOV.AZ” domain space and reduction of security risks.

Through the new generation protection equipment applied over the “AzStateNet” network, 41,289,866 dangerous links based on URL, 3,786,317 traffic based on malicious content (virus, spyware and other signs of harmful activity), as well as 31,962 files with malicious content through the “Sandbox” protection system were blocked and infection of end users was prevented. Within the framework of protection against DDoS attacks, 7,013,863 attacks were recorded, as a result 12,523,934,684 malicious packets were blocked and in total 10,226,233 Mbit volume of malicious traffic was prevented.

In addition, through the centralized antivirus solution, 1,048,869 threats were blocked and neutralized in terms of end-user security, which demonstrates the effectiveness of a multi-layered and centralized defense approach. Based on the analysis of cyberattacks detected as a result of continuous monitoring carried out by SCISSS in the information systems of state bodies, 274 cyberattack indicators (IOC – “Indicator of Compromise”) were identified and centrally blocked for the first three months of the current year. Of these cyber threats, 213 were identified through internal investigation, while 61 were identified on the basis of appeals from state bodies.

By using cyber threat intelligence services, during the first quarter of 2026, 6 fake domains imitating state body domains (gov.az) were identified and their blocking was carried out. At the same time, 60 phishing-oriented web resources were blocked by SCISSS and 105 leaked identity credentials belonging to employees of state bodies were identified and appropriate measures were taken.

In the state electronic mail service created for state bodies by SCISSS, 4,677,755 electronic mails were processed, of which 3,258,110 were delivered to users, while 1,419,645 were blocked due to having malicious content.

During the reporting period, 194 audits and penetration tests were carried out by SCISSS in order to check the security level of websites belonging to state bodies. At the same time, based on the results of periodic inspections conducted against security vulnerabilities of IP address ranges allocated for state bodies through specialized software, 34 analytical reports were prepared and submitted accordingly.

By implementing continuous and proactive measures in the field of information security, SCISSS reliably ensures the uninterrupted and secure operation of state bodies in the digital environment, as well as makes a significant contribution to strengthening the country’s cybersecurity ecosystem, increasing national digital resilience, protecting critical information infrastructure, and forming agile response mechanisms against cyber threats.