Proposals aim to protect UK infrastructure from ransomware

14 January 2025, 00:04

A woman's hand pressing the keys of a laptop keyboard
NHS cyber attacks. Picture: PA

The Home Office is to consult on new ways to protect the public sector and others from ransomware attacks.

All public sector bodies and critical national infrastructure could be banned from making ransomware payments under new Government proposals designed to combat the cyber crime.

A Home Office consultation is being launched that will consider expanding the existing ban on government departments making such payments, which are often demanded by cybercriminals to unlock or return files they have accessed after breaking into a computer system.

The proposals also include a ransomware payment prevention regime, designed to increase the National Crime Agency’s awareness of live attacks and block payments to known criminal groups and sanctioned entities, as well as plans to make it mandatory to report ransomware incidents to boost the intelligence available to law enforcement.

These proposals help us meet the scale of the ransomware threat, hitting these criminal networks in their wallets and cutting off the key financial pipeline they rely upon to operate

Dan Jarvis, security minister

The Home Office said it believed the introduction of the new scheme would help make national infrastructure and public sector bodies such as the NHS, local councils and schools less appealing targets to criminal gangs.

Recent cyber attacks have included a key supplier to London Hospitals and Royal Mail, with devastating impacts on the public.

Security minister Dan Jarvis said: “Driving down cyber crime is central to this Government’s missions to reduce crime, deliver growth, and keep the British people safe.

“With an estimated one billion dollars flowing to ransomware criminals globally in 2023, it is vital we act to protect national security as a key foundation upon which this Government’s Plan for Change is built.

“These proposals help us meet the scale of the ransomware threat, hitting these criminal networks in their wallets and cutting off the key financial pipeline they rely upon to operate.

“Today marks the beginning of a vital step forward to protect the UK economy and keep businesses and jobs safe.”

The UK’s National Cyber Security Centre (NCSC) has previously highlighted ransomware as one of the biggest cyber threats facing the country.

Organisations need to make sure they have tested plans to continue their operations in the extended absence of IT should an attack be successful, and have a tested plan to rebuild their systems from backups

Richard Horne, National Cyber Security Centre

NCSC chief executive Richard Horne said: “This consultation marks a vital step in our efforts to protect the UK from the crippling effects of ransomware attacks and the associated economic and societal costs.

“Organisations of all sizes need to build their defences against cyber attacks such as ransomware, and our website contains a wealth of advice tailored to different organisations.

“In addition, using proven frameworks like Cyber Essentials, and free services like NCSC’s Early Warning, will help to strengthen their overall security posture.

“And organisations across the country need to strengthen their ability to continue operations in the face of the disruption caused by successful ransomware attacks.

“This isn’t just about having backups in place: organisations need to make sure they have tested plans to continue their operations in the extended absence of IT should an attack be successful, and have a tested plan to rebuild their systems from backups.”

Deputy Director Paul Foster, head of the NCA’s National Cyber Crime Unit, said: “Ransomware is the most significant cybercrime threat facing the UK and the world, with attacks costing millions in terms of losses and recovery.”

He added: “Last year the NCA led an international investigation tackling LockBit ransomware – previously the most damaging ransomware strain in the world, accounting for around a quarter of all attacks.

“We infiltrated LockBit’s technical infrastructure, resulting in arrests, sanctioning of criminals and revealing the mastermind behind it. We also accessed vast amounts of data held by LockBit, including decryption keys that enabled victims to unlock their systems.

“We look forward to engaging with this process and supporting efforts to further improve the UK’s cyber security.”

By Press Association

More Technology News

See more More Technology News

23andMe fined millions by watchdog after ‘profoundly damaging’ cyber attack exposing genetic data

23andMe fined millions by watchdog after ‘profoundly damaging’ cyber attack exposing genetic data

The 23andMe Holding Co logo is displayed on a smartphone

DNA testing firm 23andMe fined £2.31m for ‘serious security failings’

Scotland 2050 conference

‘Destructive’ social media will transform politics ‘for a generation’ – Forbes

View of Centre Court full of spectators watching a game at Wimbledon All England Lawn Tennis Club Championships. Wimbledon.

Wimbledon adopts AI for 2025 Championships with All England club introducing in-match analysis

Th new feature that lets you and a friend pair up and match with other pairs

Tinder launches 'double date' feature in bid to attract 'low pressure' Gen Z

An avocado bathroom suite built in the 70's.

Young homeowners ‘favour avocado bathrooms, relaxation zones and panelled walls’

Meta to introduce ads on WhatsApp as US tech giant reverses ‘no ads’ stance on world’s most popular messaging app

Meta to introduce ads on WhatsApp as US tech giant reverses ‘no ads’ stance on world’s most popular messaging app

Captain Cook's legendary ship has been discovered

Mystery of Captain Cook's lost ship solved after 250 years as scientists discover exact location of the HMS Endeavour

The ancient lost world was discovered in East Antarctica.

Lost world unearthed beneath Antarctica ice after 34 million years

Taoiseach Micheal Martin, Northern Ireland First Minister Michelle O’Neill and deputy First Minister Emma Little-Pengelly during the British-Irish Council (BIC) summit at the Slieve Donard resort in C

Leaders share healthcare and efficiency hopes for AI at British-Irish Council

Three and Vodafone

VodafoneThree promises better coverage at ‘no extra cost’ within months

The Khankhuuluu species weighed 750 kilograms, about the size of a horse

Newly discovered ‘Dragon Prince’ dinosaur rewrites history of T.rex

Aviation technology company Sita said 33.4 million bags were mishandled in 2024, compared with 33.8 million during the previous year.

Airlines lose fewer bags as tracking tech takes off as bosses say passengers expect similar service to a 'delivery app'

Social media app icons displayed on an Apple iPhone

Social media giants can ‘get on’ and tackle fraud cases, says City watchdog

Experts have warned about the risks posed by period tracking apps (Alamy/PA)

Experts warn of risks linked to period tracker apps

Data (Use and Access) Bill

Lords’ objections to Data Bill over copyright threatens its existence – minister