Phishing attacks are becoming more sophisticated, but so are our defences. 🛡️
The NCSC’s latest guidance emphasises the importance of a multi-layered approach to thwart phishing attempts and protect your organisation's sensitive data.
ncsc.gov.uk/guidance/phishin…
Received an email which you’re not quite sure about? Is it asking you to login to your account, or maybe to "confirm" your payment details?
If you are suspicious, you should report it by forwarding the email to: Report@phishing.gov.uk #CyberProtect
📱 Keep your online devices safe with our guidance on device security for small businesses 🛡️
Our advice covers best practice for securing smartphones, tablets, and computers ⤵️
ncsc.gov.uk/collection/devic…
Hook, line and sinker! 🎣
Do you know how to identify a scam email, text message or website?
Find out how to spot a phishing attempt and how to report it with the @NCSC
➡️ ncsc.gov.uk/collection/phish…
ALT A laptop with a number of scams taking place around it
Ransomware (up 7%) became our most reported cyber security incident in 2022-2023.
Last year we reminded @TheLawSociety members that they should NOT advise clients to pay ransomware demands should they experience a cyber attack.
Read our letter in full: ico.org.uk/about-the-ico/med…
NEW: We have issued a statement on the Capita incident.
ALT Capita has reported an incident to us and we are assessing the information provided.
"Other organisations who are affected should also consider their position and report data breaches where necessary. Organisations must notify the ICO within 72 hours of becoming aware of a personal data breach, unless it does not pose a risk to people’s rights and freedoms.
"If an organisation decides that a breach doesn’t need to be reported they should keep their own record of it, and be able to explain why it wasn’t reported if necessary."
There's been a lot of discussion and claims about our test of the Emergency Alerts 🚨📱system on Sunday at 3pm. Here's some important information you need to know 👇
We strongly encourage organisations to ensure the latest security updates are applied to their routers and to follow our mitigation advice.
ncsc.gov.uk/news/apt28-explo…
🚨 Today, on the eve of #CYBERUK23, the UK and US have issued a joint advisory to help organisations counter malicious activity used by Russian cyber actors to exploit poorly maintained Cisco routers 🚨
ncsc.gov.uk/news/uk-and-us-i…
NEW: We have issued NHS Highland with a reprimand for a serious data breach involving people accessing HIV services: ico.org.uk/about-the-ico/med…
ALT “What we saw here with NHS Highland was a serious breach of trust, and those accessing vital services failed.
“Every HIV service provider in the country should look at this case and see it as a crucial learning experience. We are calling on organisations to raise their data protection standards and put the appropriate measures in place to keep people safe.”
Stephen Bonner - Deputy Commissioner Regulatory Service
⚠️ALERT: Criminals are targeting WhatsApp users by posing as a friend and asking for a security code.
❌Never share your WhatsApp activation code with anyone.
Read the full alert here: actionfraud.police.uk/alert/…
ALT ALERT: Criminals are targeting WhatsApp users by posing as a friend and asking for a security code.
Never share your WhatsApp activation code with anyone.
Read the full alert here:
https://www.actionfraud.police.uk/alert/warning-issued-to-whatsapp-users-over-account-takeover-scam
John Edwards, Information Commissioner, on the reintroduction of the Data Protection & Digital Information Bill to Parliament on 08 March, and how our #ICO25 strategy will benefit the people and organisations of the UK.
Read his full IAPP speech: ico.org.uk/about-the-ico/med…
NEW: We’ve published the fourth UK GDPR certification scheme. ‘“Provision of Training and Qualifications Services’” is aimed at training and qualification service providers.
Learn more about the scheme and our wider work on certification: ico.org.uk/about-the-ico/med…
ALT In an era where trust and accountability are paramount, these schemes are a way of reassuring your customers, clients and suppliers that you hold additional expertise in a given area, are committed to building data privacy into your work and adhere to strong standards - Emily Keaney, Deputy Commissioner.
#IASMECyberAssurance is available in 2 levels:
👉 IASME Cyber Assurance Level 1 is risk based & includes key aspects of #security.
👉 IASME Cyber Assurance Level 2 involves an independent #audit of your processes, procedures & controls.
Find out more ➡️ iasme.co.uk/iasme-cyber-assu…