Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • NCSC and ICO challenge myths around reporting cyber attacks

Security

NCSC and ICO challenge myths around reporting cyber attacks

In a new joint blog post, the UK's National Cyber Security Centre (NCSC) and the Information Commissioner’s Office (ICO) have identified six misconceptions that can discourage organisations from reporting attacks - particularly ransomware attacks - and is setting out to dispel them.

Image copyright Shutterstock

The misconceptions include the mistaken belief that reporting cyber attacks to the authorities makes it more likely the incident will become public, and that paying a ransom automatically makes the incident go away.

With cyber attacks continuing to cause significant disruption, the NCSC and ICO are concerned about incidents which go unreported because every 'hushed up' case that isn't shared or fully investigated makes other attacks more likely as no one can learn from them.

Advertisement
ADS S &P RT

However, being open with the authorities will give victims access to expert support and advice and will be taken into account favourably by the ICO when considering their regulatory response.

The six ‘myths’ which the NCSC and the ICO have identified as commonly held by organisations that have fallen victim to cyber incidents are:

  • If I cover up the attack, everything will be ok
  • Reporting to the authorities makes it more likely your incident will go public
  • Paying a ransom makes the incident go away
  • I’ve got good offline backups, I won’t need to pay a ransom
  • If there is no evidence of data theft, you don’t need to report to the ICO
  • You’ll only get a fine if your data is leaked

Eleanor Fairford, NCSC Deputy Director for Incident Management, said: “The NCSC supports victims of cyber incidents every day, but we are increasingly concerned about the organisations that decide not to come forward.

“Keeping a cyber attack secret helps nobody except the perpetrators, so we strongly encourage victims to report incidents and seek support to help effectively deal with the fallout.

Advertisement
ADS S &P RT

“By responding openly and sharing information, organisations can help mitigate the risk to their operations and reputation, as well break the cycle of crime to prevent others from falling victim.”

 

 

 

Advertisement
Northrop Grumman 2 Northrop Grumman 2
Robosys Automation, ACUA Ocean and OREC secure Innovate UK funding

Security

Robosys Automation, ACUA Ocean and OREC secure Innovate UK funding

20 December 2024

Advanced maritime autonomy developer, Robosys Automation, supported by USV manufacturer, ACUA Ocean and Offshore Renewable Energy Catapult (OREC), have jointly secured grant funding through Innovate UK, for a specialist project exploring Collaborative Autonomy in USVs and ROVs across Maritime Autonomous Surface Ships (MASS) operations.

ACUA Ocean launches USV Pioneer

Security

ACUA Ocean launches USV Pioneer

18 December 2024

The UK-based autonomous unmanned surface vessel (USV) developer ACUA Ocean has successfully completed the test launch of the USV Pioneer from its base at Turnchapel Wharf in Plymouth.

ADS welcomes new VPs for Security and Defence

Defence Security

ADS welcomes new VPs for Security and Defence

17 December 2024

ADS Group - the UK trade association for aerospace, defence, security and space organisations (with over 1,400 members) - has welcomed Leonardo’s Clive Higgins as VP for Defence and PA Consulting's Dr Budgie Dhanda MBE as VP of Security and Resilience.

Darktrace named a Leader in 2024 IDC MarketScape for Worldwide NDR

Security

Darktrace named a Leader in 2024 IDC MarketScape for Worldwide NDR

16 December 2024

Darktrace has been recognised as a Leader in the IDC MarketScape: Worldwide Network Detection and Response (NDR) 2024 Vendor Assessment.

Advertisement
ODU RT 2
CLD appoints Trevor Donlin as Technical Director

Security

CLD appoints Trevor Donlin as Technical Director

16 December 2024

Cheshire headquartered CLD Physical Security Systems (CLD), a design led supplier of perimeter security solutions, has announced the appointment of Trevor Donlin as Technical Director, to head up its US operations.

Lloyd

Security

Lloyd's of London launches cyber insurance consortium with HITRUST certification

13 December 2024

An innovative cyber insurance consortium in collaboration with Lloyd's of London and backed by a network of globally recognised AA-rated insurers, has been unveiled by HITRUST, a provider of cybersecurity assurance.

Advertisement
ODU RT