LIVE · cybersecurity feed
Live wire
cybersecurityhigh

NCSC CEO: Hostile states linked to three-quarters of cyber attacks affecting UK's critical systems

The CEO of the UK's National Cyber Security Centre stated that three-quarters of cyber threats targeting the nation's critical infrastructure originate from hostile state actors. This alarming statistic was revealed during a security lecture, underscoring the significant geopolitical dimension of cyber warfare.

zeroday.news · 45d ago

The head of the UK's National Cyber Security Centre (NCSC) has stated that approximately three-quarters of cyber attacks targeting the nation's critical infrastructure over the past year have been linked to hostile state actors. Dr. Richard Horne, CEO of the NCSC, revealed this figure during a speech at the Royal United Services Institute's (RUSI) Annual Security Lecture.

Dr. Horne indicated that the NCSC managed over 200 cyber incidents affecting critical national infrastructure and its supporting systems in the year leading up to May 2026. Of these, roughly 75% are believed to have originated from state-sponsored groups. He specifically mentioned Russia, China, and Iran as countries increasingly targeting the systems essential for UK services.

The NCSC CEO characterized the cyber landscape not as a contained risk to be managed, but as a continuous competition against sophisticated adversaries. He likened the ongoing cyber contest to a large-scale sporting event, such as football or basketball, emphasizing that success requires a comprehensive approach across all operational domains.

Dr. Horne urged all board members and executives to bolster their organizations' cyber resilience. He outlined three key areas for improvement: understanding their exposure to threats, implementing robust defenses based on fundamental security principles, and ensuring the ability to maintain operations and recover swiftly after an attack.

He noted that many significant cyber incidents still occur due to a lack of foundational security measures. Dr. Horne stressed that the cyber contest is not limited to specific professionals but involves everyone, from boardrooms to home users, and that collective engagement and a sense of urgency are crucial for prevailing.

Looking ahead, Dr. Horne warned that vulnerabilities tolerated today will likely be exploited in future conflicts. He suggested that the UK is, to some extent, already engaged in these future conflicts due to the current state of cybersecurity preparedness.

The NCSC CEO also highlighted the accelerating threat posed by advancements in artificial intelligence. The NCSC anticipates that by 2028, AI-enabled cyber capabilities will be used by attackers to exploit known vulnerabilities in legacy technology at scale, particularly within critical national infrastructure. The NCSC has provided resources to help organizations prepare for AI-powered attacks by strengthening their fundamental cybersecurity.

cybersecurityespionagecritical infrastructurenation-state attacksuk
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes

An attacker drained 1,196 Bitcoin addresses in 41 minutes on July 30, taking 1,082.65 BTC worth about $70.2 million at the time. Galaxy Research mapped the sweep and tied it to a firmware flaw in Coldcard, the Bitcoin-only hardware wallet made by Canadian firm Coinkite. A March 2021 firmware integration error routed seed generation to a deterministic software pseudorandom number generator (PRNG

vulnerabilitycritical

Rails patches critical Active Storage flaw with RCE potential

A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE). [...]

malware

Russian Hackers Hijack Hotel Wi-Fi to Steal Microsoft 365 Tokens

Microsoft says Russian hackers hijacked hotel Wi-Fi portals to spread malware and steal Microsoft 365 tokens from travelers. Microsoft Threat Intelligence disclosed CaptiveCrunch, a campaign it attributes to Storm-2945, an operational sub-cluster of Midnight Blizzard, the Russian SVR-linked group also known as APT29 and Cozy Bear. Since early May 2026, Storm-2945 has been manipulating DNS […]

CVE-2026-48449critical

Adobe fixed a maximum-severity vulnerability flaw in Campaign Classic

Adobe fixed a maximum severity vulnerability in Campaign Classic that could let attackers run code remotely without user interaction. Adobe has addressed a critical vulnerability, tracked as CVE-2026-48449 (CVSS score of 10.0), in Adobe Campaign Classic, the company’s enterprise marketing automation platform. The flaw is caused by incorrect authorization and could allow attackers to execute […]

security

Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments

The funding round was led by SYN Ventures, with participation from existing investors DataTribe and TEDCO. The post Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments appeared first on SecurityWeek.

vulnerabilitycritical

Ruby on Rails Patches Critical Vulnerability

The flaw can be exploited by unauthenticated attackers to read arbitrary files and potentially achieve remote code execution (RCE). The post Ruby on Rails Patches Critical Vulnerability appeared first on SecurityWeek.