📰 Full Story
The UK government’s Cyber Security Breaches Survey for 2025/26, published in late April 2026, found that 43% of businesses — around 612,000 firms — and 28% of charities (about 57,000) reported at least one cyber breach or attack in the past year.
Incidence rates were higher among larger organisations (69% of large firms, 65% of medium firms) while micro businesses reported 42%. Phishing remained by far the most common and disruptive vector, affecting 38% of businesses and 25% of charities.
Ransomware fell to 1% of respondents and impersonation attacks declined to 12%. The survey shows modest governance gains — board-level cybersecurity responsibility rose to 31% — but only 25% of businesses have formal incident response plans.
Ministers and cybersecurity officials warned of heightened risks from offensive AI and potential state-linked activity; the cyber security minister has urged executives to adopt NCSC guidance, sign up for its Early Warning service, and consider the forthcoming Cyber Resilience Pledge aimed at senior leadership and supply-chain certification.







💬 Commentary