The problems with forcing regular password expiry NCSC Feed 3 weeks 1 day ago Why the NCSC decided to advise against this long-established security guideline.
The logic behind three random words NCSC Feed 3 weeks 1 day ago Whilst not a password panacea, using 'three random words' is still better than enforcing arbitrary complexity requirements.
The future of Technology Assurance in the UK NCSC Feed 3 weeks 1 day ago Chris Ensor highlights some important elements of the NCSC's new Technology Assurance strategy.
The Cyber Assessment Framework 3.1 NCSC Feed 3 weeks 1 day ago Latest version of the CAF focusses on clarification and consistency between areas of the CAF.
Thanking the vulnerability research community with NCSC Challenge Coins NCSC Feed 3 weeks 1 day ago Reflecting on the positive impact of the Vulnerability Reporting Service – and introducing something new for selected contributors.
Terminology: it's not black and white NCSC Feed 3 weeks 1 day ago The NCSC now uses 'allow list' and 'deny list' in place of 'whitelist' and 'blacklist'. Emma W explains why...
Telling users to ‘avoid clicking bad links’ still isn’t working NCSC Feed 3 weeks 1 day ago Why organisations should avoid ‘blame and fear’, and instead use technical measures to manage the threat from phishing.
Tackling the 'human factor' to transform cyber security behaviours NCSC Feed 3 weeks 1 day ago ThinkCyber's CEO Tim Ward reflects on the challenges that startups face when developing innovative products.
Supplier assurance: having confidence in your suppliers NCSC Feed 3 weeks 1 day ago Questions to ask your suppliers that will help you gain confidence in their cyber security.
Studies in secure system design NCSC Feed 3 weeks 1 day ago Worked examples for Operational Technology and Virtualised systems, using the NCSC’s secure design principles
Spotlight on shadow IT NCSC Feed 3 weeks 1 day ago New guidance to help organisations manage rogue devices and services within the enterprise.
Smart devices: new law helps citizens to choose secure products NCSC Feed 3 weeks 1 day ago Download the NCSC’s point-of-sale leaflet explaining how new PSTI regulation affects consumers and retailers.
SCADA 'in the cloud': new guidance for OT organisations NCSC Feed 3 weeks 1 day ago If migrating SCADA solutions to the cloud, cyber security must be a key consideration for operational technology organisations.
SBOMs and the importance of inventory NCSC Feed 3 weeks 1 day ago Can a Software Bill of Materials (SBOM) provide organisations with better insight into their supply chains?
RITICS: Securing cyber-physical systems NCSC Feed 3 weeks 1 day ago Discover the Research Institute in Trustworthy Inter-connected Cyber-physical Systems.
Revolutionising identity services using AI NCSC Feed 3 weeks 1 day ago The ‘NCSC for Startups’ alumnus giving identity verification the 'Trust Stamp'
Researching the hard problems in hardware security NCSC Feed 3 weeks 1 day ago Introducing the next chapter of the NCSC research problem book, which aims to inspire research on the biggest impact topics in hardware cyber security.
Relaunching the NCSC's Cloud security guidance collection NCSC Feed 3 weeks 1 day ago Andrew A explains what's new in a significant update to the NCSC's flagship cloud guidance.
Refreshed 'cyber security toolkit' helps board members to govern online risk NCSC Feed 3 weeks 1 day ago Lindy Cameron, CEO, introduces changes to the NCSC’s cyber security resources specifically designed for board members.
Ransomware and the cyber crime ecosystem NCSC Feed 3 weeks 1 day ago A new white paper examines the rise of 'ransomware as a service' and extortion attacks.