The UK government has released new anti-ransomware guidance designed to address the weaknesses in supply chains that have been the ultimate source of several of many of the record 204 “nationally significant” incidents dealt with by the National Cyber Security Centre (NCSC) in the past year.
Developed alongside the Singapore authorities as part of a joint commitment made last year under the auspices of the Counter Ransomware Initiative (CRI), the guidance aims to help organisations spot issues in their supply chains before cyber criminals are able to exploit them and sets out several practical steps to check supplier security and guard against vulnerabilities. The CRI is backed by over 67 countries – but not the US – and bodies such as Interpol and the World Bank.
“Ransomware and cyber attacks pose an immediate and urgent threat to our nation’s security and economy,” said UK security minister Dan Jarvis. “We are taking decisive action to counter this threat, but global coordination is essential.
“Cyber security must be a top priority for all businesses. It’s vital that the counter-ransomware guidance is followed and strong measures are taken to defend against these destructive attacks.”
NCSC director for national resilience, Jonathon Ellison added: “A ransomware attack on one organisation can severely disrupt entire supply chains, affecting businesses and services across the UK and beyond. We know that many of these incidents are preventable by implementing basic cyber security measures, such as the UK’s Cyber Essentials certification.
“We strongly urge organisations to follow the NCSC’s supply chain security guidance to help protect themselves, their partners, and the UK’s national cyber resilience.”
The guidance itself – available to read in full here – sets out a multi-step plan to enhance supply chain resilience. These steps emphasise factors such as the need to select suppliers that have implemented security controls aligned to the risk levels of the activity they are participating in; the need to communicate your organisation’s own security expectations to supplier partners; the need to build cyber into the contracting process; the need to conduct independent audits and tests of suppliers or requiring external accreditation from cyber technical authorities; and the need to insist upon cyber insurance policies being in place.
The guidance additionally advises organisations to work hand-in-hand with suppliers to review any incidents or near misses, exercise response plans, share new threat intelligence or revised best practices, and keep contracts updated to reflect the changing cyber security landscape. It also urges organisations to do more to drive dialogue and coordination across their supplier network and among their peers.
“Meticulously planning, investing in the right tools and running countless exercises are vital, but even so, nothing truly prepares you for the moment a real cyber event unfolds. The intensity, urgency and unpredictability of a live attack is unlike anything you can rehearse,” said Shirine Khoury-Haq, CEO of The Cooperative Group, which was hit by a massive ransomware attack in April that cost the group £206m.
“What matters most is learning, building resilience, and supporting each other to prevent future harm. This is a positive step in the right direction for building a safer digital future,” she added.
The UN Convention against Cybercrime was adopted at the General Assembly on 24 December 2024 by resolution 79/243, and is the first comprehensive global treaty on cyber crime.
The convention was initially proposed by the Russian government which objected to the longstanding Budapest Convention on Cybercrime, a Council of Europe-backed initiative dating back to 2004.
Although the European Union (EU), UK and US initially aligned against the convention on the basis they believed it to be a power grab by Russia to increase its control over the wider internet, the Biden administration ultimately rejected human rights concerns and was swayed to back it on the basis that it was felt more important for the US to have a seat at the table.
However, besides supposedly getting tough on ransomware, the convention importantly aligns the criminalising of cyber-enabled offences such as child sexual exploitation, fraud, and the non-consensual sharing of intimate images.
It also establishes a global network to strengthen international law enforcement collaboration with a constant point of contact in every state to assist in cross-border investigations.
Weatherproofing. Every model needs a weatherproof rating to survive outside, so if you don’t see one, don’t buy it. There’s usually a lower rating for the control box compared to the rest of the lights, so be sure you can put that somewhere that’s a little less exposed to the elements. (As mentioned above, make sure you have an outdoor outlet, and check if there’s only one on a certain side of your home in case it limits your installation options.)
A range of installation options. You’ll want a set that comes with plenty of options for your own installation, including adhesive and drilled mounting options. What you need will vary based on your home design and materials; e.g., you’ll want adhesive for homes you can’t drill into. WIRED reviewer Kat Merck, who tested a couple different permanent lights, especially liked sets that had holders you screw onto your home that the puck-style permanent lights can slide onto.
Controls for individual lights. This should be a no-brainer, but some cheaper lights won’t give you this ability or have more roadblocks for customized control. Make sure you’ll have easy individual controls, or you might find yourself frustrated with the design results of these lights. It’s similar to design controls that you’d see on smart bulbs and smart string lights.
A great app. This goes hand in hand with the need for individual light control—a good app determines whether that and other features are accessible. Govee and Eufy, two of our favorite permanent outdoor lights we’ve tried, both have good apps that are easy to use and come with preloaded designs. These tech companies make more than just outdoor lights and make other favorite gear of ours, so they’re a good brand to trust to make a usable product and app. We also like Lepro’s more affordable lights, though the app had some extra hoops to jump through to get to controls, while Lumary’s app was a brutal experience for our tester.
