Skip to main content
Cyber23
  • Home
  • Packages
  • Services
  • FAQ
  • About
  • Contact
  • Blog

Recent Posts

  • Cyber Essentials Plus – Why It’s Worth Considering
    25 Sep, 2025
  • MoJ Legal Aid Portal Breach – Lessons for Law Centres
    25 Sep, 2025
  • Windows 10 End of Life – What It Means for Your Cyber Essentials
    25 Sep, 2025
  • Turning Downtime into Resilience
    17 Sep, 2025
  • How Cyber Essentials Helps You Win Government Contracts
    31 Jul, 2025
  • Cyber Essentials vs Cyber Essentials Plus – Which Is Right for You?
    31 Jul, 2025
  • What Is Cyber Essentials and Why Do SMEs Need It?
    31 Jul, 2025

Stay Cyber Aware

We share straightforward security insights, threat updates, and practical tips to help you protect what matters most.

Whether you need advice on staying safe online or want to understand the latest risks, you’ll find clear guidance here.

Check back regularly — or reach out if you want to talk through your security needs today.

MoJ Legal Aid Portal Breach – Lessons for Law Centres

September 25, 2025 at 3:41 pm, No comments

Earlier this year, the Ministry of Justice (MoJ) took down its legal aid portal following a significant cyber incident. Many law centres across the UK rely on this system daily, and the disruption has been widely felt.

What happened

  • The MoJ confirmed that unauthorised access had been detected.

  • The portal was taken offline while investigations and remediation took place.

  • As of September 2025, access issues and delays are still being reported.

Why this matters for law centres

The breach exposed a weakness that many of you have already flagged in your Cyber Essentials assessments: the lack of multi-factor authentication (MFA).

  • MFA is a core Cyber Essentials requirement.

  • Some law centres were frustrated that their own assessments showed non-compliance, while the government system they rely on didn’t support it at all.

The bigger picture

Even central government systems can fall short. But that doesn’t mean you should lower your own standards.

  • MFA reduces risk – adding it to accounts makes a breach significantly harder.

  • Cyber Essentials sets a baseline – a consistent standard that applies whether you’re a law centre, MSP, or government body.

  • Awareness is power – assessments don’t just generate a certificate, they highlight real risks you can address.

Takeaway

The MoJ incident is a reminder that you can only control what’s within your own organisation. Apply the strongest controls you can, insist on best practice from your MSP, and don’t assume “big systems” are immune.


No comments

Leave a reply







Cart

Cart is empty.

Created by Mountain Forty Nine ©2026

Cyber23 is registered in England, Company No. 14375436

Terms | Privacy | Cookie Policy | Services

Pera Business Park, Nottingham Road, Melton Mowbray, Leicestershire, LE13 0PB