×

Official Inauguration of the Western Balkans Cyber Capacity Centre (WB3C)

09.12.2024

Image for Official Inauguration of the Western Balkans Cyber Capacity Centre (WB3C)

WB3C - a powerful symbol of what can be achieved when countries unite to tackle shared challenges

Yesterday marked a significant milestone in the cybersecurity landscape of the Western Balkans with the official inauguration of the Western Balkans Cyber Capacity Centre (WB3C) in Podgorica. The event celebrated a shared commitment of our founding partners to strengthening regional cyber resilience, advancing cooperation and aligning with European standards.

The inauguration was attended by over 100 distinguished guests, including government officials, diplomats, representatives of international organizations and academia. Among the key speakers were the Prime Minister of Montenegro, Mr. Spajić, Deputy Prime Minister and Minister of Foreign Affairs Ervin Ibrahimović, Minister of Public Administration Dukaj, Slovenian Deputy Prime Minister and Minister of Foreign and European Affairs Tanja Fajon, and French Special Envoy for the Western Balkans René Troccaz. Their remarks highlighted the shared belief in the importance of collective action to address evolving cyber threats.

Prime Minister Spajić said: "Our Centre, recognized within the Berlin Process, plays a crucial role in enhancing cybersecurity capacities in the region. With the expertise of France and Slovenia, and the inclusion of all Western Balkan countries, I firmly believe we can significantly advance our regional cybersecurity capabilities."​ 

Minister Ibrahimović emphasized the symbolic and practical value of the Centre: “The WB3C is a unique project with special symbolism—it demonstrates our commitment to creating a secure digital environment and addressing modern challenges. It also reflects the importance of aligning with European standards while fostering regional cooperation, which is critical for our shared future.”

Slovenian Deputy Prime Minister Tanja Fajon highlighted WB3C’s role in fostering unity: “This Centre represents a cornerstone of our efforts to strengthen cooperation within the Western Balkans and build a safer, more secure digital environment for all. By bringing together expertise, resources, and a shared vision, WB3C exemplifies how we can overcome challenges and seize opportunities together.”

French Special Envoy René Troccaz underscored the role of solidarity in building resilience: “Cyber resilience through solidarity is the best way to protect our economies, societies, and institutions from destabilizing threats. WB3C is a testament to the power of collaboration, and I am confident that its work will continue to strengthen the region’s capabilities.”

Minister Dukaj pointed to the practical outcomes of WB3C’s initiatives: “Through its training programs, WB3C ensures that our region is equipped with the knowledge and tools needed to address the rapidly evolving threats in cyberspace. This Centre will not only enhance individual expertise but also foster regional unity and cooperation in the face of shared challenges.”

WB3C’s Director, Yannick Casse expressed his pride in the team and the collaborative spirit driving the Centre’s mission: “With our friends from Slovenia, France, and Montenegro, and the dedicated team here in Podgorica, we are more than a team; we are the Western Balkans Cyber Capacity Centre. Together, we are building a legacy of resilience and innovation.”

A Year of Impact and Ambitious Plans Ahead

Over the past year, WB3C has already demonstrated its value to the region, providing training to over 400 professionals across cybersecurity, cybercrime and cyber diplomacy. These programs are not just about building technical skills—they aim to create connections, foster trust, and prepare the region to face the complex cyber threats of tomorrow.

Looking ahead, WB3C has set ambitious goals for 2025-2027. The Centre plans to train up to 1,500 professionals and is collaborating with the University of Technology of Troyes to establish a university qualification program in Digital Forensics. This program will empower cybercrime investigators to deepen their expertise, ensuring that the region remains at the forefront of addressing modern cybercrime challenges.

Symbolizing a New Phase

The formal unveiling of the WB3C plaque symbolized the beginning of a new chapter in the region’s efforts to strengthen cybersecurity capabilities, deepen cooperation and align with European standards.

By advancing regional resilience and fostering alignment with EU priorities, WB3C plays a pivotal role in supporting the Western Balkans’ integration into the European Union. As the Centre continues its work, it stands as a testament to what can be achieved through commitment, collaboration and a shared vision for a secure digital future.


Cybercrime Investigation for Police Officers

This Friday, in cooperation with UNDP Kosovo, we completed an intensive training cycle for the Kosovo* Police Cyber Unit. Over the four days, 15 participants engaged deeply with the landscape of modern digital threats.
Our in-house trainers for cyber crime Cyril C. and Yannick Casse prepared a comprehensive curriculum covering the full spectrum: from the hashtag#typologies of cyber-enabled crimes and attacks on data systems to practical sessions in hashtag#OSINT techniques and the evolving challenges of hashtag#cryptocurrency in criminal investigations.
The group was highly committed, proactive and engaged and demonstrated exceptional analytical skills needed for their practical work as investigators.

