George Osborne outlines threat to Government’s IT systems
Monday 16 May 2011
Related articles
George Osborne on Monday outlined the extent to which the Government’s IT systems are under attack from hackers, saying that more than 20,000 “malicious emails” are sent to its networks each month.
The Chancellor said that last year saw “hostile intelligence agencies” make hundreds of “serious and pre-planned attempts to break into the Treasury’s computer system”, which he said averaged out at “more than one attempt per day”.
Speaking at the opening of Google’s Zeitgeist event yesterday, the Chancellor outlined government plans to publish a wealth of data online and to make government services “digital by default”. But, alluding to high-profile cases of data loss like that seen recently at Sony, he pointed out that the Government “must get the security question right”.
He also announced the appointment of the former head of Barack Obama’s Open Government Initiative Beth Noveck to help implement the changes, which he called a “world-class appointment”.
In February this year, Foreign Secretary William Hague told a conference in Munich that the Government’s computers were infected by a virus last year, which was transferred via email. He said the infection was cleared up but added that “more sophisticated attacks such as these are becoming more common”. The extent to which that is affecting government systems, which hold sensitive data, was revealed by Mr Osborne.
He added that the Treasury is “one of the most targeted departments across Whitehall”. Mr Osborne outlined one example last year when, he said, a “perfectly legitimate G20-related email” was sent to the Treasury.
“Within minutes it appeared that the email had been re-sent to the same distribution list. In fact, in the second email the legitimate attachment had been swapped for a file containing malicious code,” said Mr Osborne.
He added that the two looked almost identical to the untrained eye but that the Treasury’s security systems identified the attack and stopped it.
According to reports, a similar attack aimed at the French Finance Ministry and the European Council last year got past the security systems of 150 computers ahead of the G20 summit. An anonymous French government official was quoted as saying that it had been “noted that a certain amount of the information was redirected to Chinese sites”.
During a speech, given to internet entrepreneurs, the Chancellor said he was “determined to get the security question right” announced and reiterated the Government’s commitment to launching a £650m National Cyber Security Programme to enhance its online security.
Graham Cluley, an internet security expert at Sophos, pointed out the risk that “one of the targeted government attacks could steal sensitive information from government computers and put it in the hands of unknown parties”. But he noted out that the number of attacks quoted by the Chancellor is not unusual for an organisation of the government’s size.
He referred to GCHQ figures which suggest that only around five per cent of the attacks – around 1,000 per month – are specifically targeted against government departments, rather than as part of more speculative “scattergun” attacks.
Mr Cluley accused the government of traditionally being “slow to follow best practice” in online security. In a blog post, he recommended that the government review its security tools to meet the threat, warning that it should take a “close look at its computers and applications to ensure that they are properly patched against vulnerabilities.
He wrote: “One key question I would pose, for instance, is whether the web browser and PDF viewer being used by the British Government is properly up-to-date and patched. That’s even before we consider Microsoft Office, Java, Adobe Flash, etc etc ad nauseum.
“In early 2010, the British Government was strongly criticised for its unwillingness to upgrade from the chronically insecure Internet Explorer 6, and thousands of people signed a petition calling on government departments to upgrade their browsers.
“It’s unclear whether all UK Government departments are now up-to-date in the browsers and other application they use, but it seems to me that if their computers are being attacked by foreign powers with boobytrapped documents and dangerous links that to do anything less would be negligent in the extreme.
Mr Osborne’s speech came just hours after Sony’s popular PlayStation Network was tentatively returned to service after hackers shut it down last month. Around 100 million accounts were compromised and credit card details and other personal information stolen in what is thought to be the biggest online security breach ever.
-
That's some guestlist! Stunning images show huge dynastic wedding between Ultra-Orthodox Jewish families which attracted 25,000 guests
-
Man and woman arrested on suspicion of conspiracy to murder victim of Woolwich machete attack, named as Drummer Lee Rigby
-
'Sickening, deluded and unforgivable': Horrific attack brings terror to London’s streets
-
Video: Woolwich attack - man with bloodied hands and knife addresses camera
-
Ingrid Loyau-Kennett, the mother-of-two hailed as a hero for confronting Woolwich attackers, thought: 'better me than a child'
- 1 Man and woman arrested on suspicion of conspiracy to murder victim of Woolwich machete attack, named as Drummer Lee Rigby
- 2 'Sickening, deluded and unforgivable': Horrific attack brings terror to London’s streets
- 3 Grace Dent: I’m not sure how these people can avoid being called ‘bigots’. And the more ‘civilised’, the worse they are
- 4 Woolwich murder: They killed, then they performed - these men should be starved of our attention
- 5 Woolwich attack: The EDL will seek to exploit this evil crime for their own evil ends
Get your summer started with British Military Fitness
BMF is the UK’s biggest and best loved outdoor fitness classes
Visit York
Find out what The Independent's resident travel expert has to say about one of the most beautiful small cities in the world
Making reading fun for kids
Nook is donating eReaders to volunteers at high-need schools and participating in exclusive events throughout the campaign.
Introducing the 'Get Reading' campaign
Get the latest on The Evening Standard's campaign to get London's children reading.
Enter the latest Independent competitions
Win anything from gadgets to five-star holidays on our competitions and offers page.
Business videos from commercial thought leaders
Watch the best in the business world give their insights into the world of business.
Independent Dating
Day In a Page
Edward VIII’s phone calls - and how MI5 bugged them
Hollywood's random acts of red-carpet kindness
Not secure any more: G4S boss heads for exit at last
How to say ‘I’m a sellout’






Comments