News & Insights

Practical IT, cyber security and AI guidance from the Foresight team — helping Greater Manchester businesses stay secure, productive and ahead.

27 July 2026 · Craig Barratt · 2 min read

Enterprise-grade cyber security without the enterprise budget: a governance briefing

A briefing for business owners, directors, charity DPOs, healthcare SIROs and Caldicott Guardians on why continuous monitoring and modern endpoint protection are now both affordable and increasingly expected — and how to adopt them proportionately.

Read article →

26 July 2026 · Craig Barratt · 1 min read

UK Department for Education listed on ransomware leak site

A ransomware group has listed the UK Department for Education on its leak site, claiming ~607,000 parent and staff contact records. A reminder that MFA and continuous monitoring are non-negotiable.

Read article →

23 July 2026 · Craig Barratt

Companies keep paying ransomware demands despite official advice

Despite official guidance not to, many organisations are still paying ransomware demands — often because they feel they have no tested way to recover.

Read article →

21 July 2026 · Craig Barratt

Businesses need to improve cyber resilience

Experts are urging businesses to shift from prevention alone to resilience — the ability to keep running, and recover fast, when an incident happens.

Read article →

20 July 2026 · Craig Barratt

Scottish health tech firm Craneware reports data exposure

Scottish health-technology company Craneware reported a data exposure — another incident in the healthcare supply chain, where sensitive data and lean IT budgets often meet.

Read article →

17 July 2026 · Craig Barratt

Regional tech leaders unite to shield Greater Manchester hospices from rising cyber threats

Foresight brought together Greater Manchester hospices, the North West Cyber Resilience Centre and Kaseya at Moya Cole Hospice's new £20m facility for hands-on cyber defence training.

Read article →

July 2026 · Craig Barratt

Network Rail battles millions of cyber threats

Network Rail has revealed it faces millions of cyber threats — a striking illustration of the sheer volume of automated attacks now aimed at UK infrastructure and the businesses around it.

Read article →

14 July 2026 · Ged Tod

Russian Hackers Are Targeting Internet-Facing Routers — What the NSA & NCSC Warning Means for You

The NSA, CISA, FBI, NCSC and allied agencies warn that Russian FSB hackers are exploiting poorly configured, internet-facing routers worldwide. Here's what it means for your network — and how to lock the front door.

Read article →

13 July 2026 · Ged Tod

Russian Hackers Are Targeting Routers Worldwide: What the Joint Advisory Means for You

The NSA, CISA, FBI, UK NCSC and 15 partner agencies warn that Russian state hackers are exploiting poorly configured, internet-facing routers — including a seven-year-old Cisco flaw. Here's how to protect your business.

Read article →

13 July 2026 · Craig Barratt

Lidl Breach: Your Supplier's Hack Is Your Problem Too

Lidl has told online-shop customers in Germany, Belgium and the Netherlands their data was stolen — not from Lidl, but from one of its IT suppliers. A textbook supply-chain breach, and a reminder of the phishing risk that follows.

Read article →

13 July 2026 · Ged Tod

Foresight keeps Russell WBHO's Fairmont Cheshire project connected, start to finish

Foresight provided secure, always-on Starlink connectivity and on-site IT support throughout Russell WBHO's £70m transformation of the former Mere Golf Resort & Spa into the five-star Fairmont Cheshire, The Mere.

Read article →

13 July 2026 · Craig Barratt

EU and UK impose joint cyber sanctions against Russian-linked actors

The EU and UK have jointly sanctioned Russian-linked cyber actors — a sign of a more coordinated international response to state-backed hacking.

Read article →

13 July 2026 · Craig Barratt

One cybercrime group behind nearly a fifth of June’s ransomware attacks

A single cybercrime group was reportedly behind nearly 20% of ransomware attacks in June — a sign of how organised and industrialised the ransomware business has become.

Read article →

28 June 2026 · Saad Gul

June 2026 in cyber: attackers are logging in, not breaking in

June's cyber news shared one thread: attackers logged in, they didn't break in. A two-minute round-up of the month's key threats — and the simple steps that stop them.

Read article →

23 June 2026 · Craig Barratt

Duo accused of TfL cyber attack plead guilty

Two people accused over the cyber attack on Transport for London have pleaded guilty — a rare glimpse of accountability, and a reminder of how disruptive a single intrusion can be.

Read article →

21 June 2026 · Saad Gul

ShinyHunters Breaches Kodak: What It Means for Your Business

Imaging and printing company Kodak has confirmed a data breach after the ShinyHunters group claimed to have stolen millions of records. Here's what happened — and the practical lessons for Greater Manchester businesses.

