Scottish Parliament Confirms Brute Force Cybersecurity Incident

The Scottish Parliament has been hit in a ‘brute force’ cyber attack from ‘external sources’, officials have confirmed to Silicon UK.

It seems that the attack focused on MSPs and staff with parliamentary email addresses, and officials warned of potential account lockouts and failed log-ins.

The attack was similar to the assault on the British Parliament in Westminster in late June. That cyber attack had targetted MP’s email accounts and caused havoc with government communications.

IT Incident

The Scottish Parliament confirmed the “IT incident” to Silicon via email.

“The Parliament’s monitoring systems have identified that we are currently the subject of a brute force cyber-attack from external sources,” Paul Grice, the Clerk/ Chief Executive said in a statement.

These brute force attacks typically see hackers repeatedly attempting to access systems by trying a range of different passwords. They hope trial and error attacks will eventually result in guessing the correct password.

What is your biggest cybersecurity concern?

  • Ransomware (28%)
  • Humans / Social Engineering (27%)
  • State sponsored hackers (14%)
  • Malware (14%)
  • Other (7%)
  • Out of date tools (6%)
  • DDoS (4%)

Loading ...

“This attack appears to be targeting parliamentary IT accounts in a similar way to that which affected the Westminster Parliament in June,” Grice added. “Symptoms of the attack include account lockouts or failed log-ins.”

However it seems that the Scottish IT systems coped well with the attack.

“The Parliament’s robust cyber security measures identified this attack at an early stage and the additional security measures which we have in readiness for such situations have already been invoked,” Grice said. “Our IT systems remain fully operational.”

IT officials then warned staff to remain vigilant and report any suspect issues as soon as they become aware of them.as well as to take particular care when opening any emails from external sources.

Staff were also advised to change their network account passwords, which are now subject to stricter rules. Those with weak passwords will be forced to change them.

The Scottish Parliament is also expected to issue an update later this afternoon about the attack.

Quiz: Are you a security pro?

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

Meta Declines On Heavy AI Spending Plans, Despite Strong Q1

Share price hit after Meta admits heavy AI spending plans, after posting strong first quarter…

16 hours ago

Google Delays Removal Of Third-Party Cookies, Again

For third time Google delays phase-out of third-party Chrome cookies after pushback from industry and…

17 hours ago

Tesla Posts Biggest Revenue Drop Since 2012

Elon Musk firm touts cheaper EV models, as profits slump over 50 percent in the…

18 hours ago

Apple iPhone Q1 Sales In China Fall 19 Percent, Says Counterpoint

Bad news for Tim Cook, as Counterpoint records 19 percent fall in iPhone sales in…

22 hours ago

President Biden Signs TikTok Ban Or Divest Bill Into Law

TikTok pledges to challenge 'unconstitutional' US ban in the courts, after President Joe Biden signs…

24 hours ago