Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Cyber incidents reported to the FCA up over 50%

Security

Cyber incidents reported to the FCA up over 50%

The pioneer of Breach and Attack Simulation (BAS), Picus Security, today released a report revealing a large rise in cyber incidents reported to the UK's Financial Conduct Authority (FCA).

Image copyright Shutterstock

The report, based on FCA data obtained via a Freedom of Information (FOI) request, reveals that:

  • The FCA received 116 reports of material cyber security incidents in 2021, up from 76 in 2020 (an increase of 52%).
  • 65% of cyber incidents reported in 2021 (75) were due to cyber-attacks.
  • Approximately one third of incident reports (37) contained notifications where the confidentiality of company or personal data may have been compromised or breached.
  • One in five incidents reported to the FCA in 2021 involved ransomware.
  • 21 cyber incidents were reported to the FCA in March 2021 – the most submitted in any month that year and coinciding with the disclosure of critical vulnerabilities in Microsoft Exchange Server.

"Financial services firms are amongst the best prepared and most highly capable organisations at detecting and responding to cyber incidents," said Dr Suleyman Ozarslan, Picus Security co-founder and VP of Picus Labs. "Yet, despite investing heavily in security and data protection, it's clear that many continue to experience challenges in these areas.

Advertisement
Tritax 300x250

"The large rise in cyber incidents reported to the FCA in 2021 is a concerning trend and should serve as an important reminder to all firms about the need to make ongoing improvements in all areas of security. This is necessary to not only mitigate the risks posed by external threats but also those which arise due to IT failures and human error."

Digital transformation in the financial services sector, including widespread adoption of remote working, means that many firms over the last few years have had to adjust their security and data protection practices. On top of this, they have had to contend with being a target of Advanced Persistent Threats groups and ransomware operators, as well as manage the risks of critical vulnerabilities in widely used systems such as Microsoft Exchange Server.

"Defending financial institutions against all the threats they face remains a tough challenge, made even harder by the growing attack surface," Ozarslan added. "Only by validating security capabilities on a continuous basis can firms hope to measure their threat readiness more accurately and swiftly close the gaps needed to take their operational resilience to the next level."

 

Advertisement
Leonardo animated rectangle

 

 

Advertisement
General Atomics LB
Blighter adds radar target tracker to BlighterNexus system

Defence Security

Blighter adds radar target tracker to BlighterNexus system

5 December 2025

Cambridge based Blighter has added a proprietary dynamic radar target tracker module to its integrator-friendly BlighterNexus AI-assisted multisensor connectivity & processing system.

Government launches consultation on use of facial recognition and biometrics

Security

Government launches consultation on use of facial recognition and biometrics

4 December 2025

The UK Government has launched a consultation on the use of facial recognition and biometrics in law enforcement and aims to better equip the police.

Leonardo inaugurates Regional Cyber Centre in Malaysia

Security

Leonardo inaugurates Regional Cyber Centre in Malaysia

4 December 2025

The Regional CyberSec Centre based in Kuala Lumpur joins Leonardo's Global CyberSec Centre (GCC) network, which already includes the federated centres in Bristol, Brussels, Chieti and Riyadh, consolidating Malaysia’s role as a strategic hub for Southeast Asia.

Government cyber tool blocks nearly 1bn attempts to access malicious sites

Security

Government cyber tool blocks nearly 1bn attempts to access malicious sites

4 December 2025

Almost one billion early-stage cyber attacks and attempts to access scam websites have been blocked by a new government cyber service in less than a year, according to new figures from GCHQ’s National Cyber Security Centre (NCSC) and BT. 

Advertisement
ODU RT
BAE Systems launches Velhawk cybersecurity solutions

Security

BAE Systems launches Velhawk cybersecurity solutions

4 December 2025

BAE Systems has launched Velhawk, its next-gen cybersecurity framework designed to enhance resilience, accelerate cyber response and optimise workforce efficiency for governments.

British designed satellites successfully launched

Defence Security Space

British designed satellites successfully launched

3 December 2025

A cluster of British designed and built satellites has been successfully launched into low Earth orbit, providing defence, security and civil sectors with UK space-based intelligence, surveillance and reconnaissance to enhance the nation’s ability to protect against modern threats.

Advertisement
Leonardo animated rectangle