New proposals to counter ransomware: Have your say
Help shape the proposals aimed at striking a significant blow to the ransomware criminal business model in the UK.
Our advice & guidance covers a broad range of topics
Resources for individuals and organisations in the UK who have experienced an online scam or cyber attack.
Find a range of products & services from NCSC and certified 3rd party suppliers
Working with industry, government and academia to support the next generation of researchers, students and cyber security professionals
All the latest information to help you keep track of what's happening

The Home Office will today announce a public consultation seeking views on three proposals aimed at striking a significant blow to the ransomware criminal business model.
Ransomware is the most acute cyber threat for most businesses in the UK, and the impact of an attack can affect every aspect of an organisation. This includes disrupting operational delivery, hitting finances, compromising customer data, eroding trust and damaging an organisation’s reputation.
The ransomware threat is borderless, and with criminals constantly adapting their techniques to gain efficiencies and maximise profits, it is an issue that senior leaders in all organisations should take seriously by allocating resources to robust cyber security measures and comprehensive incident response planning.
The NCSC, alongside wider government, is committed to making the UK an unattractive target for ransomware attacks, and the launch of this consultation represents a significant milestone on that journey.
The consultation will consider three proposals:
The consultation can be accessed via GOV.UK and will close at 5pm on 8 April 2025.
Commenting on the consultation’s launch, NCSC CEO Richard Horne said:
“This consultation marks a vital step in our efforts to protect the UK from the crippling effects of ransomware attacks and the associated economic and societal costs.
“Organisations of all sizes need to build their defences against cyber attacks such as ransomware, and our website contains a wealth of advice tailored to different organisations. In addition, using proven frameworks like Cyber Essentials, and free services like NCSC’s Early Warning, will help to strengthen their overall security posture.
“Organisations across the country need to strengthen their ability to continue operations in the face of the disruption caused by successful ransomware attacks. This isn’t just about having backups in place: organisations need to make sure they have tested plans to continue their operations in the extended absence of IT should an attack be successful, and have a tested plan to rebuild their systems from backups.”
The NCSC is committed to helping UK organisations prevent ransomware attacks and mitigate their effects if they get through. It provides free actionable advice on the NCSC’s Ransomware Hub, in addition to strategic guidance on what to expect and how to secure remediation services to recover and rebuild networks.


