Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Defence
  • /
  • MoD engages ethical hackers to strengthen cyber security

Defence Security

MoD engages ethical hackers to strengthen cyber security

In a first for the UK Ministry of Defence (MoD), 26 ethical hackers have taken part in a Bug Bounty programme in collaboration with US based organisation HackerOne.

Image by Willy Barton / Copyright Shutterstock

The 30-day challenge aimed to identify and fix vulnerabilities in cyber systems to strengthen Defence’s security and to ensure better resilience.

Bug Bounty programmes provide safe environments for experts to identify areas where security can be improved.

Advertisement
ODU RT

The identification of real vulnerabilities by ethical hackers is rewarded and Defence cyber teams are working with the ethical hacking community whose expertise has been extremely valuable in finding and remediating vulnerabilities - ensuring better security across Defence’s networks and 750,000 devices.

In the Integrated Review published earlier this year, the government committed to a more robust position on security and resilience, ensuring that lives and livelihoods are protected from those who may wish to do us harm. This challenge is part of wider plans to ensure transparency and collaborate with partners to improve national security.

MOD will continue to make use of the Bug Bounty expertise, in addition to other capabilities available to ensure cyber security and resilience. MOD cyber security efforts reinforce the UK Government strategy for cross-department resilience and security, lessons learned by Defence are shared with partners.

Minister for the Armed Forces James Heappey said: "Bug Bounty is an exciting new capability for the Ministry of Defence. Our cyber teams are collaborating with the ethical hacking community to identify and fix vulnerabilities in our systems, ensuring we’re more resilient and better protected.

"This work will contribute to better cyber and information security for the UK."

Participants praised Defence for its openness and willingness to embrace new tools and capabilities to secure cyber systems. Programmes like this are industry best practice and used by governments and organisations across the world to defend against possible cyber-attacks.

Christine Maxwell, Ministry of Defence Chief Information Security Officer said: "The Ministry of Defence has embraced a strategy of securing by design, with transparency being integral for identifying areas for improvement in the development process.

"It is important for us to continue to push the boundaries with our digital and cyber development to attract personnel with skills, energy and commitment. Working with the ethical hacking community allows us to build out our bench of tech talent and bring more diverse perspectives to protect and defend our assets. Understanding where our vulnerabilities are and working with the wider ethical hacking community to identify and fix them is an essential step in reducing cyber risk and improving resilience."

CEO of HackerOne, Marten Mickos said: "Governments worldwide are waking up to the fact that they can’t secure their immense digital environments with traditional security tools anymore.

"Having a formalised process to accept vulnerabilities from third parties is widely considered best practice globally, with the US government making it mandatory for their federal civilian agencies this year. The UK MoD is leading the way in the UK government with forward-thinking and collaborative solutions to securing its digital assets and I predict we will see more government agencies follow its example."

Advertisement
Marshall RT 2

 

 

 

 

 

Advertisement
Advanced Navigation LB 1
BMT SPARO project secures British Army funding

Defence

BMT SPARO project secures British Army funding

23 April 2024

In a major development for the BMT SPARO project, the British Army’s Futures Directorate has provided funding to build, supply and demonstrate the latest prototype for UK medics who took part in Project CONVERGENCE, the premier US Army experimentation exercise in March.

Sixth Astute class submarine officially named Agamemnon

Defence Events

Sixth Astute class submarine officially named Agamemnon

23 April 2024

The Royal Navy’s latest Astute Class submarine has been officially named at BAE Systems’ Submarines site in Barrow-in-Furness, Cumbria. Agamemnon - named after the ancient Greek king - is the sixth of seven Astute submarines being built by the Company. She is due to be launched later this year, ahead of being commissioned into the Royal Navy.

BAE Systems selects HDUSA to modernise Radford Army Ammunition Plant

Defence

BAE Systems selects HDUSA to modernise Radford Army Ammunition Plant

22 April 2024

BAE Systems Ordnance Systems Inc. (OSI) has selected Hanwha Defense USA (HDUSA), the US defence subsidiary of Hanwha Aerospace in South Korea, to modernise an existing production building at the Radford Army Ammunition Plant, Virginia, USA.

James Fisher & Sons strengthens defence presence in Barrow-in-Furness

Defence

James Fisher & Sons strengthens defence presence in Barrow-in-Furness

22 April 2024

James Fisher & Sons plc has further strengthened its 177 year commitment to Barrow-in-Furness through a dedicated defence presence within its company headquarters.

Advertisement
ODU RT
NP Aerospace progresses Raytheon HELWS on Wolfhound

Defence

NP Aerospace progresses Raytheon HELWS on Wolfhound

19 April 2024

NP Aerospace has announced it is one of the key partners on the UK MoD’s Laser Directed Energy Weapon Land Demonstrator programme working with Raytheon UK to progress integration of Raytheon’s High-Energy Laser Weapon System (HELWS) onto the Wolfhound vehicle.

Roke opens Gloucester office

Aerospace Defence Security

Roke opens Gloucester office

19 April 2024

Romsey headquartered technology company Roke, has today officially opened its new bespoke office space in Gloucester, as it focuses on further expansion, innovation and technological growth in the area and for the UK.

Advertisement
Advanced Engineering RT