UK insurers defend ransomware payment coverage

The Association of British Insurers (ABI) has defended including ransomware payments in first-party cyber-insurance policies.

It highlighted that although firms face financial ruin without cover, insurance is not a replacement for taking every step to prevent the spread of ransomware.

Professor Ciaran Martin, former head of the National Cyber Security Centre, said the UK needs to rethink its policies on ransomware in comments first reported by the Guardian.

He said he believed insurers were "funding organised crime" by covering ransomware claims, but the issue of tackling ransomware was far broader than just the insurance sector.

He clarified that while official advice is not to pay the demand, it is not illegal in the UK.

However, he did not think that banning ransomware insurance claims would necessarily solve the problem.

"I have some sympathy with insurers, because as long as it's legal, there are incentives to pay."

He added: "But it's worth a serious piece of consultation because if we continue as we are, things will get worse.”

A spokesman for the ABI said insurers require that "reasonable precautions" are taken to prevent cyber-attacks from succeeding in the first place, just as cars and houses require security measures in place to deter thieves.

They added: "Some might argue that any insurance that covers against a criminal act could lull the policyholder into a false sense of security”.

    Share Story:

Recent Stories


Data trust in the AI era: Building customer confidence through responsible banking
In the second episode of FStech’s three-part video podcast series sponsored by HCLTech, Sudip Lahiri, Executive Vice President & Head of Financial Services for Europe & UKI at HCLTech examines the critical relationship between data trust, transparency, and responsible AI implementation in financial services.

Banking's GenAI evolution: Beyond the hype, building the future
In the first episode of a three-part video podcast series sponsored by HCLTech, Sudip Lahiri, Executive Vice President & Head of Financial Services for Europe & UKI at HCLTech explores how financial institutions can navigate the transformative potential of Generative AI while building lasting foundations for innovation.

Beyond compliance: Building unshakeable operational resilience in financial services
In today's rapidly evolving financial landscape, operational resilience has become a critical focus for institutions worldwide. As regulatory requirements grow more complex and cyber threats, particularly ransomware, become increasingly sophisticated, financial services providers must adapt and strengthen their defences. The intersection of compliance, technology, and security presents both challenges and opportunities.

Unleashing generative AI: A force multiplier for financial crime teams
This FStech webinar, sponsored by NICE Actimize sees industry experts examine the revolutionary impact of generative AI on financial crime operations, and provides actionable insights to enhance your compliance strategies.