GTA A.I CyberSecurity Scoring
GTA
Company Information
Website:http://www.gta.ga.gov
Employees number:297
Number of followers:4,089
NAICS:92
Industry Type:Government Administration
Homepage:ga.gov
GTA Risk Score (AI oriented)
Between 700 and 749
GTAGovernment Administration
Updated:
11/03/2026
11/03/2026
737/1000
Moderate
Ba
GTA Global Score (TPRM)
xxxx
GTAGovernment Administration
Score locked

GTAModerate
Current Score
737Ba (MODERATE)
01000
1 incidents
-26 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
740
JUNE 2026
739
MAY 2026
738
APRIL 2026
738
MARCH 2026
737
FEBRUARY 2026
737
JANUARY 2026
737
DECEMBER 2025
736
NOVEMBER 2025
761
Cyber Attack
05 Nov 2025 • GTA
Georgian government organizations: Russian hackers hit Windows machines via Linux VMs with new custom malware
Russian Hackers Use Linux VMs on Windows to Evade Detection in Cyber Espionage Campaign
735
CRITICAL-26
GEO1773194386
Russian Hackers Use Linux VMs on Windows to Evade Detection in Cyber Espionage Campaign
Security researchers from Bitdefender, in collaboration with Georgia’s Computer Emergency Response Team (CERT), have uncovered a sophisticated cyber espionage campaign by the Russian hacking group Curly COMrades, targeting institutions in Georgia and Moldova since July 2025.
The attackers exploited Microsoft Hyper-V virtualization on Windows hosts to deploy Alpine Linux-based virtual machines (VMs) containing reverse-shell malware, including CurlyShell and CurlCat. By configuring the VMs to route traffic through the host’s Default Switch network adapter, the hackers masked malicious outbound communications, making them appear as legitimate host activity. This technique effectively bypassed host-based EDR (Endpoint Detection and Response) defenses.
The campaign involved PowerShell scripts for remote authentication and arbitrary command execution, enabling persistent access. While Curly COMrades’ activities align with Russian geopolitical interests, no direct link to known Russian APT groups has been established. Victims included Georgian government and judicial organizations and Moldovan energy companies, though specific entities were not disclosed.
First identified in 2024, the group’s focus on Georgia a country with Russian-backed breakaway regions suggests strategic surveillance of diplomatic and security efforts. The use of VMs to conceal malware execution represents an escalation in evasion tactics, complicating detection for traditional security tools.
INCIDENT DETAILS -
TYPE
MOTIVATION
REFERENCES
OCTOBER 2025
761
SEPTEMBER 2025
761
AUGUST 2025
761
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for GTA ??
What was GTA's A.I Rankiteo Cyber Score in June 2026 ??
What was GTA's A.I Rankiteo Cyber Score in May 2026 ??
What was GTA's A.I Rankiteo Cyber Score in April 2026 ??
What was GTA's A.I Rankiteo Cyber Score in March 2026 ??
What was GTA's A.I Rankiteo Cyber Score in February 2026 ??
What was GTA's A.I Rankiteo Cyber Score in January 2026 ??
What was GTA's A.I Rankiteo Cyber Score in December 2025 ??
What was GTA's A.I Rankiteo Cyber Score in November 2025 ??
What was GTA's A.I Rankiteo Cyber Score in October 2025 ??
What was GTA's A.I Rankiteo Cyber Score in September 2025 ??
What was GTA's A.I Rankiteo Cyber Score in August 2025 ??
What is the average per-incident point impact on GTA's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with GTA ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view GTA's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?