Particle.news

Download on the App Store

UK to Outlaw Ransom Payments by Public Sector Bodies

The plan seeks to undercut criminal profits by forcing businesses to seek government guidance before making any ransom payments

Officers from the National Crime Agency arrive at a property of a man who is accused of being a member of a group arranging small boat crossings and HGV journeys for migrants, in Grays , Essex. (Photo by Aaron Chown/PA Images via Getty Images)
Clouds hang above the Houses of Parliament in central London, Britain, June 24, 2017. REUTERS/Marko Djurica/File Photo
Image
A man under an umbrella looks at the Houses of Parliament and Big Ben in Westminster, London

Overview

  • Home Office proposals would bar the NHS, local councils, schools and other state-funded entities from paying ransom demands.
  • Private organizations must notify government agencies before paying any ransom demands to receive advice and avoid funding sanctioned criminal groups.
  • A mandatory incident-reporting regime would require all ransomware victims to disclose breaches to law enforcement and intelligence services.
  • Companies that flout notification rules or pay sanctioned groups could face fines of up to £1 million or half the breach’s value.
  • Nearly 75 percent of respondents to a January public consultation backed the measures, which build on lessons from WannaCry in 2017 and recent attacks on retail and library systems.