Europe’s police learn to share their cybercrime playbook + test

Two women working at computer monitors in a modern control room.

Cybercriminals do not stop at borders, but the police who chase them usually do. The EU-funded CYCLOPES project spent five years bringing European law enforcement officers, researchers and industry around one table: it ran workshops, built a shared database of tools and helped spark a Belgian anti-phishing initiative that has already blocked around 1,600 fake websites. Here is how the network works — and at the end you can check whether you have a nose for tracking down online criminals.

Contents

⇑Criminals without borders, police with them

A phishing campaign can be launched from one country, hosted in a second and aimed at victims in a third. The investigators, on the other hand, work within national rules, national budgets and national habits. That mismatch is the starting point of CYCLOPES (Fighting Cybercrime – Law Enforcement Practitioners’ Network), a Horizon 2020 project that ran from May 2021 to April 2026.

“Cybercrime evolves rapidly, requiring law enforcement to continuously adapt to new technologies and criminal methods,” says Rashel Talukder, managing director of the Polish Platform for Homeland Security, which coordinated the project.

⇑Why going it alone does not work

The problem is not only speed. Each country has developed its own way of dealing with online crime, and that creates blind spots. “Approaches across Europe differ, so there is a danger that our attempts to combat crime will be fragmented, leading to duplication of effort and missed lessons that could be learned, therefore cooperation is needed,” Talukder explains.

CYCLOPES set out to strengthen the whole ecosystem, connecting law enforcement agencies with researchers, industry, policymakers and standardisation bodies across Europe.

⇑Listening to the front line first

Instead of starting with a wish list drawn up in an office, the team went to the people doing the actual work. It organised 15 face-to-face workshops with European law enforcement agencies to find out where their capabilities fall short.

“We wanted to hear directly from those on the ground, at the forefront of the work being done to address the threat,” Talukder says.

⇑Five battlegrounds

The workshops focused on the areas where investigators feel the pressure most:

  • the internet of things, with its growing number of connected devices,
  • cryptocurrencies,
  • artificial intelligence,
  • child sexual exploitation,
  • digital forensics.

Each topic brought officers from different countries together to compare problems and, just as importantly, the solutions they had already tried.

⇑A database that works like a library

One of the project’s key results is an extensive database of tools and solutions already used by law enforcement agencies in Europe. The idea is simple: nobody should spend months building something a colleague abroad has already built.

“It’s like a library, really. If an authority comes across a problem, they can consult the database to see if another has already dealt with the same issue, and how,” says Talukder.

⇑Stockholm: how a workshop turned into PhishNemo

The best proof that meeting in person pays off came from a workshop in Stockholm. There, the Belgian Federal Police and the Dutch research organisation TNO exchanged knowledge on detecting phishing proactively, before scam sites can do much damage.

The conversation led to PhishNemo, a Belgian initiative that has since won an award. It has blocked around 1,600 malicious phishing websites and protected more than 120,000 potential victims. “This demonstrates how bringing together experts from different organisations and countries can generate lasting impact beyond a project’s formal objectives,” Talukder notes.

⇑More than 100 reports on what comes next

CYCLOPES did not only look at today’s threats. Over its lifetime it produced more than 100 reports, including annual foresight analyses meant to help cybercrime investigators anticipate future needs. Topics included the dark web and quantum computing, and what they could mean for the work of investigators.

The project also coordinated its activities with Europol, the European Commission’s DG HOME, EACTDA, ECTEG and EJCN.

⇑A network that outlives the project

The project has formally ended, but its community has not dissolved. The CYCLOPES Network carries on, with the Polish Platform for Homeland Security acting as its Secretariat and keeping practitioners, researchers and industry in touch.

For Talukder, the human side matters as much as the technology. “Beyond technical results, CYCLOPES demonstrated that trust, personal relationships and long-term professional networks remain fundamental for successful international cooperation against cybercrime,” he says. “We intend to do all we can to ensure that, going forward, research and innovation activities respond directly to operational requirements.”

⇑Key takeaways

CYCLOPES treated cross-border cybercrime as a problem of cooperation as much as technology. Fifteen workshops, a shared database of tools, over 100 reports and a network that keeps working after the funding ended all serve the same goal: letting Europe’s police learn from each other instead of reinventing the same solutions. PhishNemo shows that a single well-timed conversation between two countries can end up protecting tens of thousands of people.

⇑Do you have a knack for tracking down cybercriminals? (test)

5 questions · one minute

1. You get a text: “Pay 2 euros extra to receive your parcel”, with a link. What do you do?

2. A friend from another school has solved the problem you are struggling with. You…

3. Cryptocurrencies, AI, the dark web – how do they make you feel?

4. Working in an international team with different languages and different laws…

5. Searching for a needle in a haystack of data for hours on end…


published: 2026-09-25
Comments
Privacy Policy