The NHS has faced disruptions from ransomware attacks, which have crippled services for days or weeks, contributed to a death, and upended schedules for countless medical procedures. The UK government is proposing measures to ban public sector organizations, including the NHS, from paying ransomware demands to protect critical services and undermine the criminal ecosystem.
Source: https://www.theregister.com/2025/07/22/uk_to_ban_ransomware_payments/
TPRM report: https://scoringcyber.rankiteo.com/company/nhsengland
"id": "nhs957072325",
"linkid": "nhsengland",
"type": "Ransomware",
"date": "7/2025",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Healthcare',
'location': 'UK',
'name': 'NHS',
'type': 'Healthcare'},
{'industry': 'Public Administration',
'location': 'UK',
'name': 'Local Councils',
'type': 'Government'},
{'industry': 'Education',
'location': 'UK',
'name': 'Schools',
'type': 'Education'}],
'description': 'The UK government is proposing to ban public sector '
'organizations and critical national infrastructure from '
'paying ransomware attackers. This includes entities like the '
'NHS, local councils, and schools. The move aims to reduce the '
'attractiveness of these sectors as targets for financially '
'motivated attackers. The Cyber Resilience Bill, expected to '
'enter Parliament this year, will bolster NIS 2018 regulations '
'and expand enforcement powers.',
'impact': {'downtime': ['Days or weeks'],
'operational_impact': ['Crippling services',
'Creating havoc at schools',
'Contributing to a death in the NHS',
'Upending schedules for medical '
'procedures']},
'motivation': 'Financial',
'recommendations': ['Maintain offline backups',
'Develop plans to work without IT for extended periods',
'Have a well-rehearsed strategy for restoring systems '
'from backups'],
'references': [{'source': 'UK Government'}],
'response': {'recovery_measures': ['Maintaining offline backups',
'Developing plans to work without IT for '
'extended periods',
'Well-rehearsed strategy for restoring '
'systems from backups']},
'title': 'UK Government Proposes Ban on Ransomware Payments for Public Sector '
'and CNI',
'type': 'Ransomware'}