Peter Bassill — latest writing on cyber security
Latest articles · page 6 of 13
-
Backup Strategy for a Small Business: The 3-2-1 Rule in Practice
Three copies, two media, one offsite. Everyone knows the rule. Almost nobody tests the restore.
-
The week in cyber — 11 to 15 May 2026
A self-spreading npm worm hit TanStack, Patch Tuesday had its quietest month in two years, the Cyber Security and Resilience Bill moved to Report Stage, and the ICO issued a five-step plan boards should actually read.
-
Deploying Wazuh for Home and Small Business — All-in-One Server with Linux, Windows and macOS Agents
Build a complete SIEM and endpoint detection platform with the Wazuh all-in-one server on Ubuntu 24.04 LTS or Docker on Windows, then deploy agents across Linux, Windows and macOS.
-
Things I wish boards would actually ask
Twelve questions that would tell you more than any maturity score. None of them mention zero-trust.
-
Configure Fail2Ban: Protecting Linux Services from Brute Force
Install and configure Fail2Ban on Ubuntu to protect SSH, Apache and other services with rate-limiting and IP banning.
-
April 2026, in retrospect
The worst single month for cyber attacks on record. 105 publicly disclosed ransomware incidents globally. The UK third by volume. Looking back at it with a week's distance, three patterns matter more than the count.
-
The week in cyber — 4 to 8 May 2026
The ICO fined South Staffordshire Water nearly £1m, the DSIT cyber newsletter quietly confirmed the regulatory direction of travel, and the Canvas extortion played out on a public timeline.
-
The £320 myth: what Cyber Essentials actually costs
Cyber Essentials is marketed from £320. For an unprepared 10-person UK business under the new v3.3 Danzell question set, the true first-year cost is £13,000 to £30,000 over 10 to 14 weeks. Here is the breakdown.
-
The week in cyber — 27 April to 1 May 2026
A learning platform serving thirty million people was breached, cPanel disclosed a zero-day that had been live in the wild for months, and April closed as the worst month for ransomware on record.
-
The week in cyber — 20 to 24 April 2026
NCSC and CISA named the Beijing-based outfit running covert botnets, the UK cyber chief told businesses to brace, and a sitting MP's website was hit with 142 million requests. A busy week.
-
What it changed about my other machines
Last in the six-post series on the Covert Cyber Deck. The deck as catalyst, not destination — what designing and living with it changed about how I look at my work laptop, my home network, the firm's estate, and the boards I advise.
-
Six years of EmilyAI: what we kept, what we changed, what we should have done sooner
Post 20 of the AI series. A longer reflective piece. Eight years on from the first sketch of the system that became EmilyAI, six years on from production deployment, the architectural retrospective the series has been building toward.
-
Incident Response Planning for a Small Business Without a SOC
You do not need a security operations centre to have a plan. You need a single page, an out-of-band phone number, and a Saturday morning.
-
Healthcare's reckoning
Three months of attacks have produced a clarifying set of numbers. £32.7m at Synnovis. 150,000 households warned at NHS Dumfries and Galloway. At least one patient death attributed. Healthcare is where concentration risk meets the lowest acceptable downtime threshold.
-
In defence of writing the code yourself
On staying technical while sitting in chairs that don't expect you to be.