{"id":198520,"date":"2025-10-14T03:20:04","date_gmt":"2025-10-14T03:20:04","guid":{"rendered":"https:\/\/www.newsbeep.com\/uk\/198520\/"},"modified":"2025-10-14T03:20:04","modified_gmt":"2025-10-14T03:20:04","slug":"have-plans-on-paper-in-case-of-cyber-attack-firms-told","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/uk\/198520\/","title":{"rendered":"Have plans on paper in case of cyber-attack, firms told"},"content":{"rendered":"<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Criminal hacks on Marks and Spencer, The Co-op and Jaguar Land Rover have led to empty shelves and production lines being halted this year as the companies struggled without their computer systems.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Organisations need to &#8220;have a plan for how they would continue to operate without their IT, (and rebuild that IT at pace), were an attack to get through,&#8221; said Richard Horne, chief executive of the NSCS.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Firms are being urged to look beyond cyber-security controls toward a strategy known as &#8220;resilience engineering&#8221;, which focuses on building systems that can anticipate, absorb, recover, and adapt, in the event of an attack.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Preferably the plans should be in paper form or stored offline, the agency suggests.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Although the total number of hacks that the NCSC dealt with in the first nine months of this year was, at 429, roughly the same as for a similar period last year, there was an increase in hacks with a bigger impact.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">The number of &#8220;nationally significant&#8221; incidents represented nearly half, or 204, of all incidents. Last year only 89 were in that category.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">A nationally significant incident covers cyber-attacks in the three highest categories in the NCSC and UK law enforcement <a href=\"https:\/\/www.ncsc.gov.uk\/information\/categorising-uk-cyber-incidents\" class=\"ssrcss-f6h2dj-InlineLink e1kn3p7n0\" rel=\"nofollow noopener\" target=\"_blank\">categorisation model, external<\/a>:<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Category 1: National cyber-emergency.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Category 2: Highly significant incident.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Category 3: Significant incident.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Category 4: Substantial incident.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Category 5: Moderate incident.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Category 6: Localised incident.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Amongst this year&#8217;s incidents, 4% (18) were in the second highest category &#8220;highly significant&#8221;.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">This marks a 50% increase in such incidents, an increase for the third consecutive year.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">The NCSC would not give details on which attacks, either public or undisclosed, fall into which category.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">But, as a benchmark, it is understood that the wave of attacks on UK retailers in the spring, which affected Marks and Spencer, The Co-op and Harrods, would be classed as a significant incidents.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">One of the most serious attacks last year, on a blood testing provider, caused major problems for London hospitals. It resulted in significant clinical disruption and directly contributed to at least one patient death. <\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">The NCSC would not say which category this incident would fall into.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">The vast majority of attacks are financially motivated with criminal gangs using ransomware or data extortion to blackmail a victim into sending Bitcoins in ransom.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Whilst most cyber-crime gangs are headquartered in Russian or former Soviet countries, there has been a resurgence in teenage hacking gangs thought to be based in English-speaking countries. <\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">So far this year seven teenagers have been arrested in the UK as part of investigations into major cyber-attacks. <\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">As well as the advice over heightened preparations and collaboration, the government is asking organisations to make better use of the free tools and services offered by the NCSC, for example free cyber-insurance for small businesses that have completed the popular Cyber-Essentials programme.<\/p>\n","protected":false},"excerpt":{"rendered":"Criminal hacks on Marks and Spencer, The Co-op and Jaguar Land Rover have led to empty shelves and&hellip;\n","protected":false},"author":2,"featured_media":198521,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[49,50,51,47,52,48],"class_list":{"0":"post-198520","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-headlines","8":"tag-headlines","9":"tag-news","10":"tag-top-news","11":"tag-top-stories","12":"tag-topnews","13":"tag-topstories"},"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/posts\/198520","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/comments?post=198520"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/posts\/198520\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/media\/198521"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/media?parent=198520"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/categories?post=198520"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/uk\/wp-json\/wp\/v2\/tags?post=198520"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}