Achievements

Since its adoption in 2001, the Convention on Cybercrime (Budapest Convention) has fundamentally shaped the international criminal justice response to cybercrime and electronic evidence, influencing legislation, capacity building, and co-operation across all regions of the world. It has fostered greater collaboration between the judiciary and law enforcement, enabling more effective delivery of justice in cyberspace and enhancing mutual trust in their respective expertise on cybercrime, harmonising cybercrime legislation worldwide to tackle a truly global crime phenomenon.
Additionally, the ongoing support provided under the framework of the Convention on Cybercrime, including through the Council of Europe’s Cybercrime Programme Office (C-PROC), has increased public confidence in law enforcement’s ability to tackle cybercrime effectively and uphold the rule of law.
1. Pioneering and impacting the cybercrime legislation across the globe
Since 2001, cybercrime legislation across the Globe has been considerably shaped by the Budapest Convention, directly or indirectly. By December 2025:
- some 134 States (or 69% of UN Member States) seem to have had substantive criminal law provisions covering offences against and by means of computers “largely in place”, that is, they had adopted specific domestic provisions corresponding to most of the substantive criminal law articles of the Budapest Convention;
- some 104 States (or 54% of UN Member States) had specific procedural powers largely in place similar to those of the Budapest Convention;
- 97 States (or 50% of UN Member States) were either Parties or Signatories to the Budapest Convention or had been invited to accede. These 97 States were thus members or observers in the Cybercrime Convention Committee (T-CY). There is consistent progress in terms of membership.
Source: Global state of cybercrime legislation 2013-2025: a cursory overview (Council of Europe)
4. Legal framework for addressing new emerging threats (ransomware, election interference, illegal use of virtual assets, cyberviolence)
The Budapest Convention continues to demonstrate its enduring relevance and adaptability at the global level by providing a comprehensive framework for addressing emerging forms of cybercrime, including cyberviolence, election interference, and the illegal use of virtual assets. Its technology-neutral provisions and broad scope enable States to respond effectively to new and complex threats in the digital environment through harmonised legislation and robust international cooperation.
As more countries across different regions accede to or draw inspiration from the Convention, it serves as a vital international instrument for collectively responding to the dynamic challenges posed by the ever-evolving landscape of cybercrime.
Thanks to the support of the capacity building provided by the Cybercrime Programme Office (C-PROC), more than 50 countries worldwide aligned their domestic legal frameworks with the provisions of the Budapest Convention. This further enabled many of these countries to be invited to accede to the Convention. One example is the legislative reform on cybercrime and electronic evidence in Kiribati started in December 2020, through several reviews and workshops with the task force driving the reform. In July 2022, the new law was adopted, enabling Kiribati to request and later on be invited to accede to the Convention on Cybercrime (June 2023). Since June 2024, Kiribati is Party to the Convention, being able to enjoy full range of international cooperation mechanisms under the Convention.
Council of Europe: Ransomware resource
Council of Europe: Cyberviolence resource
Council of Europe: War crimes resource (upcoming)
2. Source of inspiration for the new UN Convention and avoiding global fragmentation on legislative standards
The United Nations Convention against Cybercrime draws extensively from the Budapest Convention, integrating its core concepts and measures as a foundation for strengthening international co-operation and the sharing of electronic evidence in the criminal justice context.
The ability of the Budapest Convention to inspire the UN treaty underscores its enduring relevance and adaptability in addressing evolving cyber threats, while highlighting the consistency of minimum safeguards for international cooperation between both treaties.
Looking forward, the UN treaty will not only complement the Budapest Convention but may also serve as a pathway for states to build experience in international co-operation on cybercrime, fostering eventual accession to the Budapest Convention and maximizing synergies in global capacity-building efforts.
5. Enhanced international operational co-operation
The Budapest Convention provides for international cooperation mechanisms accessible to all Parties.
The achievements of the Budapest Convention with regards to international cooperation stem not only from the text of the Convention, but also the large network of practitioners participating in the Cybercrime Convention Committee (T-CY) and in capacity building activities who can call and rely on each other when needed in the investigation and prosecution of cases that more often than ever are transnational in nature. The benefit of these relationships is immeasurable.
6. Improvements to co-operation with the private sector
Over the last 25 years, co-operation with the private sector thanks to membership in the Convention has significantly improved.
