Skórzewiak - stock.adobe.com
BT has now blocked over a billion clicks to malicious websites, says NCSC
NCSC’s Share and Defend scheme has seen BT block over a billion clicks through to malicious websites
BT and mobile provider EE have now blocked over a billion clicks to malicious websites using intelligence supplied by the UK’s National Cyber Security Centre (NCSC), according to figures disclosed today.
The NCSC’s Share and Defend programme, launched last year, protects 46 million mobile phone users and 12 million fixed line internet subscribers from websites that could deliver malicious code, malware or phishing attacks, the NCSC said.
It has allowed BT to head off “early stage cyber attacks” and attempts by its customers to access scam websites.
The programme provides telecoms companies with streams of alerts about malicious websites, giving telcos and internet companies the option to block access to the most severe risks to its customers.
Claimed to be the most extensive in the world, Share and Defend provides alerts to BT, EE and VodafoneThree.
Other partners include broadband company PXC, which provides wholesale broadband and network services.
The NCSC said it is “engaging” with other companies to achieve wider coverage and looking to bring new partners into the scheme.
Threat feeds
Share and Defend provides telcos with alerts from threat feeds, some of which are private to the NCSC, with others provided by businesses, and the Cyber Defence Alliance, a group for the finance sector.
Other alerts are generated by take-down notices issued to remove malicious content from the internet, and from websites identified as being linked to phishing sites reported by the public.
Organisations signed up to the programme are able to prevent their customers accessing malicious content, but can choose which sites to block based on their own risk analysis.
The programme provides threat data from the NCSC-developed Protective Domain Name Service, run by Cloudflare and Accenture. The service is capable of preventing access to malicious web domains when they are looked up on the Domain Name System used to navigate the internet.
It also takes feeds from the NCSC’s takedown service – run in conjunction with cyber security company Netcraft – which blocks and removes websites linked to spam and phishing attacks that could damage the reputation of government services.
The Share and Defend service is also used by Jsic, a not-for-profit organisation, which builds and maintains the Janet network, used by education and research organisations.
Read more from CyberUK 2026
- CyberUK 2026 – UK lagging on legal protections for cyber pros: Ahead of this year’s CyberUK conference, the CyberUp Campaign for reform of the UK’s hacking laws proposes a four-pillar framework that would protect cyber professionals from prosecution.
- Nation states responsible for ‘nationally significant’ cyber attacks against UK, says NCSC chief: The UK is facing four nationally significant cyber attacks a week, the majority from hostile states, NCSC chief, Richard Horne, warns at the CyberUK conference.
- UK to build ‘national cyber shield’ to protect against AI cyber threats: Security minister Dan Jarvis calls for artificial intelligence companies to work with government to develop AI-driven cyber defences.
- NCSC heralds end of passwords for consumers and pushes secure passkeys: UK National Cyber Security Centre is urging consumers to replace passwords and two-factor authentication with passkeys, following a technical study that shows they are more secure and easier to use.
- Chinese hackers using compromised networks to spy on Western companies, says Five Eyes - Companies urged to take countermeasures as Chinese hacking groups use networks of infected home and office devices ‘at scale’ to evade security monitoring systems.