A sincere congratulations to the entire cohort and thanks to UNDP for their support.

Regional Conference on Ransomware Concludes with Cross-Sector Dialogue

The Western Balkans Cyber Capacity Centre (WB3C) hosted the regional conference Confronting Ransomware: Analysis and Strategy for the Western Balkans” on 2-3 December 2025. The event served as a platform for structured dialogue among key stakeholders from the region and international partners. The discussions were guided by Vanja Madzgalj, our Senior Project Manager, who served as the conference host, ensuring a cohesive and productive exchange of ideas throughout the two-day programme.

The conference was opened by Mr. Marash Dukaj, Minister of Public Administration of Montenegro who stressed the importance of continued development and collaboration, despite significant progress Montenegro has made over the past few years. The critical role of international cooperation was acknowledged by H.E. Anne-Marie Maskay, Ambassador of France to Montenegro, and H.E. Bernarda Gradišnik, Ambassador of Slovenia to Montenegro, highlighting the partnership that established the WB3C.

Over two days, sessions were designed to address the ransomware challenge from distinct professional viewpoints.

Day 1: Understanding the Threat and Response Mechanisms

  • Panel 1: The Operational Threat Landscape. This session provided a technical and strategic overview of ransomware from national and private sector perspectives.
    • Moderator: Igor Kovač, Government Information Security Office of Slovenia (URSIV).
    • Panelists: Dušan Polović (Ministry of Public Administration, Montenegro), Saimir Kapllani (National Cyber Security Authority, Albania), Predrag Puharić (Cyber Security Excellence Centre, BiH), and Mladen Bukilić (Čikom, Montenegro).
    • Key Discussion: The panel detailed the current scale and methods of attacks, emphasizing the need for shared threat intelligence. They looked at how ransomware has been evolving in the recent years and how governments and private sector are preparing for to prevent and respond growing threats. Disparity in defensive resources, especially sophisticated AI capabilities, affects overall organizational esilience.
  • Panel 2: Law Enforcement Perspective on Cybercriminal Organizations. This panel focused on the investigative viewpoint, examining the structure and operations of ransomware groups.
    • Moderator: Francisco Losada, Cybercrime Specialist, EUROPOL.
    • Panelists: Julien Hamm (Anti-cybercrime Office (OFAC), France), Nenad Bogunović (High-Tech Crime Unit, Ministry of Interior, Serbia), and Sreten Ćorić (High-tech Crime Unit, Police Directorate of Montenegro).
    • Key Discussion: Experts outlined the sophisticated, business-like models of cybercriminal groups. Challenges highlighted included the cross-jurisdictional nature of investigations and the constant evolution of adversarial tactics, which require continuous adaptation and closer international police collaboration.
  • Keynote Presentation: A Law Enforcement Blueprint. Captain Pascal Martin of the French Gendarmerie delivered a keynote address, decrypting a successful operation against a ransomware network. His presentation provided a concrete blueprint for combining digital forensics, international judicial cooperation, and public-private intelligence sharing to achieve tangible results.
  • Case Study: The Private Sector Response. Vladimir Mlynar, CISO for VINCI Energies CEE, presented a detailed case study from the private sector. He walked through the operational timeline of a real-world ransomware incident, offering insights into crisis management, communication challenges, and recovery strategies under pressure.
  • Panel 3: The Legal and Jurisdictional Framework. This discussion explored the judicial and prosecutorial challenges in combating ransomware.
    • Moderator: Ana Bukilić, International Development Law Organisation (IDLO).
    • Panelists: Aurélien Brouillet (Deputy Prosecutor, Judicial Court of Paris), Marina Barbir (Judge, Higher Court of Belgrade), and Ivaylo Iliev (Assistant to the National Member for Bulgaria, EUROJUST).
    • Key Discussion: The conversation centered on the complexities of applying national laws to transnational cybercrime. Key challenges involve harmonizing legal standards for evidence collection, ensuring effective prosecutions, and streamlining formal international cooperation channels to keep pace with the speed of cyber incidents. The need for training in digital forensics for prosecutors and judges was emphasized as key in advancing judicial response in cases involving digital evidence and other sophisticated technologies.  
  • Special Session: Technical and Legal Aspects of Cryptocurrency Seizure. This exchange focused on the financial dimension of ransomware response.
    • Participants: Laurent Tisseyre (TRM Labs) and Dr. Arben Murtezić (Legal Counsel and Law Professor).
    • Key Discussion: The dialogue between a technical analyst and a legal expert underscored the difficulty of tracing and immobilizing illicit cryptocurrency payments. Challenges include the need for specialized blockchain forensic tools and navigating varied national regulations for asset seizure and recovery.