Read article →

20 June 2026 · Jack Healy

Ransomware Watch: Construction and Media Firms in the Crosshairs

Two more mid-size businesses — an Irish contractor and a US media group — have been named on ransomware leak sites. A reminder that attackers don't only chase big names.

Read article →

20 June 2026 · Amanda Nellist

Pupil Photos and AI Blackmail: What Schools Should Do Now

Experts are warning schools about criminals misusing pupil photos from websites and social media. Here's practical, safeguarding-led guidance on image security and how to respond.

Read article →

19 June 2026 · Saad Gul

FortiBleed: 86,000 Fortinet Credentials Compromised

A database of working credentials for tens of thousands of internet-facing Fortinet firewalls and VPNs has surfaced. If you run Fortinet at the edge, here's what to do now.

Read article →

19 June 2026 · Jim Caffrey

The Salesforce/Klue Attack: When a Connected App Becomes the Way In

Attackers stole data from Salesforce customers without a single password — by compromising a connected app. A look at the Klue incident and the connected-app risk every business shares.

Read article →

19 June 2026 · Saad Gul

Critical Fortinet FortiSandbox Flaws Are Being Exploited — Patch Now

Attackers are actively targeting three critical, unauthenticated vulnerabilities in Fortinet's FortiSandbox security appliance. If you run Fortinet, here's what to do.

Read article →

19 June 2026 · Jack Healy

That Odd Recycle Bin Bug in June's Windows Update — Explained

June's Windows update made the Recycle Bin show strange filenames when you delete files. Here's what's going on, and the reassuring news: your files are fine.

Read article →

19 June 2026 · Ged Tod

Legacy equipment linked to cyberattacks against utility organisations

Ageing, legacy equipment has been linked to cyberattacks on utility organisations — a reminder that end-of-life technology is a security liability, not just a maintenance headache.

Read article →

18 June 2026 · Tom Gabbatt

Windows Server 2016 Update Failures: Fixed — But a Reminder to Patch in Order

June's security update was failing to install on some Windows Server 2016 systems. Microsoft has resolved it — and it's a useful reminder about update prerequisites.

Read article →

18 June 2026 · Taylor Hodgkinson

Your Suppliers Are Part of Your Attack Surface: NCSC Supply-Chain Guidance

A run of supplier breaches has put supply-chain security back in the spotlight. The NCSC's guidance is a sensible, practical starting point — here's how to apply it as an SME.

Read article →

18 June 2026 · Craig Barratt

Welcome to Foresight News

Our new home for practical IT, cyber security and AI guidance for Greater Manchester businesses — and what to expect from us here.

Read article →

18 June 2026 · Jake Sanderson

Microsoft 365 Isn't Backing Up Your Data — At Least Not How You Think

Many businesses assume Microsoft 365 protects their data. Under Microsoft's own shared-responsibility model, that's your job — not theirs.

Read article →

17 June 2026 · Saad Gul

The NCSC Is Handling Four Major Cyber Attacks a Week

The UK's cyber agency reports a record number of nationally significant incidents — and warns the threat is escalating. What it means for ordinary businesses.

Read article →

17 June 2026 · Jim Caffrey

Yes, Attackers Can Bypass MFA — Here's How to Stay Ahead

Multi-factor authentication is essential, but it isn't bulletproof. Understanding how attackers get around it is the key to making yours genuinely resilient.

Read article →

16 June 2026 · Saad Gul

Why Conflict Abroad Can Mean More Cyber Risk at Home

The NCSC has urged UK organisations to review their security posture in light of Middle East tensions. Even if you've no ties to the region, here's why it matters — and what to do.

Read article →

16 June 2026 · Ged Tod

New Data Complaints Duty: Every UK Organisation, No Exemptions

From 19 June, every UK organisation must acknowledge data-protection complaints within 30 days and investigate them properly. A quick guide to the new duty under the Data (Use and Access) Act 2025.

Read article →

15 June 2026 · Daniel Martin

One Click, Many Secrets: The Microsoft 365 Copilot SearchLeak Flaw

Researchers showed how a single click on a genuine Microsoft link could have quietly leaked emails, files and MFA codes from Copilot. Microsoft has fixed it — but the lesson about AI tools remains.

Read article →

15 June 2026 · Ged Tod

UK Cyber Rules Are Tightening — and MSPs Are Now in Scope

The Cyber Security and Resilience Bill will expand the UK's cyber regulations, bringing managed service providers and supply chains into scope. Here's what businesses should do now.

