Get all your news in one place.
100’s of premium titles.
One app.
Start reading
The Independent UK
The Independent UK
Anthony Cuthbertson

UK hit with ‘completely unacceptable’ cyber attacks, says security minister

Empty shelves in a branch of the Co-op following a cyber attack (PA) - (PA Wire)

UK Security Minister Dan Jarvis said the UK faces a “very significant” volume of cyber attacks every year, and hopes that new laws will work to deter hackers.

His comments follow several high-profile ransomware attacks on UK businesses, which have caused massive disruption for customers and resulted in millions of pounds worth of losses.

Mr Jarvis said the new measures would send a signal to cyber criminals that ransom demands will not be tolerated.

Proposals from the Home Office would ban public sector bodies and operators of critical national infrastructure from paying hackers.

It would also mean private sector companies not covered by the ban would be required to notify the Government if they intended to pay a ransom.

“The UK is not alone in this regard, along with our international allies, we are subjected to a very significant number of cyber attacks every year,” Mr Jarvis told the PA news agency.

“But from a UK Government perspective we are crystal clear that these attacks are completely unacceptable. There’s more that we need to do to guard against them and that’s why we’re introducing these measures.”

Security minister Dan Jarvis warned about the number of cyber attacks the UK faces (PA Wire)

Mr Jarvis said the measures mean cyber criminals will be “less incentivised” to target UK institutions because of the clarity the ban on ransom payments brings.

“We think these proposals will provide a powerful deterrent, and what we’re wanting to do is break the business model of the cyber criminals who think that they can get away with extorting money from UK-based institutions,” he told PA.

He stressed the Government would ensure “cyber criminals, whether they’re in Russia or wherever they might be, face the full weight of the UK law”.

Ransomware refers to software used by cyber criminals to access the computer systems of its victims, which can then be encrypted or data stolen until a ransom is paid.

It comes after four young people were arrested for their suspected involvement in damaging cyber attacks against Marks & Spencer, the Co-op and Harrods in recent months.

Microsoft also said on Tuesday night that Chinese hackers had breached its SharePoint document software servers in a bid to target major corporations and government agencies.

The chairman of M&S said UK businesses should be legally required to report major cyber attacks (James Manning/PA)

Furthermore, under the proposals, a mandatory reporting regime would mean companies and institutions that are targeted by ransomware attacks are required to report it.

Mr Jarvis said the Government was going to “look very carefully at the precise details” of the regime but that it would provide more clarity and intelligence to government agencies.

M&S chairman Archie Norman told MPs earlier this month that UK businesses should be legally required to report major cyber attacks as he claimed two recent hacks involving “large British companies” had gone unreported.

Mr Norman said the retailer believed an Asia-based ransomware operation, DragonForce, had been involved in the attack – but refused to say whether or not a ransom was paid.

Additional reporting from agencies.

Sign up to read this article
Read news from 100’s of titles, curated specifically for you.
Already a member? Sign in here
Related Stories
Top stories on inkl right now
One subscription that gives you access to news from hundreds of sites
Already a member? Sign in here
Our Picks
Fourteen days free
Download the app
One app. One membership.
100+ trusted global sources.