OTHER

UK Government Urges Ransomware Victims to Report Cyberattacks to Aid in Disrupting Hackers

The U.K. government plans to implement a requirement for ransomware victims to report breaches, allowing law enforcement to gather critical information for targeting the involved cybercriminals.

On Tuesday, the Home Office unveiled a proposal aimed at reforming the U.K.’s strategy for combatting ransomware. One of the three main proposals is a reporting obligation designed to help authorities in identifying and dismantling hacking operations.

“The introduction of mandatory reporting is meant to provide law enforcement with essential intelligence to locate offenders and curtail their activities, offering better support to victims,” the proposal noted.

As indicated in the proposal, this reporting requirement would allow the government to “execute targeted interventions in an ever-evolving threat landscape.”

The other two significant proposals include banning ransomware payments for public sector and critical infrastructure entities, as well as requiring victim organizations to inform the government if they intend to pay a ransom.

Ransomware investigators have welcomed these initiatives, especially those focused on strengthening law enforcement capabilities.

“This is a tacit recognition of a fact we have long understood: Ransomware operators and their accomplices extend beyond Russia, and many of those involved are highly catchable and, crucially, prosecutable,” remarked Allan Liska, a threat intelligence analyst and ransomware specialist at Recorded Future. “This is vital.”

Techcrunch event

San Francisco
|
October 27-29, 2025

Arda Büyükkaya, a senior cyber threat intelligence analyst at EclecticIQ, commended the proposals for formalizing these issues.

“While it’s uncertain if everything will unfold as proposed, we’ll monitor future developments,” Büyükkaya told TechCrunch. “Overall, prohibiting ransom payments and actively pursuing offenders can serve as a strong deterrent, imposing tangible costs on threat actors.”

Tuesday’s announcement is part of a policy consultation that began in January, during which the Home Office first outlined the three major policy changes. The government’s formal reaction to the consultation is a step closer to potential legal modifications, though it remains unclear if these proposals will be enacted.

The ban on ransomware payments has ignited debate. Some consider a ban a definitive way to deter criminal gangs from benefiting from cyberattacks and extorting victims. However, others argue that paying a ransom may sometimes be the only viable option to restore critical systems and resume operations, particularly for essential sectors like hospitals, where downtime can significantly jeopardize patient health.

Earlier this year, Australia enacted legislation mandating ransomware victims to disclose any ransom payments made, though it did not impose a complete ban on such payments.