CERT Polska
CERT Polska is Poland's national CSIRT (CSIRT NASK), operating within NASK PIB since 1996 to provide free incident response, vulnerability scanning, threat intelligence, and CVE assignment to Polish citizens, businesses, and government institutions.
- Company typePublic
- Founded1996
- HeadquartersWarsaw, Poland
- Headcount101–250
- GTM typeB2B
- OfferingServices
What CERT Polska does
CERT Polska is Poland's national computer emergency response team, operating since 1996 as CSIRT NASK within the state research institute NASK - Państwowy Instytut Badawczy (NASK PIB). It is one of three teams designated at the national level in Poland's cybersecurity system and serves Polish citizens, businesses, educational institutions, and government bodies with incident response, vulnerability research, threat intelligence, and coordinated vulnerability disclosure. The organisation holds CVE Numbering Authority (CNA) status — the only Polish institution and one of seven European CERTs authorised to assign CVE identifiers — and has issued 73 CVEs in its first year as a CNA.
Its technology stack is anchored by proprietary platforms: moje.cert.pl, a free self-service platform that has scanned over 3.3 million domains, subdomains, and IPs and detected more than 573,000 vulnerabilities and nearly 4 million leaked credentials (20,000+ registered users as of June 2026); Artemis, a non-invasive security scanner built on the open-source nuclei and sqlmap engines, scanning domains for misconfigurations, SQL injection, and remote code execution; n6, a threat-intelligence aggregator pulling from commercial providers, public institutions, other CERT teams, and private researchers; MWDB for malware sample storage; Bezpieczna Poczta for SPF/DKIM/DMARC verification; and the Lista Ostrzeżeń (Warning List) blocklist integrated into Polish networks for 24/7 malicious domain blocking. The organisation also publishes open-source tooling (DRAKVUF Sandbox) and runs the SECURE annual conference and the Biuletyn OUCH! security awareness newsletter.
The business model is fully non-commercial: all services are provided free of charge and funded by the Polish state via NASK PIB's budget, with additional co-financing from the European Union's Connecting Europe Facility and European Regional Development Fund. Go-to-market is community-led and channel-distributed through self-service web platforms, incident-reporting portals (incydent.cert.pl), open-source GitHub releases, social media, and the annual SECURE conference. Customer segments span Polish citizens (individual scanning, password leak checks), Polish SMBs and large enterprises (infrastructure analysis, subdomain discovery), the Polish government and military (APT incident response, joint operations with CSIRT MON and Służba Kontrwyadu Wojskowego), and the education sector (Artemis scanning of ~62,600 school domains and subdomains).
CERT Polska firmographics
Firmographics- Name
- CERT Polska
- Legal name
- NASK - Państwowy Instytut Badawczy
- Website
- https://cert.pl
- Company type
- Public
- Founded year
- 1996
- Operating status
- Operating
- Headcount range
- 101–250 employees
- Short description
- CERT Polska is Poland's national CSIRT (CSIRT NASK), operating within NASK PIB since 1996 to provide free incident response, vulnerability scanning, threat intelligence, and CVE assignment to Polish citizens, businesses, and government institutions.
- Ownership category
- akta.pro rank
CERT Polska industry classification
Industry- Product category
- National Cybersecurity / CSIRT Services
- NAICS
- Investigation and Security Services (5616), Computer Systems Design and Related Services (54151)
- SIC
- Services-Services, Nec (8900)
- akta.pro primary industry
- Vulnerability Assessment & Scanning (HDADAHAA)
- akta.pro secondary industries
- Vulnerability Management & Penetration Testing Services (BPAEADAD), Network Security Managed Services (Firewall/IDS/IPS/SASE) (BPAEADAG), Vulnerability Management, Pen Testing & Attack Surface Management (ASM) (HLACAJAN)
Keywords
Where CERT Polska is headquartered
LocationHeadquarters
- HQ city
- Warsaw
- HQ country
- Poland
- HQ region
- Europe
Offices1 record
Markets served
CERT Polska business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Infrastructure
Revenue model
- Government Funding: CERT Polska operates as a team within NASK - Państwowy Instytut Badawczy (National Research Institute), a Polish government research institution. All services are provided free of charge to the public, funded by government budget. The organization is also co-financed by the Connecting Europe Facility of the European Union.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Freemium | Monthly | Free services for all users |
Go-to-market motion1 record
Distribution channels4 records
Marketing channels5 records
CERT Polska product offering
Product offeringCore offering
CERT Polska operates as Poland's national CSIRT (CSIRT NASK) within NASK - Państwowy Instytut Badawczy, delivering free cybersecurity services including incident response, vulnerability scanning, threat intelligence aggregation, malware analysis, and coordinated vulnerability disclosure. It develops and maintains proprietary platforms (moje.cert.pl, Artemis, n6, MWDB, DRAKVUF Sandbox, Bezpieczna Poczta) and operates the 24/7 Lista Ostrzeżeń (Warning List) that blocks malicious domains across protected networks.
