Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • UK and allies publish cyber vulnerability fixes

Security

UK and allies publish cyber vulnerability fixes

The National Cyber Security Centre (NCSC), Cybersecurity and Infrastructure Security Agency (CISA), Australian Cyber Security Centre (ACSC) and the Federal Bureau of Investigation (FBI) have published advice on countering the most publicly known — and often dated — software vulnerabilities, for private and public sector organisations worldwide.

Above: The National Cyber Security Centre (NCSC), Nova South, London.
By Simone Flamigni / copyright Shutterstock

Last Wednesday, the NCSC, CISA, ACSC and FBI published a joint advisory highlighting 30 vulnerabilities routinely exploited by cyber actors in 2020 and those being exploited in 2021.

Advertisement
ODU RT

In 2021, malicious cyber actors continued to target vulnerabilities in perimeter-type devices. Today’s advisory lists the vendors, products, and CVEs, and recommends that organisations prioritise patching those listed.

NCSC Director for Operations, Paul Chichester, said: “We are committed to working with allies to raise awareness of global cyber weaknesses – and present easily actionable solutions to mitigate them.

“The advisory published today puts the power in every organisation’s hands to fix the most common vulnerabilities, such as unpatched VPN gateway devices.

“Working with our international partners, we will continue to raise awareness of the threats posed by those that seek to cause harm."

As well as alerting organisations to the threat, this advisory directs public and private sector partners to the support and resources available to mitigate and remediate these vulnerabilities.

Guidance for organisations on how to protect themselves in cyberspace can be found on the NCSC website. Our 10 Steps to Cyber Security collection provides a summary of advice for security and technical professionals.

On the mitigation of vulnerabilities, network defenders are encouraged to familiarise themselves with guidance on establishing an effective vulnerability management process. Elsewhere, the NCSC’s Early Warning Service also provides vulnerability and open port alerts.

CISA Executive Assistant Director for Cybersecurity, Eric Goldstein, said: “Organisations that apply the best practices of cyber security, such as patching, can reduce their risk to cyber actors exploiting known vulnerabilities in their networks.

“Collaboration is a crucial part of CISA’s work and today we partnered with ACSC, NCSC and FBI to highlight cyber vulnerabilities that public and private organisations should prioritise for patching to minimise risk of being exploited by malicious actors.”

Advertisement
PTC rectangle

FBI Cyber Assistant Director, Bryan Vorndran, said: “The FBI remains committed to sharing information with public and private organisations in an effort to prevent malicious cyber actors from exploiting vulnerabilities.

“We firmly believe that coordination and collaboration with our federal and private sector partners will ensure a safer cyber environment to decrease the opportunity for these actors to succeed.”

Head of the ACSC, Abigail Bradshaw CSC, said: “This guidance will be valuable for enabling network defenders and organisations to lift collective defences against cyber threats.

“This advisory complements our advice available through cyber.gov.au and underscores the determination of the ACSC and our partner agencies to collaboratively combat malicious cyber activity.”

 

 

Advertisement
Gulfstream banner
Smith Myers and HAT.tec integrate ARTEMIS with SCALE

Aerospace Security

Smith Myers and HAT.tec integrate ARTEMIS with SCALE

11 March 2026

Smith Myers Communications and HAT.tec have announced the integration of the ARTEMIS Mobile Phone Detection and Location System (MPDLS) with the HAT.tec mission management system SCALE across the helicopter fleet of a major European law enforcement agency.

LINEV Systems UK wins ADS Security Innovation Award

Security Events

LINEV Systems UK wins ADS Security Innovation Award

11 March 2026

LINEV Systems UK have been announced as the winners of the ADS Security Innovation Award during the Home Office’s Security & Policing Exhibition for their baggage screening system, LV STREAM.

ALL.SPACE and Viasat advance Ka-band connectivity

Defence Security Space

ALL.SPACE and Viasat advance Ka-band connectivity

10 March 2026

ALL.SPACE today announced a strategic collaboration with Viasat and the successful certification of the ALL.SPACE Hydra terminal to operate on the Viasat Global Xpress (GX) network, which provides integrated military Ka-band spectrum access for government and defence missions.

IFS completes acquisition of Softeon

Aerospace Defence Security Space

IFS completes acquisition of Softeon

10 March 2026

IFS today announced the completion of its acquisition of Softeon, providing enterprises across manufacturing, logistics and retail, with access to a new category of supply chain technology.

Advertisement
ODU RT
NPAS shares innovation insights at CAA Future of Flight Day

Aerospace Security Events

NPAS shares innovation insights at CAA Future of Flight Day

9 March 2026

At the UK Civil Aviation Authority’s Future of Flight Day, David Walters, Head of Futures and Innovation, National Police Air Service (NPAS), shared the latest progress in NPAS’s Beyond Visual Line of Sight (BVLOS) development programme and showcased a recent multiagency search and rescue demonstration.

UK space tech startups target debris, wildfires and climate risk

Security Space

UK space tech startups target debris, wildfires and climate risk

9 March 2026

Six UK space tech startups have joined the European Space Agency Business Incubation Centre UK (ESA BIC UK) to develop technologies that deliver practical benefits in space and on Earth, applying space technology to some of today’s most urgent challenges, from clearing space junk to detecting wildfires in seconds.

Advertisement
PTC rectangle
Advertisement
Gulfstream banner