Read article →

15 June 2026 · Taylor Hodgkinson

When a Government Switches Off an AI Model: The Business Lesson

The US government's order to suspend Anthropic's Fable 5 and Mythos 5 models is a striking reminder that the cloud AI you depend on can be withdrawn overnight. Here's how to build resilience.

Read article →

June 2026 · Craig Barratt

Hostile states behind three-quarters of UK critical infrastructure attacks

New figures suggest hostile nation-states are behind around three-quarters of cyberattacks on UK critical national infrastructure — a stark signal of how political the threat has become.

Read article →

14 June 2026 · Ged Tod

You Can't Improvise a Cyber Response Under Fire — Plan It Now

The NCSC is urging leaders to prepare for severe cyber attacks before they happen. The core lesson for every business: rehearse your response while there's no pressure.

Read article →

13 June 2026 · Craig Barratt

The NCSC's Message to Business Leaders: It's Time to Act

The NCSC's latest Annual Review makes one thing clear: cyber resilience is now a boardroom responsibility, not just an IT task. Here's the leadership takeaway.

Read article →

12 June 2026 · Craig Barratt

Nearly Half of UK Businesses Hit by a Cyber Breach — How Not to Be Next

The Government's latest survey shows 43% of UK businesses suffered a breach or attack in the past year. The pattern barely changes — but the fixes are well known.

Read article →

12 June 2026 · Daniel Martin

Microsoft's Biggest Ever Patch Tuesday: 200 Fixes — Here's What to Prioritise

Microsoft's June 2026 update is the largest in its history — around 200 vulnerabilities, including an Exchange flaw already under attack. Here's what businesses should patch first.

Read article →

12 June 2026 · Craig Barratt

Nottingham University cyber attack: what we know so far

A major cyber attack on the University of Nottingham has disrupted systems and put personal data at risk — one of the most significant UK education-sector incidents of the year.

Read article →

12 June 2026 · Craig Barratt

MSPs increasingly concerned about supply-chain security threats

New research shows managed service providers are increasingly worried about supply-chain security — reflecting how attackers now target trusted vendors to reach many victims at once.

Read article →

11 June 2026 · Taylor Hodgkinson

Awareness Is Up, Resilience Isn't: The UK's Stuck Cyber Picture

A new survey shows UK breach preparedness has barely improved despite years of warnings. The issue isn't awareness — it's turning it into evidence and governance.

Read article →

11 June 2026 · Amanda Nellist

University of Nottingham Breach: 450,000 Email Addresses Leaked

The University of Nottingham has confirmed a breach after the ShinyHunters group leaked stolen data. Here's what happened and what every organisation should take from it.

Read article →

11 June 2026 · Craig Barratt

Nottingham University data breach affects more than 450,000 students

A breach at the University of Nottingham is reported to affect the personal data of more than 450,000 students — a scale that underlines how much is at stake when identity data is exposed.

Read article →

10 June 2026 · Daniel Martin

You Can't Defend What You Can't See: Why Visibility Matters

The NCSC says better 'observability' and threat hunting are essential to cyber resilience. In plain terms: if you can't see what's happening across your systems, you can't catch an intruder.

Read article →

6 June 2026 · Craig Barratt

Oxford University data exposed through CareerConnect platform breach

Personal data linked to the University of Oxford was exposed through a breach of the third-party CareerConnect platform — another reminder that your data is only as safe as your suppliers.

Read article →

14 May 2026 · Ged Tod

Industrial organisations face escalating operational-technology attacks

Attacks on operational technology (OT) in industrial settings are escalating — targeting the systems that run physical processes, where a breach can have real-world consequences.

Read article →

7 May 2026 · Ged Tod

2026 IoT attacks: the biggest threats and what to do

A rundown of the biggest Internet-of-Things threats in 2026 — and the practical steps organisations can take to secure their connected devices.

Read article →

23 April 2026 · Ged Tod

A ‘perfect storm’: NCSC chief warns on quantum, nation-state hackers and hacktivism

The NCSC has described a “perfect storm” of converging cyber risks — from quantum computing’s threat to encryption to increasingly active nation-state and hacktivist groups.

Read article →

22 April 2026 · Craig Barratt

UK could face ‘hacktivist attacks at scale’, warns security agency chief

The head of the UK’s cyber security agency has warned that politically motivated “hacktivist” groups could begin launching disruptive attacks at scale against British organisations.

Read article →

21 April 2026 · Craig Barratt

Adaptavist breach spawns impersonation emails

A breach at the Adaptavist Group led to impersonation emails targeting customers — a textbook example of how one breach quickly becomes a phishing problem for everyone connected to it.

