Interesting reading this on Infosecurity Magazine about the recent TfL arrests. I did see Troy Hunt talking about the perception of cyber-criminals on X which is relevant, whilst this talks about how a case such as this "makes a compelling argument for tougher legal powers in the UK".
Now as I've talked in the past about a review of the Computer Misuse Act, this is interesting as it may seem a time to consider the severity of these crimes. The TfL attack caused £29m in damages and £10m in lost income, and close to £40m is not to be sniffed at for a public sector organisation.
What's the answer? Harsher sentences for people involved in cybercrime? Some element of considering the impact of the crime and how much it both impacted the business and the total cost of recovery?
Police said the investigations took “nearly two years of painstaking work” and said: “This is without doubt the biggest, most complex and most challenging investigation that we’ve ever conducted."
With this new government now reframing Technology into a different department, is Justice going to be reconsidering punishment for offenders too?
https://www.infosecurity-magazine.com/news/police-chiefs-tfl-cybercrime-risk/