logo

UK to ban ransomware payments by public sector organizations

ID: e804eda4-e490-5c10-9342-5e6a42381f08

STIX ID: report--e804eda4-e490-5c10-9342-5e6a42381f08

Feed Name: The Register (Security)

Date Published: 2025-07-22

Date Updated: 2026-04-26

Author: Paul Kunert

...
...

The UK government plans to prohibit public sector and critical national infrastructure from paying ransomware demands under a forthcoming Cyber Resilience Bill that strengthens NIS regulations, broadens regulatory scope (including datacenters and MSPs), and empowers authorities to mandate security improvements. Noncompliance—such as failing to patch widely exploited vulnerabilities leading to a breach—could incur fines up to £100,000 per day or 10% of turnover. The proposals also require mandatory reporting of intended ransom payments and warn organizations about sanctions risks, with guidance emphasizing robust backups and operational resilience.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.