10:45 AM

British Cyber Defenses Receive Unexpected Boost

British intelligence services and cybersecurity initiatives get increased investment, even amidst brutal government cuts.

Despite recent widespread concern over the reach of their powers, especially Internet monitoring, Britain's security services scored a financial victory Wednesday concerning the next few years of government spending: Britain's intelligence services left Chancellor George Osborne's 2013 Spending Review with a 3.4% boost in funding.

To put that in context, most British institutions saw reduced budgets, ranging from 10% for local government to 6% for Whitehall's business department. Even law enforcement had its funding crunched, with the Home Office's budget cut by 6%.

[ Information Commissioner's Office gives Google 35 days to purge personal data collected via Street View. Read Britain Orders Google To Delete Street View Data. ]

The extra money is intended for the security and intelligence agencies to achieve "key national security priorities, maintain core counter terrorist capabilities, and protect U.K. citizens and interests against terrorism threats."

Part of the funding will come in the form of extended support for cybersecurity, said to be a "the new frontier of defense -- and a priority for this government." Specifically, £210 million ($323 million) in the cross-government National Cyber Security Program (NCSP) will be invested in a broad range of projects across government to deliver the U.K.'s cyber security objectives, details of which have been promised later in the year.

Projects will be set up to protect U.K. interests in cyber space, making it harder for hostile states and criminals to target the country, and to raise business and public awareness of online threats, with a focus on how they can protect themselves and invest in the skills and standards needed to support a vibrant and internationally competitive U.K. cybersecurity sector.

The £210 million adds to the previously committed £650 million ($1 billion) funding for the NCSP. According to government sources, this money is generating significant benefit to the U.K. by increasing the capability to tackle cyber threats, turning cybersecurity into an economic opportunity and establishing the U.K. as a leader in this field.

Osborne has also called for an ongoing efficiencies package to enable Britain's intelligence and counter-intelligence agencies to operate more effectively and to encourage further collaboration between GCHQ, MI5 and MI6 as part of this process.

For the Chancellor, Britain's spies' work remains critical. He stated in his speech to Parliament Wednesday, "Silently, and often heroically, these fellow citizens protect us and our way of life."

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Current Issue
Dark Reading Tech Digest September 7, 2015
Some security flaws go beyond simple app vulnerabilities. Have you checked for these?
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
Published: 2015-10-02
Buffer overflow in Canary Labs Trend Web Server before 9.5.2 allows remote attackers to execute arbitrary code via a crafted TCP packet.

Published: 2015-10-02
Cisco NX-OS 6.0(2)U6(0.46) on N3K devices allows remote authenticated users to cause a denial of service (temporary SNMP outage) via an SNMP request for an OID that does not exist, aka Bug ID CSCuw36684.

Published: 2015-10-02
Cisco Email Security Appliance (ESA) 8.5.6-106 and 9.6.0-042 allows remote authenticated users to cause a denial of service (file-descriptor consumption and device reload) via crafted HTTP requests, aka Bug ID CSCuw32211.

Published: 2015-10-01
lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinement via a symlink attack on a (1) mount target or (2) bind mount source.

Published: 2015-10-01
kernel_crashdump in Apport before 2.19 allows local users to cause a denial of service (disk consumption) or possibly gain privileges via a (1) symlink or (2) hard link attack on /var/crash/vmcore.log.

Dark Reading Radio
Archived Dark Reading Radio
What can the information security industry do to solve the IoT security problem? Learn more and join the conversation on the next episode of Dark Reading Radio.