The UK's NCSC dealt with a record 204 “nationally significant” cyberattacks in the year to August, up 89% YoY, with “highly significant” cyberattacks up 50% YoY
People should plan for potential cyber-attacks by going back to pen and paper, according to the latest advice.
Context & Ripple Effects
The record comes after the NCSC warned of a widening gap in the UK’s ability to counter cyber threats, while its count of severe incidents had already risen sharply.
It also lands amid evidence that attacks are broadly affecting UK organisations: a government survey found 43% of businesses had faced a breach or attack. The new figures show the burden reaching the national-response tier is growing as well.
First-order effects
- The NCSC must allocate more response capacity to nationally significant incidents, with the most serious category also rising year on year.
- Organisations and individuals are being urged to make operational-continuity plans, including manual fallback processes such as pen-and-paper procedures.
Second-order effects
- Businesses that depend on digital systems will face stronger pressure to test offline workarounds and incident-response plans, rather than treating cybersecurity solely as a preventive IT function.
- The increase reinforces demand for coordinated defense across organisations and government, particularly as major UK businesses have been hit by cyberattacks in 2025.
Third-order effects
- If significant incidents continue to rise faster than response capacity, cyber resilience—including the ability to operate through an outage—may become as important as perimeter security in UK risk management.
- The pattern points to a more systemic cyber-defense challenge: national agencies can coordinate and respond, but broad preparedness across businesses, charities, and public services will determine the impact of attacks.
The trend: The UK is shifting from a cyber-risk posture centred on prevention toward ecosystem-wide operational resilience and recovery planning.