7
Taken down nearly 140,000 phishing sites in the last two years and protected
1.3 million government internet users;
Helped the UK tax authority block half a million attempts to spoof it in the
programme’s first year. HMRC used to the 16th most spoofed brand in the
world. Now, in 2019, it is the 146th.
Reduced the UK’s share of global phishing attacks from 5.3 per cent to 2.2
per cent. The UK used to account for 1 in 20 attacks, now that is around 1 in
50.
These measures are already having a tangible security benefit by reducing the return
on investment and making the UK an unattractive target for cybercriminals. We now
need to incentivise others to do similar things to scale up the benefits. The NCSC
has also commenced pilot ACD initiatives in CNI sectors, and we will continue to
design and pilot new tools to help protect customers and businesses from
commodity cyberattacks.
Norm 4 (UNGGE 2015 report, paragraph 13d) – States should consider how
best to cooperate to exchange information, assist each other, prosecute
terrorist and criminal use of ICTs, and implement other cooperative measures
to address such threats. States may need to consider whether new measures
need to be developed in this respect.
The United Kingdom has a well-established law enforcement response, which works
with other states to prosecute cybercrime. Within the National Crime Agency (NCA),
the National Cyber Crime Unit (NCCU) is the UK lead for tackling this threat. The
NCCU has the responsibility and capability to lead the operational response,
coordinate activity across a range of partners and provide specialist cyber support
and expertise across law enforcement. The NCA also has a network of international
liaison officers and is responsible for a number of national functions, including
responsibility for liaising with Europol and Interpol to cooperate with other States to
tackle cybercrime
The National Cyber Security Centre also helps to share information and combat
common cyber threats with international partners. The UK has a very good level of
bilateral cooperation with many allies and partners. This cooperation includes
sharing of best practices, including on policy and advice, sharing of assessments
and understanding of threats.
The UK ratified the Cybercrime (‘Budapest’) Convention5 in 2011, as the foremost
international instrument on enhancing cooperation against cybercrime. Through this,
the UK actively exchanges information to prosecute cybercrime, including through a
24/7 law enforcement network of contacts specified in the Convention. The UK is
also an active participant, and has provided voluntary contributions to work to
5
https://www.gov.uk/government/publications/convention-on-cybercrime--2