VORANT. Threat Intelligence Sign in Get the full feed

NCSC releases Active Cyber Defence year four report

low threat healthcareretailgovernment-national

The UK NCSC's 2020 Active Cyber Defence programme report details pandemic response efforts and the SolarWinds Orion incident response role.

The UK National Cyber Security Centre has published its fourth annual Active Cyber Defence (ACD) programme report covering 2020. The report highlights how ACD tools and services were adapted to support organisations transitioning to remote work during the pandemic, with particular focus on protecting healthcare, retail, and other critical sectors. The year concluded with NCSC taking a significant role in responding to the SolarWinds Orion supply chain compromise and its impact on UK organisations.

The report emphasises the interconnected nature of ACD services, citing examples such as how Vulnerability Reporting Service data on Dangling DNS issues was combined with Protective DNS data to improve detection capabilities. Rather than focusing heavily on statistics, this year's report prioritises key stories and trends discovered through the programme's work.

The ACD programme aims to protect the majority of UK citizens from most cyber attacks through collaborative efforts involving UK public sector, commercial, and international partners implementing national-scale cyber security defences.

Mentioned in this report

Campaigns SolarWinds Orion compromise

Source reporting: https://www.ncsc.gov.uk/report/acd-report-year-four

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free