UK faces surge in major cyber attacks, NCSC warns

John E. Kaye
- Published
- News

The UK’s cyber threat level has reached unprecedented intensity, with the National Cyber Security Centre reporting 204 “nationally significant” incidents in the past year — the equivalent of four major attacks every week
Britain is now facing an average of four “nationally significant” cyber incidents every week, according to new figures from the National Cyber Security Centre (NCSC).
In its latest annual review, the agency said it handled 204 major incidents in the 12 months to September 2025, more than double the 89 recorded the previous year, underscoring what it described as an “alarming” escalation in both scale and severity.
The NCSC defines “nationally significant” incidents as those with the potential to disrupt critical services, compromise sensitive data, or affect large sections of the public or economy. Officials said the trend reflected the increasing sophistication and persistence of threat actors targeting UK networks.
Dr Richard Horne, Chief Executive of the NCSC, said: “Cyber security is now a matter of business survival and national resilience. With over half the incidents handled by the NCSC deemed nationally significant, our collective exposure to serious impacts is growing at an alarming pace.”
Industry experts said the findings should prompt a step change in how organisations approach security.
Tim Hemsley, DFIR Operations Director at cyber firm Zensec, said: “The NCSC’s data underlines what we’re seeing across our client base — a steady escalation in both the frequency and impact of serious cyber incidents. Threat actors are adapting faster than many organisations’ defences. The key isn’t just to prevent attacks, but to build operational resilience so that when — not if — a breach occurs, the organisation can absorb the shock and continue operating.”
Zensec said the data showed that disruption is now a probability rather than a risk, urging firms to treat cyber resilience as a board-level issue. The company advised that governance, investment, and preparedness — including incident simulation — should form part of every organisation’s core strategy.
The NCSC’s findings come amid heightened concern over the security of public infrastructure and private-sector supply chains, with officials warning that both state-sponsored and criminal groups are targeting UK institutions more aggressively.
According to Zensec, “cyber resilience is now a business imperative” and must be embedded across every layer of corporate governance as Britain adapts to what the NCSC describes as an “unprecedented” threat environment.
READ MORE: ‘ISF warns of a ‘corporate model’ of cybercrime as criminals outpace business defences‘. Cybercrime has matured into an industry that mirrors legitimate enterprise, complete with supply chains and customer service. The industrialisation of hacking, amplified by artificial intelligence, demands a total rethink of how organisations manage people, technology and risk, warns Steve Durbin of the Information Security Forum.
Do you have news to share or expertise to contribute? The European welcomes insights from business leaders and sector specialists. Get in touch with our editorial team to find out more.
Sign up to The European Newsletter
RECENT ARTICLES
-
UK faces surge in major cyber attacks, NCSC warns
-
Historian warns climate denial is causing “immense harm” as humanity nears a “major crunch point
-
The European Autumn 2025 edition out now
-
Study finds creative storytelling boosts confidence and career prospects for young people
-
Global development banks agree new priorities on finance, water security and private capital ahead of COP30
-
South African students develop tech concept to tackle hunger using AI and blockchain
-
Global startup expo enters final day in Dubai as Expand North Star marks a decade of innovation
-
Bleisure boom turning Gen Z work travel into ‘life upgrade’
-
Automation breakthrough reduces ambulance delays and saves NHS £800,000 a year
-
AI found to make people 15% more likely to lie, study warns
-
Global aerospace composites market to triple by 2034 as demand for lighter, greener aircraft accelerates
-
ICIEC to host 15th AMAN Union Summit as Islamic finance eyes closer trade integration
-
Matching words and images helps charities raise more money, study finds
-
UK to host African Development Fund summit as Africa pushes for food self-sufficiency
-
Off the blocks: LEGO and Formula 1 reunite for documentary on viral Miami Grand Prix stunt
-
Mergers and partnerships drive Africa’s mining boom – but experts warn on long-term resilience
-
New AI breakthrough promises to end ‘drift’ that costs the world trillions
-
Europe tightens grip on strategic space data as dependence on U.S tech comes under scrutiny
-
Trinity Business School study warns conspiracy theories are fueling real-world protest and sabotage
-
GITEX GLOBAL 2025 to spotlight AI’s expanding role in future-critical sectors
-
UK organisations show rising net zero ambition despite financial pressures, new survey finds
-
HumanX to establish permanent European base with 2026 Amsterdam AI summit
-
Gulf ESG efforts fail to link profit with sustainability, study shows
-
Glastonbury and Coachella set the stage for $400bn music tourism growth
-
Geopolitical volatility enters global top ten business risks for first time, new survey finds