Product overview
CERT Polska operates as Poland's national computer emergency response team within NASK-PIB, offering a portfolio of cybersecurity tools and services. The core platform is moje.cert.pl, a free vulnerability scanning and threat notification service. Supporting tools include n6 for threat intelligence aggregation, Artemis for security scanning (built on nuclei and sqlmap), MWDB for malware sample storage, and Bezpieczna Poczta for email security verification. The organization also maintains the Lista Ostrzeżeń warning list for dangerous websites and operates a CVE Numbering Authority program for coordinated vulnerability disclosure. Most services are free and targeted at private users, small businesses, and public institutions.
Differentiator
Problem solved
Functional benefit
Brands
- moje.cert.pl: A free security scanning platform for domains and infrastructure, launched in 2025, with over 16,000 users as of early 2026.
- Artemis
- n6
- Bezpieczna Poczta
- Lista Ostrzeżeń
Products and services
- moje.cert.pl Free cybersecurity platform enabling domain security management, vulnerability scanning, data leak detection, and threat notifications for Polish citizens, businesses, and public institutions. Scanned over 3.3 million domains/subdomains/IPs and detected over 573,000 vulnerabilities and nearly 4 million leaked passwords.
- Artemis Advanced non-invasive security scanning tool that analyzes the security of domains and internet services. Uses open-source tools (nuclei, sqlmap) and contains several dozen modules checking SPF/DMARC presence through to SQL Injection and remote code execution vulnerabilities.
- n6 System aggregating network event and threat intelligence data from multiple sources including commercial providers, public institutions, other CERT teams, and private researchers to provide network event information for analysis.
- MWDB (Malware Database) Database system for storing, tracking, and sharing malware samples and indicators of compromise (IOCs) analyzed by CERT Polska, accessible at mwdb.cert.pl.
- DRAKVUF Sandbox Open-source malware analysis sandbox used by CERT Polska for dynamic analysis of malicious software, available on GitHub at github.com/CERT-Polska/drakvuf-sandbox.
- Bezpieczna Poczta (Secure Mail) Email security service allowing users to verify the correctness of email domain configuration for security mechanisms including SPF, DKIM, and DMARC to prevent email spoofing.
- Lista Ostrzeżeń (Warning List) Continuously updated 24/7 list of domains that may mislead users and fraudulently obtain their data. Networks with the list enabled automatically block dangerous sites.
- CVD Program (Coordinated Vulnerability Disclosure) Coordinated Vulnerability Disclosure program allowing researchers to report vulnerabilities. CERT Polska holds CVE Numbering Authority (CNA) status and assigns CVE identifiers to disclosed vulnerabilities, having assigned 73 CVE identifiers in the first year.
- Incident Reporting (incydent.cert.pl) 24/7 incident reporting portal for reporting suspicious emails, phishing websites, and other cybersecurity incidents by all Polish internet users.
Quantifiable outcome
- Over 573,000 vulnerabilities detected through free scanning platform
- +4 more outcomes
Companies that use CERT Polska
Customer profileNamed customers3 records
Segments4 records
Ideal customer profiles3 records
CERT Polska technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability6 records
Feature8 records
CERT Polska partnerships and signals
Strategic signalPartnerships
Five partnerships are on record, tiered core and minor.
- CVE Program (as CNA)coreCERT Polska became a CVE Numbering Authority (CNA) in August 2023, one of only 7 CERTs in Europe and the only Polish institution authorized to assign CVE identifiers to vulnerabilities. In their first year, they assigned 73 CVE identifiers to vulnerabilities discovered through their research activities.
- CSIRT MON (Military Computer Security Incident Response Team)coreJoint operation with CSIRT MON for government cybersecurity. Both teams cooperated on the APT28 campaign analysis targeting Polish government institutions. CSIRT MON handles military institutions while CERT Polska handles all other sectors.
- Służba Kontrwywiadu Wojskowego (SKW - Military Counterintelligence Service)coreCooperation on APT29 campaign analysis targeting Polish diplomatic and government institutions. Joint intelligence sharing on Russian state-sponsored cyber operations.
- CSIRT GOVcoreCoordination on cybersecurity incidents affecting central government administration and critical infrastructure. Part of the three-team national CSIRT system in Poland.
- DNS4EUminorParticipation in DNS4EU project - a European initiative to introduce private and secure public DNS resolver within the European Union. Part of the EU Cybersecurity Strategy to build independence in digital services.
