Risk

6/26/2013
10:45 AM
50%
50%

British Cyber Defenses Receive Unexpected Boost

British intelligence services and cybersecurity initiatives get increased investment, even amidst brutal government cuts.

Despite recent widespread concern over the reach of their powers, especially Internet monitoring, Britain's security services scored a financial victory Wednesday concerning the next few years of government spending: Britain's intelligence services left Chancellor George Osborne's 2013 Spending Review with a 3.4% boost in funding.

To put that in context, most British institutions saw reduced budgets, ranging from 10% for local government to 6% for Whitehall's business department. Even law enforcement had its funding crunched, with the Home Office's budget cut by 6%.

[ Information Commissioner's Office gives Google 35 days to purge personal data collected via Street View. Read Britain Orders Google To Delete Street View Data. ]

The extra money is intended for the security and intelligence agencies to achieve "key national security priorities, maintain core counter terrorist capabilities, and protect U.K. citizens and interests against terrorism threats."

Part of the funding will come in the form of extended support for cybersecurity, said to be a "the new frontier of defense -- and a priority for this government." Specifically, £210 million ($323 million) in the cross-government National Cyber Security Program (NCSP) will be invested in a broad range of projects across government to deliver the U.K.'s cyber security objectives, details of which have been promised later in the year.

Projects will be set up to protect U.K. interests in cyber space, making it harder for hostile states and criminals to target the country, and to raise business and public awareness of online threats, with a focus on how they can protect themselves and invest in the skills and standards needed to support a vibrant and internationally competitive U.K. cybersecurity sector.

The £210 million adds to the previously committed £650 million ($1 billion) funding for the NCSP. According to government sources, this money is generating significant benefit to the U.K. by increasing the capability to tackle cyber threats, turning cybersecurity into an economic opportunity and establishing the U.K. as a leader in this field.

Osborne has also called for an ongoing efficiencies package to enable Britain's intelligence and counter-intelligence agencies to operate more effectively and to encourage further collaboration between GCHQ, MI5 and MI6 as part of this process.

For the Chancellor, Britain's spies' work remains critical. He stated in his speech to Parliament Wednesday, "Silently, and often heroically, these fellow citizens protect us and our way of life."

Comment  | 
Print  | 
More Insights
Comments
Oldest First  |  Newest First  |  Threaded View
Register for Dark Reading Newsletters
Dark Reading Live EVENTS
INsecurity - For the Defenders of Enterprise Security
A Dark Reading Conference
While red team conferences focus primarily on new vulnerabilities and security researchers, INsecurity puts security execution, protection, and operations center stage. The primary speakers will be CISOs and leaders in security defense; the blue team will be the focus.
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: No, no, no! Have a Unix CRON do the pop-up reminders!
Current Issue
Security Vulnerabilities: The Next Wave
Just when you thought it was safe, researchers have unveiled a new round of IT security flaws. Is your enterprise ready?
Flash Poll
[Strategic Security Report] How Enterprises Are Attacking the IT Security Problem
[Strategic Security Report] How Enterprises Are Attacking the IT Security Problem
Enterprises are spending more of their IT budgets on cybersecurity technology. How do your organization's security plans and strategies compare to what others are doing? Here's an in-depth look.
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2017-0290
Published: 2017-05-09
NScript in mpengine in Microsoft Malware Protection Engine with Engine Version before 1.1.13704.0, as used in Windows Defender and other products, allows remote attackers to execute arbitrary code or cause a denial of service (type confusion and application crash) via crafted JavaScript code within ...

CVE-2016-10369
Published: 2017-05-08
unixsocket.c in lxterminal through 0.3.0 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (preventing terminal launch), or possibly have other impact (bypassing terminal access control).

CVE-2016-8202
Published: 2017-05-08
A privilege escalation vulnerability in Brocade Fibre Channel SAN products running Brocade Fabric OS (FOS) releases earlier than v7.4.1d and v8.0.1b could allow an authenticated attacker to elevate the privileges of user accounts accessing the system via command line interface. With affected version...

CVE-2016-8209
Published: 2017-05-08
Improper checks for unusual or exceptional conditions in Brocade NetIron 05.8.00 and later releases up to and including 06.1.00, when the Management Module is continuously scanned on port 22, may allow attackers to cause a denial of service (crash and reload) of the management module.

CVE-2017-0890
Published: 2017-05-08
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module. To be exploitable a user has to write or paste malicious content into the search dialogue.