The thesis analyzes the challenges of state cybersecurity in crisis situations, focusing on the protection of critical infrastructure against modern forms of cyber warfare. The theoretical part defines key concepts such as the CIA triad, zero-day vulnerabilities, time bombs, and the role of software code as a modern weapon. The analysis focuses on the convergence of information technology (IT) and operational technology (OT), which increases the vulnerability of state systems. Through a systematic review of case studies—ranging from the attack on Estonia (2007) and Stuxnet (2010) to the attacks on the Ukrainian power grid (2015) and hybrid supply chain attacks (Israel, 2024)—the thesis illustrates the evolution of threats from service disruption to physical infrastructure destruction. It is established that traditional passive defense (firewalls, network isolation) is no longer sufficient to ensure national security. The thesis argues for the necessity of implementing active defense mechanisms, including counter-attacks and preemptive actions, while emphasizing the importance of resilience and rapid system recovery. Special attention is given to legal and ethical challenges, particularly the problem of attack attribution and operations in the "gray zone" between peace and war. The conclusion provides guidelines for strengthening national cybersecurity in Slovenia and beyond.
|