NCSC UK publishes Active Cyber Defence year four report
NCSC's 2020 Active Cyber Defence report details national-scale defensive efforts, including its response to the SolarWinds Orion compromise.
This NCSC UK report summarizes the fourth year of the Active Cyber Defence (ACD) programme, covering 2020 activities aimed at protecting UK organisations and individuals from common cyber threats. The report describes efforts to support the shift to remote work during the pandemic, protect critical sectors such as health and retail, and improve detection capabilities, including using Protective DNS data to address the 'Dangling DNS' problem identified via the Vulnerability Reporting Service.
A notable event highlighted is the NCSC's role in responding to the SolarWinds Orion supply-chain compromise and its impact on the UK, though the report itself is largely a programme overview rather than a technical incident analysis. It emphasizes collaboration across public sector, commercial, and international partners in delivering national-scale cyber defence services, and shifts focus from raw statistics toward key trends and stories from the year's work.
Mentioned in this report
Source reporting: https://www.ncsc.gov.uk/report/acd-report-year-four
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free