UK National Cyber Security Centre.
UK National Cyber Security Centre Feed This includes feeds from report, guidance and blog-post
- Water sector example added to the NCSC’s Secure connectivity principleson August 11, 2026 at 12:00 pm
New guidance is the first content authored by the Industrial Control System COI to appear on ncsc.gov.uk.
- NCSC statement in response to recent incidents resulting from frontier AI evaluationson August 4, 2026 at 12:00 pm
A statement from Ollie Whitehouse, Chief Technology Officer at the NCSC, on AI security following recent incidents.
- Making forensic observability the norm for network deviceson July 29, 2026 at 12:00 pm
Progress is being made, but too many network devices still remain difficult to investigate after compromise
- When cyber attacks happen: helping organisations recoveron July 28, 2026 at 12:00 pm
A highly disruptive incident can feel overwhelming. New guidance provides a framework for response and recovery.
- UK and partners expose Russian state-supported actors for new ‘zero-click’ phishing campaign targeting Western organisationson July 23, 2026 at 12:00 pm
GCHQ’s National Cyber Security Centre and international partners issue warning as ‘LAUNDRY BEAR’ cyber threat group exposed for targeted phishing campaign
- Post-quantum cryptography (PQC) migration workshop reporton July 22, 2026 at 12:00 pm
No organisation can navigate the migration alone; key takeaways from our first PQC migration workshop.
- Helping small businesses with free, hands-on cyber consultancyon July 15, 2026 at 12:00 pm
Cyber Advisors are offering free 30-minute consultations to help small businesses get started with cyber security.
- UK and Allies urge critical sectors to improve defences against Russian intelligence targetingon July 13, 2026 at 12:00 pm
New advisory highlights Russian state cyber actors’ global exploitation of poorly configured routers
- Cyber Essentials Pathways: from proof of concept to cyber confidenceon July 9, 2026 at 12:00 pm
An alternative path to Cyber Essentials Plus certification, without compromising the integrity of the scheme.
- Cyber Shield: The path to an agentic AI future for cyber defenceon July 7, 2026 at 12:00 pm
Why the UK is pioneering an initiative to develop a national scale, sovereign defence capability
- Building more resilient CNI: what industry pen testers told uson July 1, 2026 at 12:00 pm
Pen testers suggest what organisations can do to make their job more difficult.
- The AI shift in cyber risk: why leaders must act nowon June 22, 2026 at 12:00 pm
Five Eyes cyber security agencies urge organisations to act on rapidly transforming cyber risk.
- Alert: NCSC issues advice following global targeting of Fortinet firewalls and VPN gatewayson June 18, 2026 at 12:00 pm
Organisations using Fortinet services are being urged to take action following a campaign affecting firewalls and VPN gateways.
- The ‘vibe coding spectrum’ approach to AI-assisted software developmenton June 18, 2026 at 12:00 pm
Different code deserves different levels of oversight, so calibrate your approach to ‘vibe coding’ accordingly.
- NCSC CEO: Hostile states linked to three-quarters of cyber attacks affecting UK’s critical systemson June 17, 2026 at 12:00 pm
Dr Richard Horne highlighted the scale of cyber threats against the UK’s critical infrastructure at RUSI’s Annual Security Lecture.
- Software supply chain attacks: check your dependencieson June 4, 2026 at 12:00 pm
Attackers are compromising open-source packages to spread malware. Cyber defenders are asked to review dependencies to reduce risks
- Designing secure access with ZTNAon May 27, 2026 at 12:00 pm
New guidance explains how to design Zero Trust Network Access architectures aligned with zero trust principles and not built on old trust assumptions.
- Thinking carefully before adopting agentic AIon May 15, 2026 at 12:00 pm
When it comes to using agentic AI, make sure you can walk before you run.
- 10 questions to ask when using AI models to find vulnerabilitieson May 11, 2026 at 12:00 pm
Using Artificial Intelligence to find vulnerabilities can bring added security considerations.
- Preparing for a ‘vulnerability patch wave’on May 1, 2026 at 12:00 pm
Organisations must act now to prepare for a wave of patches that will address decades of technical debt.






