Skip to main content

The Cyber Resilience Centre for London
Latest Blogs

Latest Blogs

Stay informed with the latest updates from the Cyber Resilience Centre for London and keep on top of all developments in cyber crime.

Wednesday 22 April 2026

FatBuzz

The CRC Network often meets small businesses that have suffered cyber attacks. In most cases, these attacks occurred due to a vulnerability; they were not specifically targeted because of the business’s sector, location, size, or trading activities.

Aeronautics supplier begins a journey to better cyber resilience

Tuesday 14 April 2026

FatBuzz

The UK’s National Cyber Security Centre (NCSC) has issued new warnings about a Russian state‑linked hacking group known as APT28. This group has been breaking into everyday internet routers, often the same type used in small offices and home workplaces, to steal passwords and other private information. They do this by quietly changing how the router directs internet traffic, sending people to fake websites that look real. From there, attackers can capture login details for email and other online services.
Important cybersecurity warning for small businesses

Tuesday 03 February 2026

FatBuzz

The care sector is built on trust, as care organisations handle sensitive information every day, including medical data, financial information, and contact details. In an increasingly digital world, maintaining that trust means ensuring strong protection against evolving cyber threats.
Why cyber security matters more than ever in the care sector

Thursday 13 November 2025

FatBuzz

The busiest shopping season of the year is almost here again when websites will go into overdrive with shoppers hunting for the best deals. While your customers are scrolling through offers, comparing prices, and clicking “pay now” without a second thought, cybercriminals are lurking amongst the increased legitimate traffic. They know that when good deals are available, staff and customers may let their guard drop.

Thursday 21 August 2025

We are pleased to announce an upcoming leadership transition at the Cyber Resilience Centre for London (CRC London).

Later this year, the work of CRC London will transition to a new national body, and CRC London will formally close. As part of this process, Detective Inspector Richard Morrison-Butcher will take over as lead from our current CEO, Sapna Chadha.

Richard brings more than 18 years of experience in UK policing, specialising in cybercrime investigation, fraud, digital forensics, and complex case management. He has held national coordination roles and is a recent graduate of the College of Policing’s Fast-Track Leadership Programme. Alongside his policing expertise, Richard brings private sector experience from running his own SME, giving him a unique understanding of the challenges and opportunities facing London’s business community.

The new Cyber Resilience Centre will operate under a nationally coordinated, police- led model. Richard’s appointment reflects our ongoing commitment to maintaining strong links between national policing capability and regional cyber resilience efforts. Under his leadership, our work will continue to focus on delivering the Cyber PATH programme, building public–private partnerships, and supporting London’s small to medium-sized enterprises (SMEs) and third-sector organisations to strengthen their cyber resilience.

The Board would like to sincerely thank Sapna for her leadership and the significant contribution she has made during her time at CRC London. We are also pleased to share that most of the CRC London team will be moving across to the new organisation or collaborating companies, ensuring continuity for our partners and members.

Richard is already working alongside the CRC London team to ensure a smooth transition, and we look forward to continuing our collaboration with partners to help London’s organisations stay cyber resilient.

Leadership Transition at the Cyber Resilience Centre for London

Thursday 25 January 2024

Tech Show London has been officially accredited by The CPD Group, a globally recognised accreditation body.

This accreditation marks a pivotal moment for Tech Show London, an event that brings together five leading technology events: Cloud Expo Europe, DevOps Live, Cloud & Cyber Security Expo, Big Data & AI World, and Data Centre World.

Tech Show London achieves accreditation from The CPD Group

Monday 20 January 2025

Richard Starnes

Cybersecurity threats continue to evolve, with ransomware attacks, zero-day vulnerabilities, and supply chain attacks posing significant risks to organizations. To address these threats, organizations can adopt a manageable security framework like Cyber Essentials Plus (CE+). In this article, we will explore how CE+ can help mitigate these three key cybersecurity challenges, providing insights into its principles and best practices for enhanced protection.

How Cyber Essentials Plus can help with your business’s cybersecurity

Tuesday 07 November 2023

Recently, we were able to coordinate our busy schedules (no easy feat!) and come together as a team for a dynamic training session with Cyber Griffin, City of London Police’s initiative to support businesses and individuals in the Square Mile to protect themselves from cybercrime.

Diving into Spear Phishing: Learning how to spot a scam

Tuesday 07 November 2023

Our CEO Simon Newman was recently asked by the press for comment on a range of cybersecurity topics, how they affect everyday citizens, and how they might be challenged on a day-to-day basis. Read on for his valuable insight and practical tips that you can put in place to better protect yourself now.

Smart tech, Scams, and Spyware – an everyday guide to simple cyber hygiene

Tuesday 07 November 2023

In an increasingly digital world, the security of digital assets has become the linchpin in the vast ecosystem of cyber security. Today, we'll dive into the core role that User Privilege Management (UPM) plays in securing digital assets, and why it's a cornerstone of robust SME cyber security.

UPM, an often-overlooked aspect of IT management, is the process of controlling, monitoring, and administering the rights or permissions given to users within a system. These privileges could include access to files, the authority to modify system settings, and even the power to install or uninstall applications.

Securing Digital Assets: The Crucial Role of User Privilege Management in Cyber Security

Tuesday 07 November 2023

In today's world of ever-evolving digital threats, cyber resilience is not just a priority but an imperative. However, an often overlooked yet crucial component of cyber resilience is effective user privilege management. User privilege management is the practice of defining, controlling, and monitoring user access rights within a network or system. It's the unsung hero of basic cyber security, allowing us to maintain secure access to our systems while balancing productivity.

Effective User Privilege Management: A Key Step Towards Cyber Resilience

Tuesday 07 November 2023

In our modern digital world, safeguarding our networks and data from cyber threats has become not just a priority but a necessity. Among the plethora of strategies available, one stands out as being both simple and efficient, yet often overlooked: User Privilege Management (UPM). The Cyber Resilience Centre for London champions this approach as an essential element of basic cyber security, ensuring a proactive defence against burgeoning threats.

Preventing Cyber Threats Through Strategic User Privilege Management: Your Key to Basic Cyber Security

Tuesday 07 November 2023

In today's digital era, where the exponential growth of technology has revolutionised the way we live and work, there is an increasingly acute need to fortify our systems against cyber threats. With the constant evolution of technology, cyber security, specifically the concept of 'User Privilege Control,' has become paramount in the quest for secure systems.

A Handbook to User Privilege Control: Optimising Cyber Security in London and Beyond

Tuesday 07 November 2023

Privilege Management, often referred to as authorization, is a method by which users’ access to resources is allowed or denied. In the OWASP Top 10, vulnerabilities related to privilege management fall under the heading of Broken Access Control. In the most recent iteration of the Top 10 it is at the top of the list, meaning it has a higher occurrence in tested applications than any other vulnerability type.

Privilege Management: An Advanced Guide to Available Tools

Become Part of Our
Community

Community membership is free

National Cyber Security Centre (NCSC) Products and Services

  • NCSC Small Business Guide
  • NCSC Exercise in a Box
  • NCSC Board Toolkit
  • NCSC Weekly Threat Report
  • Other relevant NCSC Guidance