Day 2: Evolving Tactics and Crisis Management

  • Panel 1: The Impact of Artificial Intelligence. This session assessed AI's dual role in both advancing threats and empowering defenses.
    • Moderator: David Toulotte, Cyber reservist, Head of Global IT @ ArcelorMittal Europe.
    • Panelists: Mitja Trampuž (Creaplus/ai4si, Slovenia), Ivan Bošković (IT Advanced Services, Montenegro), and Prof. Dimitar Bogatinov (Military Academy, Skopje).
    • Key Discussion: Panelists explored how AI lowers barriers for executing more persuasive and adaptive attacks. A significant challenge is the rapid adoption of AI systems without corresponding security safeguards, creating new vulnerabilities even as AI offers new tools for cyber defense. Constant advancement of attacks forces defenders to also develop faster. The conclusion of the panel was that AI is here to stay, as one of the greatest inventions of man.
  • Panel 2: Incident Response and Negotiation Dynamics. This panel addressed the critical decision-making processes during an active ransomware attack.
  • Presentation: Resilience at Scale. Jérémy Couture, former Head of Cybersecurity for the Paris 2024 Olympic Games, provided a unique testimony on defending a hyper-complex, global target. His presentation on managing extreme-scale threats and stakeholder coordination offered critical lessons for national and corporate resilience planning.
    • Moderator: Gilles Schwoerer, Head of WB3C.
    • Panelists: Jean-Dominique Nollet (CISO, TotalEnergies) and Captain Pascal Martin (French Gendarmerie).
    • Key Discussion: The session covered the operational, legal, and ethical complexities of ransom negotiations. The main challenges discussed were balancing incident containment, legal obligations, and business continuity under severe pressure, all while coordinating with law enforcement investigations.

The conference facilitated a substantive exchange of perspectives from law enforcement, the judiciary, the private sector, and policy makers. The discussions reinforced that an effective response to ransomware requires continuous, practical collaboration across these sectors and borders, with a focus on addressing shared challenges in capacity, legislation, and joint operations.  The highly engaged audience, whose numerous questions created a dynamic, two-way conversation deepened the value of each session.  We thank all the speakers and participants for their great contribution to this conference and our Project Manager Maja Miranovic for putting together this great event. 

Check out event photos here: 

https://www.jaredic.com/p467614661 (day 1)

https://www.jaredic.com/p549115929 (day 2)

Confronting Ransomware: Analysis and Strategy for the Western Balkans 2–3 December 2025 | Science and Technology Park of Montenegro

Ransomware continues to pose one of the most serious and persistent cyber threats to institutions and businesses across the Western Balkans. In response to this growing challenge, the Western Balkans Cyber Capacity Centre (WB3C) is hosting a two-day conference that brings together national authorities, law enforcement agencies, EU institutions, the private sector and international experts to examine the evolving threat landscape and identify practical paths forward.

The discussions will follow the structure of the latest published agenda (available below), covering operational, legal, technical and strategic dimensions of ransomware response.

A diverse regional and European expert community

The conference brings together a wide range of contributors, reflecting the cross-sectoral nature of ransomware resilience:

  • National cybersecurity authorities, CSIRTs and police high-tech crime units from Montenegro, Albania, Bosnia and Herzegovina, Serbia, and North Macedonia
  • European and international law enforcement institutions, including Europol and France’s Anti-Cybercrime Office (OFAC)
  • Judicial representatives and prosecutors from France, Serbia, Montenegro and EUROJUST
  • Private-sector leaders in cybersecurity, including technical experts, CISOs, SOC practitioners and incident-response specialists from across the region and the EU
  • Academic and research communities specialising in cybercrime, digital forensics and AI-enabled cyber threats

Key themes across the two-day programme

The agenda examines several critical aspects of the ransomware ecosystem:

  • Mapping current ransomware tactics and regional threat activity
  • Understanding criminal group structures, operational models and international cooperation needs
  • Lessons learned from high-profile investigations and successful dismantling of ransomware groups
  • Comparative legal frameworks and the challenges of jurisdiction, prosecution and evidence handling
  • Real-world case studies from organisations that have managed and recovered from ransomware attacks
  • Technical and legal issues surrounding cryptocurrency tracing and seizure
  • The emerging role of AI in enhancing both attacker capabilities and defensive measures
  • Operational insights from securing major international events, including Paris 2024
  • The complexities of negotiating under pressure during active ransomware incidents

Through panels, keynotes, and practitioner-to-practitioner exchanges, the event aims to deepen understanding of how ransomware is evolving, where regional vulnerabilities lie, and what coordinated action is needed to strengthen resilience.

WB3C is committed to strengthening cybersecurity capacity across the Western Balkans by connecting national stakeholders with European expertise and by translating insights into practical improvements for public authorities, critical service operators and the wider digital ecosystem.

Access the latest agenda below.


Copyright © WB3C

Disclaimer: Translations of the original content written in English into other languages are AI generated by Weglot.