Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • UK and US security agencies issue COVID-19 cyber threat update

Security

UK and US security agencies issue COVID-19 cyber threat update

A growing number of cyber criminals and other malicious groups online are exploiting the COVID-19 outbreak for their own personal gain, security officials in the UK and USA have revealed.


Image copyright Shutterstock

A joint advisory has been published by the UK’s National Cyber Security Centre (NCSC) and US Department of Homeland Security (DHS) Cybersecurity and Infrastructure Agency (CISA), which shows that cyber criminals and advanced persistent threat (APT) groups are targeting individuals and organisations with a range of ransomware and malware.

Advertisement
ODU RT

Examples of scams include emails containing malware which appear to have come from the Director-General of the World Health Organisation (WHO), and others which claim to offer thermometers and face masks to fight the pandemic.

Elsewhere the agencies have detected cyber criminals scanning for vulnerabilities in software and remote working tools as more people work from home during the pandemic.

As well as alerting people to the threat, the advisory directs them to the support available to counter it. This includes the NCSC’s guidance on dealing with suspicious emails and on working from home securely .

Paul Chichester, Director of Operations at the NCSC, said:“Malicious cyber actors are adjusting their tactics to exploit the COVID-19 pandemic, and the NCSC is working round the clock with its partners to respond.

“Our advice to the public and organisations is to remain vigilant and follow our guidance, and to only use trusted sources of information on the virus such as UK Government, Public Health England or NHS websites.”

To date the agencies are not seeing overall levels of cyber crime increase, but they are seeing a growing use of COVID-19 related themes by malicious cyber actors.

Bryan Ware, CISA Assistant Director for Cybersecurity, said: “As the COVID-19 outbreak continues to evolve, bad actors are using these difficult times to exploit and take advantage of the public and business. Our partnerships with the NCSC and industry have played a critical role in our ability to track these threats and respond.

“We urge everyone to remain vigilant to these threats, be on the lookout for suspicious emails and look to trusted sources for information and updates regarding COVID-19. We are all in this together and collectively we can help defend against these threats."

The techniques used by attackers prey on people’s appetite for information and curiosity towards the outbreak, with phishing emails and SMS messages using the virus as a lure to trick people into revealing credentials or downloading malicious software.

Phishing attempts often come from what appears to be a trustworthy sender, such as the ‘World Health Organisation’, or with a subject line such as “2019-nCov: Coronavirus outbreak in your city (Emergency)”.

Advertisement
ODU RT

The NCSC and the CISA have also observed criminals scanning for known vulnerabilities in remote working tools and software, which is evidence that they are looking to take advantage of the increase in people working from home. This includes exploitation of the increased use of video conferencing software, where phishing emails with attachments naming legitimate video conference providers aim to trick users into downloading malicious files.

It is expected that the frequency and severity of COVID-19 related cyber attacks will increase over the coming weeks and months.

You can read the full assessment here , which includes indicators of compromise (IOCs) for detection, and guidance for organisations and individuals on how to decrease the risk of cyber attacks.

Refer to trusted resources such as www.gov.uk/coronavirus or the NHS website for official information about the coronavirus.


 

 

 

Advertisement
FIA2026 animated banner
MGI Engineering expands into Italy with Vigilar Group

Aerospace Defence Security

MGI Engineering expands into Italy with Vigilar Group

5 June 2026

Oxfordshire based MGI Engineering has entered into a strategic partnership with Vigilar Group, marking MGI’s expansion into Italy and a significant new phase of growth across Europe.

Smiths Detection’s HI-SCAN 10080 XCT achieves TSA ACSTL Qualified status

Aerospace Security

Smiths Detection’s HI-SCAN 10080 XCT achieves TSA ACSTL Qualified status

5 June 2026

Smiths Detection's Explosives Detection System (EDS) HI-SCAN 10080 XCT advanced X-ray computed tomography system for hold baggage and air cargo has progressed from the 'Approved' section to the 'Qualified' section of the US Transportation Security Administration’s (TSA) Air Cargo Screening Technology List (ACSTL).

UTAC Special Vehicles produces 1,000th armoured vehicle

Defence Security

UTAC Special Vehicles produces 1,000th armoured vehicle

4 June 2026

UTAC Special Vehicles has reached the milestone of producing its 1,000th armoured vehicle at the division’s headquarters at Millbrook, Bedfordshire, UK.

NATS, DroneCloud and Network Rail complete CNI drone trial

Aerospace Security

NATS, DroneCloud and Network Rail complete CNI drone trial

3 June 2026

NATS, DroneCloud and Network Rail have completed a major project exploring how drones could be safely used at scale around Critical National Infrastructure (CNI), including for rail inspections and incident response.

Advertisement
ODU RT
DSEI Germany adds fourth exhibition hall

Defence Security Space Events

DSEI Germany adds fourth exhibition hall

3 June 2026

The organisers of DSEI Germany have announced that, due to unprecedented industry demand, they will be opening a fourth exhibition hall ahead of its debut in March 2027.

Getac launches rugged ZX80W and ZX80W-EX tablets

Aerospace Defence Security

Getac launches rugged ZX80W and ZX80W-EX tablets

3 June 2026

Getac today announced the expansion of its ZX80 range of eight inch fully rugged tablets with the launch of the new ZX80W and ZX80W-EX, which are two lightweight, highly mobile Windows 11 devices built on ARM architecture.

Advertisement
ODU RT
Advertisement
FIA2026 animated banner