7  Taken down nearly 140,000 phishing sites in the last two years and protected 1.3 million government internet users;  Helped the UK tax authority block half a million attempts to spoof it in the programme’s first year. HMRC used to the 16th most spoofed brand in the world. Now, in 2019, it is the 146th.  Reduced the UK’s share of global phishing attacks from 5.3 per cent to 2.2 per cent. The UK used to account for 1 in 20 attacks, now that is around 1 in 50. These measures are already having a tangible security benefit by reducing the return on investment and making the UK an unattractive target for cybercriminals. We now need to incentivise others to do similar things to scale up the benefits. The NCSC has also commenced pilot ACD initiatives in CNI sectors, and we will continue to design and pilot new tools to help protect customers and businesses from commodity cyberattacks. Norm 4 (UNGGE 2015 report, paragraph 13d) – States should consider how best to cooperate to exchange information, assist each other, prosecute terrorist and criminal use of ICTs, and implement other cooperative measures to address such threats. States may need to consider whether new measures need to be developed in this respect. The United Kingdom has a well-established law enforcement response, which works with other states to prosecute cybercrime. Within the National Crime Agency (NCA), the National Cyber Crime Unit (NCCU) is the UK lead for tackling this threat. The NCCU has the responsibility and capability to lead the operational response, coordinate activity across a range of partners and provide specialist cyber support and expertise across law enforcement. The NCA also has a network of international liaison officers and is responsible for a number of national functions, including responsibility for liaising with Europol and Interpol to cooperate with other States to tackle cybercrime The National Cyber Security Centre also helps to share information and combat common cyber threats with international partners. The UK has a very good level of bilateral cooperation with many allies and partners. This cooperation includes sharing of best practices, including on policy and advice, sharing of assessments and understanding of threats. The UK ratified the Cybercrime (‘Budapest’) Convention5 in 2011, as the foremost international instrument on enhancing cooperation against cybercrime. Through this, the UK actively exchanges information to prosecute cybercrime, including through a 24/7 law enforcement network of contacts specified in the Convention. The UK is also an active participant, and has provided voluntary contributions to work to 5 https://www.gov.uk/government/publications/convention-on-cybercrime--2

Select target paragraph3