UK government exempting itself from flagship cyber law inspires little confidence


From May’s cyberattack on the Legal Aid Agency to the Foreign Office breach months later, cyber incidents have become increasingly common in UK government.

The scale extends far beyond these high-profile cases: the NCSC reports that 40 percent of attacks it managed between September 2020 and August 2021 targeted the public sector, a figure expected to grow. Given this threat landscape, why does the UK’s flagship Cyber Security and Resilience (CSR) Bill exclude both central and local government?

Read more…
Source: The Register News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • UK: Man jailed for abusive emails to politicians

    February 18, 2025

    A 39-year-old man has been jailed for sending malicious communications to a government minister, the mayor of London and a senior Met Police officer. Jack Bennett, of Newlands Park, Seaton, Devon, pleaded guilty to four counts of sending malicious emails; one to Safeguarding Minister Jess Phillips, one to Metropolitan police officer Matt Twist, and two counts ...

  • Northern Ireland: Two people charged over alleged New IRA activity after PSNI data breach

    February 13, 2025

    Two men have appeared in court charged with terrorism offences linked to a major PSNI data breach. Brian Francis Cavlan, 49, from Coronation Park, Aughnacloy and Rory Martin Logan, 43, with an address given as HMP Maghaberry, appeared before court on Thursday. They were arrested on Tuesday as part of an ongoing police investigation into the ...

  • Gambling firms are secretly sharing your data with Facebook

    February 12, 2025

    While you might think you’re hitting the jackpot, whether you’ve consented to it or not, online gambling sites are playing with your data. Users’ data, including details of webpages they visited and buttons they clicked, are being shared with Meta, Facebook’s parent company. The Observer reports that over 150 UK gambling websites have been extracting visitor ...

  • Paris AI summit: Why won’t US, UK sign global artificial intelligence pact?

    February 12, 2025

    The United States and United Kingdom have refused to sign an Artificial Intelligence Action Summit declaration calling for policies “ensuring AI is open, inclusive, transparent, ethical, safe, secure and trustworthy”. The summit in Paris on Monday and Tuesday brought together representatives from more than 100 countries to discuss how to reach a consensus on guiding the ...

  • US, UK crack down on Russian bulletproof hosting service ZServers for LockBit partnership

    February 12, 2025

    Russia-based bulletproof hosting services provider (BPH) ZServers has been sanctioned by the United States, Australia, and the United Kingdom for its alleged involvement with the LockBit ransomware group. In a press release, the Australian Federal Police (AFP) said ZServers was providing services to threat actors responsible for the Medibank Private breach that happened in October 2022. ...

  • U.K. orders Apple to let it spy on users’ encrypted accounts

    February 7, 2025

    Security officials in the United Kingdom have demanded that Apple create a back door allowing them to retrieve all the content any Apple user worldwide has uploaded to the cloud, people familiar with the matter told The Washington Post. The British government’s undisclosed order, issued last month, requires blanket capability to view fully encrypted material, not ...