UK government exempting itself from flagship cyber law inspires little confidence


From May’s cyberattack on the Legal Aid Agency to the Foreign Office breach months later, cyber incidents have become increasingly common in UK government.

The scale extends far beyond these high-profile cases: the NCSC reports that 40 percent of attacks it managed between September 2020 and August 2021 targeted the public sector, a figure expected to grow. Given this threat landscape, why does the UK’s flagship Cyber Security and Resilience (CSR) Bill exclude both central and local government?

Read more…
Source: The Register News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • Grindr facing UK lawsuit over alleged data protection breaches

    April 22, 2024

    Gay dating app Grindr is facing a mass data protection lawsuit in London from hundreds of users who allegedly had their private information, including HIV status, shared with third parties without consent, a law firm said on Monday. Austen Hayes, which said the lawsuit is being filed at London’s High Court, said thousands of Grindr users ...

  • Leicester street lights stuck on all day due to cyber attack

    April 22, 2024

    A cyber attack targeting Leicester City Council has led to some street lights being stuck on all day. The attack crippled the authority’s services seven weeks ago and led to confidential documents being published online by the hackers, including rent statements and applications to buy council houses. Read more… Source: MSN News Sign up for our Newsletter Related:

  • Singapore: Personal information of parents, staff at 127 schools accessed in data security breach

    April 20, 2024

    A data breach at one of its vendors has resulted in the “unauthorised access” of names and email addresses of parents and staff from five primary and 122 secondary schools, the Ministry of Education (MOE) said on Friday (Apr 19). MOE said it was notified by Mobile Guardian that its user management portal had been breached ...

  • The Fall of LabHost: Law Enforcement Shuts Down Phishing Service Provider

    April 18, 2024

    In late 2021, LabHost (AKA LabRat) emerged as a new PhaaS platform, growing over time to eventually offer dozens of phishing pages targeting banks, high-profile organizations, and other service providers located around the world, but most notably in Canada, the US, and the UK. The popularity of the platform meant that at the time of the ...

  • Northern Ireland: No disciplinary action over multimillion-pound PSNI data breach

    April 11, 2024

    Jon Boutcher said the error that is set to cost hundreds of millions of pounds was due to a systems failure, as he insisted he not would preside over a “blame culture” within the PSNI. In August last year the details of almost 9,500 PSNI officers and staff were mistakenly published in response to a Freedom ...

  • Russia slaps sanctions on UK IT sector

    April 10, 2024

    Moscow has blacklisted 22 British government officials, members of the IT sector and legal service market as a measure of retaliation, the Russian Foreign Ministry said in a statement. Those blacklisted particularly include employees of British companies, namely Micro Focus, providing Ukrainian forces with “software and cyber protection services necessary in the process of data collection ...