⚠️ UK cyber debate heats up: Should insecure software vendors be punished? YES 🏛️💥

At CYBERUK 2025, NCSC CTO Ollie Whitehouse argued vendors must face real costs for shipping insecure products, likening software to “food labelling” standards. Industry leaders from Vodafone, Mandiant, Sage, and Canada’s Cyber Centre countered that a functional market and customer choices already reward security investments.

🎯 NCSC’s view:
🛠️ Impose penalties for poor security to incentivize best practices
📜 Publish and ratify a Software Security Code of Practice

🎯 Industry’s view:
🤝 Trust customers to abandon sub-par vendors
🔍 Focus on clear guidance and robust procurement criteria

The core question remains: Will regulation or market forces deliver safer software? Market forces have failed us thus far.

#CyberSecurity #SoftwareSecurity #Governance #CYBERUK #NCSC #security #privacy #cloud #infosec
https://www.theregister.com/2025/05/12/uks_cyber_agency_and_industry/

Britain's cyber agents and industry clash over how to tackle shoddy software

CYBERUK: Providers argue that if end users prioritized security, they'd get it

The Register
The U.K. government is set to replace SMS-based verification systems for digital services this year with passkeys, stored on users' phones, to shore up cyber defenses.
https://www.databreachtoday.com/uk-government-to-roll-out-passkeys-late-this-year-a-28348 #cyberuk
Proliferation of artificial intelligence-enabled technology will widen access to offensive tools by nation-state groups and other hackers, with critical infrastructure a top a prime target, British cybersecurity official warns.
https://www.databreachtoday.com/uk-warns-ai-based-attacks-against-critical-infrastructure-a-28341 #cyberuk

At #CyberUK this morning, they were demonstrating ingress filtering and anomaly detection, implemented as shown below.

#dogs

Hacks of UK retailers are a 'wake-up call,' minister says at this week's CyberUK conference in Manchester
https://www.databreachtoday.com/hacks-uk-retailers-are-wake-up-call-minister-says-a-28332 #cyberuk
About to hear about a passwordless future… #CyberUK #CyberUK25 in Manchester!
A drinks reception where nobody can talk. Sad at #cyberuk.
@dannyjpalmer I think better to use. #cyberuk than #CyberUK25 or #cyberuk2025.
@Infosecjen oh. That would have been fun. Sad I missed it.#cyberuk

Hack the planet !!!

#cyberuk #cyberuk25