Scale indicators11 records
Recent moves6 records
Expansion highlights5 records
CERT Polska competitors and assessment
Company assessmentDirect peers
- ENISA (European Union Agency for Cybersecurity): EU-level cybersecurity agency coordinating among national CSIRTs. Comparable in threat intelligence sharing, vulnerability handling coordination, and policy work; complements CERT Polska's EU-funded activities like DNS4EU.
- BSI (Bundesamt für Sicherheit in der Informationstechnik): Germany's federal cybersecurity authority. Comparable in national CSIRT role, vulnerability research, threat intelligence, and free cybersecurity tools for citizens and SMBs. Similar government-funded operating model.
- CERT-EU (Computer Emergency Response Team for the EU Institutions): CSIRT serving EU institutions, bodies, and agencies. Comparable in CERT function, incident response, and EU-level threat intelligence collaboration with national CSIRTs including CERT Polska.
- CISA (Cybersecurity and Infrastructure Security Agency): US national CSIRT-equivalent with broad mandate covering vulnerability scanning, threat intelligence, CVE coordination, and free public services. Most direct international peer at scale, though US-jurisdiction specific.
- NCSC (UK National Cyber Security Centre): UK's national CSIRT and cybersecurity authority. Comparable in mandate, free public-facing tools, threat intelligence sharing, incident response role, and government CSIRT status. Closest international peer to CERT Polska's role and operating model.
- NCSC-NL (Nationaal Cyber Security Centrum): Netherlands' national CSIRT. Directly comparable in free public cybersecurity services, vulnerability scanning tools, incident response coordination, and government-funded operating model within the EU.
- ANSSI (Agence Nationale de la Sécurité des Systèmes d'Information): France's national cybersecurity agency with national CSIRT functions, vulnerability advisories, and public-sector cybersecurity coordination. Directly comparable to CERT Polska in regulatory mandate and free public services.
Broad incumbents
- CrowdStrike: Global cybersecurity incumbent offering vulnerability management, threat intelligence, and incident response capabilities that overlap with CERT Polska's free public tools but at commercial scale and global reach.
Emerging players
- Shadowserver Foundation: Non-profit cybersecurity organization providing free vulnerability scanning, botnet reporting, and threat intelligence to national CSIRTs and network operators. Closest non-government peer to CERT Polska's free public scanning services.
Regional players
- ESET: Slovakia-based cybersecurity vendor with strong Central European roots. Regional comparable offering commercial malware analysis, threat intelligence, and endpoint security; useful proxy for commercial tooling that complements national CSIRT services.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat5 records
Key risks5 records
Key highlights7 records
Customer concentration
CERT Polska social profiles
Digital presenceCERT Polska financial estimates
Financial estimateRevenue estimate
Valuation estimate
CERT Polska leadership team
Management profileNumber of profiles
Profiles4 records
CERT Polska funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
CERT Polska M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about CERT Polska
What does CERT Polska do?
CERT Polska operates as Poland's national CSIRT (CSIRT NASK) within NASK - Państwowy Instytut Badawczy, delivering free cybersecurity services including incident response, vulnerability scanning, threat intelligence aggregation, malware analysis, and coordinated vulnerability disclosure. It develops and maintains proprietary platforms (moje.cert.pl, Artemis, n6, MWDB, DRAKVUF Sandbox, Bezpieczna Poczta) and operates the 24/7 Lista Ostrzeżeń (Warning List) that blocks malicious domains across protected networks.
Is CERT Polska a public or private company?
CERT Polska is a public company. It is classified as state government owned and is currently operating.
When was CERT Polska founded?
CERT Polska was founded in 1996. It employs 101 to 250 people.
Where is CERT Polska based?
CERT Polska is headquartered in Warsaw, Poland, in the Europe region.
How does CERT Polska make money?
One revenue line is on record: government Funding.
Who are CERT Polska's main competitors?
Direct peers on record are ENISA (European Union Agency for Cybersecurity), BSI (Bundesamt für Sicherheit in der Informationstechnik), CERT-EU (Computer Emergency Response Team for the EU Institutions), CISA (Cybersecurity and Infrastructure Security Agency), NCSC (UK National Cyber Security Centre), NCSC-NL (Nationaal Cyber Security Centrum) and ANSSI (Agence Nationale de la Sécurité des Systèmes d'Information). CrowdStrike is listed as a broad incumbent. Shadowserver Foundation is listed as an emerging player. ESET is listed as a regional player.
Does CERT Polska have an API?
No public API is recorded for CERT Polska.
What industry is CERT Polska in?
CERT Polska's product category is National Cybersecurity / CSIRT Services. Its primary akta.pro industry code is HDADAHAA, Vulnerability Assessment & Scanning, with a secondary code of BPAEADAD, Vulnerability Management & Penetration Testing Services. Its NAICS code is 5616 and its SIC code is 8900.