UK government exempting itself from flagship cyber law inspires little confidence


From May’s cyberattack on the Legal Aid Agency to the Foreign Office breach months later, cyber incidents have become increasingly common in UK government.

The scale extends far beyond these high-profile cases: the NCSC reports that 40 percent of attacks it managed between September 2020 and August 2021 targeted the public sector, a figure expected to grow. Given this threat landscape, why does the UK’s flagship Cyber Security and Resilience (CSR) Bill exclude both central and local government?

Read more…
Source: The Register News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • Apple is challenging U.K.’s iCloud encryption backdoor order

    March 5, 2025

    Apple is challenging a U.K. Government data access order in the Investigatory Powers Tribunal (IPT), the Financial Times reports. The order targeted iCloud backups that are protected by end-to-end encryption. Aple responded by announcing it would end U.K. users’ access to the strongly encrypted version of the iCloud storage feature. The challenge via the IPT was ...

  • UK: 60% of NHS staff want more cyber security training

    March 4, 2025

    Research from BT found that 94% of NHS staff understand their role in protecting the organisation from cyber attacks, yet only 36% believe current measures are sufficient. The independent online survey of 76 NHS staff at 59 NHS organisations and integrated care systems, carried out between 8 September 2024 and 16 September 2024, explored sentiment around ...

  • British nationals told they could be banned or deported from US amid censorship row

    March 1, 2025

    British nationals have been told that they could be banned or deported from the US as the free speech row rages on across the transatlantic. US Congressman and chair of the House Judiciary Committee, Jim Jordan, handed a letter to Keir Starmer slamming the state of UK “censorship”. He added that his committee had subpoenaed American ...

  • UK: Cyber-attack sparks security fears over NHS provider’s data

    February 28, 2025

    The private healthcare group that will soon take charge of Swindon community care services has been hit by a cyber-attack. HCRG Care Group recently won the contract to provide care-at-home services in the Swindon area, which was previously managed by the trust in charge of Great Western Hospital, as well as other parts of Wiltshire. The company ...

  • Apple pulls data protection feature in UK amid government demands

    February 21, 2025

    Apple is scrapping its most advanced security encryption feature for cloud data in Britain, the company said on Friday, an unprecedented response to government demands for access to user data. The change affects a feature called Advanced Data Protection (ADP), which extends end-to-end encryption across a wide range of cloud data. Apple said it is no ...

  • Finastra Notifies Customers of Data Breach

    February 19, 2025

    British financial technology firm Finastra has notified customers impacted by a data breach that occurred over three months ago. Between October 31 and November 8, 2024, an unauthorized third party accessed the company’s secure file transfer platform (SFTP), used to share files with customers. Although the breach was detected on November 7, and the company acknowledged ...