Hi All,
This is my first post here and was directed to it from a colleague in the education IT sector. I'm from the NCA's National Cyber Crime Unit (Cyber Prevent Team) and one of the my roles is the education liaison officer. We are well aware of the issue of young students flexing their cyber muscles and often the schools are becoming victims. I've been working with PSHE for the last 12 months and launched the below in September:
https://www.pshe-association.org.uk/curriculum-and-resources/resources/exploring-cybercrime-ks3-lesson-plans-national
The resource is also on the http://www.NEN.gov.uk site. There is further work planned through the NCCE, NCSC and TES with assistance from ROCU cyber officers.
DDoS shouldn't be ignored and is in fact a s3 CMA offence which attracts a 10 year sentence or fine or both in the most severe circumstances. However through Cyber Prevent we aim to divert and re-educate suspected offenders as it's not in anyone's interests to criminalise young students when an alternative approach may be more appropriate and productive. But of course it's on a case by case basis. I'm already linking in with a school firewall provider to establish what further data analysis is possible from their DDoS attacks and my aim will be to reach out to others in this sector to try and establish the national picture.
If anyone's attending EGX in London this weekend we have a Prevent stand under "Cyber Choices".