Read article →

10 April 2026 · Craig Barratt

Beyond wipers: Iranian cyberattacks and the threat to businesses

A closer look at Iranian cyber activity and what it means for ordinary businesses — beyond the headline-grabbing “wiper” attacks.

Read article →

9 April 2026 · Craig Barratt

Chevin FleetWave platform taken offline after security incident

Fleet-management platform FleetWave was taken offline following a security incident — a reminder that when a SaaS platform goes down, so can the business processes that depend on it.

Read article →

3 April 2026 · Craig Barratt

Why businesses need cyber insurance

A look at the growing case for cyber insurance — and why insurers increasingly expect solid security controls before they’ll cover you.

Read article →

1 April 2026 · Craig Barratt

78% of UK manufacturers hit by a cyber incident in the past year

New figures suggest 78% of UK manufacturers suffered a cyber incident in the past year — a sector often assuming it’s not a target, discovering otherwise.

Read article →

20 March 2026 · Daniel Martin

When a Supplier Goes Down: The Stryker Attack and NHS Equipment Supply

A cyber attack on medical-device maker Stryker halted production and disrupted NHS equipment supply — without the NHS itself being breached. A textbook lesson in supply-chain dependency.

Read article →

18 March 2026 · Craig Barratt

Why cyberattacks against critical national infrastructure are increasing

A look at why attacks on critical national infrastructure keep rising — and why the businesses in CNI supply chains should take note.

Read article →

12 March 2026 · Ged Tod

What is ransomware? A plain-English guide

A plain-English explainer on ransomware — what it is, how it takes hold, and the practical steps that keep an organisation protected.

Read article →

9 March 2026 · Ged Tod

Cyberattack on EV charger firm ELECQ exposes customer information

A cyberattack on EV charging company ELECQ exposed customer information — a reminder that connected devices and their back-end platforms are now part of your data-security picture.

Read article →

2 March 2026 · Craig Barratt

UK warns of Iranian cyberattack risks amid Middle East conflict

UK authorities have warned of heightened Iranian cyberattack risk amid Middle East tensions — a reminder that geopolitical events increasingly spill over into business cyber risk.

Read article →

24 February 2026 · Ged Tod

CrowdStrike: AI is accelerating cyberattacks

Security firm CrowdStrike says AI is accelerating cyberattacks — helping attackers move faster, phish more convincingly and scale their operations.

Read article →

15 February 2026 · Ged Tod

Eighteen Months On: The Long Shadow of the Synnovis Ransomware Attack

A 2024 ransomware attack on NHS pathology provider Synnovis is still disrupting care in London well over a year later — a sobering lesson in how long recovery can really take.

Read article →

February 2026 · Craig Barratt

European Commission confirms breach of mobile-management platform

The European Commission confirmed a breach of a mobile-device management platform — a reminder that the tools used to secure and manage devices are themselves high-value targets.

Read article →

16 January 2026 · Craig Barratt

1,800 MSPs affected by Pax8 data disclosure

A data disclosure at Pax8 affected around 1,800 managed service providers — a reminder that even the security industry’s own supply chain is a target.

Read article →

8 January 2026 · Craig Barratt

Hacked London council warns 100,000 households about follow-up scams

A London council hit by a cyber attack warned 100,000 households to expect follow-up scams — a clear illustration of how a breach keeps causing harm long after the initial incident.

Read article →

19 December 2025 · Saad Gul

NHS Software Supplier DXS International Hit by Cyber Attack

NHS software supplier DXS International has confirmed a cyber attack on its internal systems. Front-line care was unaffected — but it's another reminder that your suppliers' security is your security.

Read article →

22 July 2025 · Craig Barratt

UK to Ban Public-Sector Ransom Payments — and Change the Rules for Everyone Else

The government plans to ban the NHS, schools and councils from paying ransoms, and to require other businesses to notify before paying. What the proposals mean in practice.

Read article →

2 April 2024 · Amanda Nellist

NRS Healthcare Attack: When a Cyber Incident Reaches the Most Vulnerable

A cyber attack on community-equipment provider NRS Healthcare disrupted vital supplies to vulnerable people and exposed personal data through councils and the NHS. A hard look at supply-chain risk in care.

Read article →

9 October 2022 · Craig Barratt

Foresight Wins the Supporting Young People Award at the 2022 Oldham Business Awards

Foresight Business Solutions was named winner of the Supporting Young People Award at the 2022 Oldham Business Awards, held at Oldham's Queen Elizabeth Hall.

Read article →