Cybersecurity

Wrocławskie Centrum Integracji, in fulfilment of its obligations under Article 9(1)(2) and (3) of the Act of 5 July 2018 on the National Cybersecurity System, provides information enabling users of WCI services to identify cyber threats, apply effective protection measures and report cybersecurity-related events.

How to protect yourself against cyber threats

When using electronic services:

  • do not share passwords, one-time codes or login credentials with other people;
  • do not open suspicious attachments or links received by email or SMS;
  • check the sender’s address and the website address before providing any information;
  • use strong, unique passwords and, where available, multi-factor authentication;
  • regularly update your operating system, web browser and other software;
  • exercise particular caution with messages that create a sense of urgency, request payment or ask you to provide information;
  • make backup copies of important data and store them in a secure location.

Up-to-date cybersecurity alerts, information and recommendations are available at:

CERT Polska operates within NASK and performs the functions of CSIRT NASK. Its website provides up-to-date alerts and practical guidance on matters including phishing, malware, fraudulent websites and secure authentication. CERT Polska.

Reporting cyber threats, incidents and vulnerabilities

If you become aware of a cyber threat, incident or vulnerability related to services provided by Wrocławskie Centrum Integracji, please report it to:

cyberbezpieczenstwo@wci.wroclaw.pl

A report may concern, in particular:

  • a message or website impersonating WCI;
  • a suspicious message purportedly sent by a WCI employee;
  • unauthorised access to a service or data;
  • a vulnerability or security flaw on a WCI website or within a WCI service;
  • disruption, failure or unavailability of an electronic service;
  • any other event that may compromise the confidentiality, integrity, availability or authenticity of information.

Where possible, please include the following information in your report:

  • the name of the service, website or system affected;
  • the date and approximate time when the event was noticed;
  • a brief description of the situation;
  • the website address, message content or a screenshot;
  • your contact details, if you expect a response or if further information may be required.

Do not send passwords, authentication codes or personal data that are not necessary to describe the event.

Incidents, suspicious messages, malicious websites and other threats may also be reported directly to CSIRT NASK using the following form:

Report an incident to CSIRT NASK