The Convention on Cybercrime (Budapest Convention) has proven instrumental in reinforcing public-private partnerships by establishing a common framework that encourages collaboration between governmental authorities and private sector stakeholders in the fight against cybercrime. Through tailored capacity building initiatives, the Convention promotes dialogue, information sharing, and practical cooperation, thereby strengthening mutual trust and effectiveness in preventing and investigating cyber threats.
This inclusive approach ensures that both public institutions and private entities are equipped to address the evolving challenges of cyberspace, enhancing the collective resilience of national and international ecosystems.
Supported by capacity building action of the Council of Europe, Memoranda of Cooperation have been drafted and singed jointly by criminal justice authorities and Internet industry in Georgia and Armenia since 2010s. These detailed agreements facilitate access to and exchange of data needed for cybercrime investigations, and are operational to this day.
3. Attraction for reinforcing the data protection regulation at the national level
The Budapest Convention plays a central role in harmonising the approaches of participating states to cybercrime and electronic evidence while emphasising the importance of data protection regulations as a cornerstone of effective and secure international co-operation. Through its comprehensive capacity building initiatives, the Convention equips countries with the necessary legal, procedural, and technical expertise to safeguard personal data during cross-border investigations and evidence sharing.
This alignment between robust data protection standards and international collaboration under the Budapest Convention fosters mutual trust among states, thereby ensuring the smooth and lawful exchange of electronic evidence in the fight against cybercrime.
Countries such Chile, Ecuador, Mozambique and Vanuatu were supported to develop comprehensive data protection legal frameworks.
7. Extensive use of the 24/7 network of contact points
The network of 24/7 points of contact is conceived to provide assistance in urgent matters, and the expedited preservation of data is one of the measures.
However, immediate assistance may also comprise a range of other measures, including cases of mutual legal assistance.
According to Article 35, Contact Points shall "ensure the provision of immediate assistance for the purpose of investigations or proceedings concerning criminal offences related to computer systems and data, or for the collection of evidence in electronic form of a criminal offence."
The Second Additional Protocol to the Budapest Convention, on enhanced co-operation and disclosure of electronic evidence, opened for signature in May 2022, brought new responsibilities for the 24/7 Network in order to enhance international cooperation between States as well as with the private sector.
8. More open co-operation on cybercrime and electronic evidence between countries and regions
The Budapest Convention and its comprehensive framework have encouraged countries to engage in more direct and open cooperation, grounded in the trust and shared standards established by membership in the Convention. The Convention’s procedural tools and mechanisms facilitate not only effective collaboration in concrete criminal investigations, but also support the ongoing exchange of knowledge, expertise, and best practices among Parties. This spirit of trusted partnership has fostered a collaborative environment in which states can address cybercrime challenges collectively and efficiently.
The Parties and Observers with the Budapest Convention enjoy the benefits of various community resources, such as access to international network of national trainers and peer-to-peer exchange of knowledge, such as the cyber-skills sharing programme, facilitating bilateral professional exchanges among cybercrime specialists from over 30 countries worldwide, enhancing investigative skills and international cooperation to combat evolving cyber threats.
9. Reinforced co-operation between cybercrime and cybersecurity communities
The Convention on Cybercrime (Budapest Convention), accompanied by dedicated capacity building initiatives, has significantly assisted countries in developing regulatory frameworks that bridge the gap between cybercrime and cybersecurity actors, thereby enhancing whole-of-government approaches to digital threats. Through technical assistance, training, and peer exchanges, the Convention has fostered greater trust and understanding among law enforcement, judicial authorities, and cybersecurity stakeholders.
This enhanced collaboration has enabled more effective sharing of information and coordinated responses to cyber incidents, strengthening national and international resilience against cybercrime.
Countries from the Eastern Partnership region, with assistance of the projects run by the Cybercrime Programme Office (C-PROC), adopted the Standard Operating Procedures for law enforcement/CSIRTs co-operation in 2021, which have since served as baseline for various training and networking activities supported under these projects.
Regional Cyber Co-operation Exercises, organised regularly since 2017, are built on the scenarios and solutions that enable law enforcement and cybersecurity authorities to co-operate and coordinate investigations in response to major cyberattacks and cybercrime incidents.