Our Favorite Permanent Outdoor Lights
We’ve tested a handful of permanent lights on different homes, and have a few clear favorites. These options are all ones we recommend, provided your home exterior meets the constraints mentioned above.
Govee
Permanent Outdoor Lights Pro
This model from Govee has been one of our top picks in our smart Christmas lights review for a reason, and it’s still one of our favorite models at this price point for everything you’ll get with it. WIRED reviewer Simon Hill tested the 100-foot string that came with six sections, plus an extension code. He used adhesive and screw clips to secure the light pucks and cables, and found installation easy. This is a set that you can cut and splice, but he says that isn’t a task for the faint of heart. It has an IP67 rating, and an IP65 rating for the control box. The busy companion app has everything you could want within it: color controls, tons of Scenes (Govee’s lighting effects), scheduling abilities, and even a music sync option (though that felt a little gimmicky). There’s Matter support, and Govee can connect to Alexa and Google’s ecosystems for voice control. Simon says he’d like these lights to be closer together and the design to be a little more subtle, as you can see the cords pretty easily.
Eufy
Permanent Outdoor Lights S4
WIRED reviewer Kat Merck has tested two different sets of permanent outdoor lights on her home, and Eufy’s S4, incorporating RGB with both warm and cool whites, is by far her favorite. She’s found the app incredibly easy to navigate and find the features she wants, from preset holiday scenes (120!) and colors to schedules and brightness adjustments. There’s even an AI feature that lets you create customized light shows based on moods and scenarios. They were relatively easy to install on her home, which has nonstandard architectural features, as this set has extensions and can be cut and spliced. She says the lights aren’t quite as bright as the Lumary Max set below, but the brightness is adjustable. There’s also a radar motion sensor included, which she’s still testing. The Eufy S4 set also works with the Matter protocol, so it will work with Apple, Google, and Alexa’s smart home ecosystems. It’s got a waterproof rating of IP67 like the Govee set above.
Cync
Dynamic Effects Outdoor Smart Eave Lights
Cync, which comes from appliance maker GE, makes affordable smart bulbs and other smart lights I like, so it’s not a huge surprise that I also liked the brand’s Smart Eave Lights. They were easy to install with 3M sticky strips already installed on the individual lights, and since my eaves are out of safe reach on my townhouse, I used the lights on my balcony railing with great success. One piece of the 100-foot set (it comes with four strings, plus an extension) was the perfect length to loop around my 9-foot-long railing. The set quickly connected to the Cync app, and the power cord is nice and long to make it easy to reach wherever your power outlet is. It has a waterproof rating of IP65.
If You Can’t Install Permanent Outdoor Lights
Not every home is a good fit for these types of lights. I haven’t yet found a permanent light set that works with my home, so here’s what I’ve used instead for a similar result.
Twinkly
Strings Multicolor
These lights are photographed on a tree, but they have a weatherproof rating of IP44 (for both the lights and the power supply) to be used outside. I love how much you can customize these lights. You’ll use the app to take a photo of however you’ve set up your lights, whether that’s around the tree, around your balcony’s railing, or along the front of your house, and then you’ll be able to customize the lights and pattern based on how you arranged it. There are tons of fun light designs already in the app, and you can make your own. It’s a good option if you can only do string lights but want smart capabilities. These lights are also compatible with Amazon’s, Google’s, and Apple’s ecosystems. Twinkly also makes an icicle-style smart light string ($110), which I love using outside too; they’re currently hanging above my garage door.
More Outdoor Lights We’ve Tested
Cync Outdoor Light Strip for $154: I was really hoping this would be a good solution for outdoor lights for my balcony, but this light strip is heavy and tall, and better designed to use to line a yard versus sticking onto the side of a railing. It comes with grass stakes to line it.
Lepro’s E1 AI for $153 (50 ft): These permanent outdoor lights are completely sold out right now, but they are another more affordable option. However, they aren’t as cheap as Cync and you will have to get around the app’s AI to really get the most out of it.
Lumary Outdoor Permanent Lights Max ($260 for 105 ft.): Lumary’s lights were frustrating and limiting for our tester. The app wasn’t intuitive or easy to use, and our tester actually had to have the power box replaced after she tried to connect the lights to a different phone. She liked how bright the lights were, and the fact there’s a physical remote, but the app, power box shutdown, and installation limitations compared with other sets (no splicing ability, installation recommended from the left) make this one we’d skip. Lumary has since released an updated version of its outdoor permanent lights, the Permanent Outdoor Lights 2, which includes a completely redesigned app, including the addition of custom-scene saving, but we haven’t tested them yet.
FAQs
What Are the Cons of Permanent Christmas Lights?
The only real downside to permanent Christmas lights, or permanent outdoor lights of any kind, is the cost. These sets usually cost significantly more than a light string, even the smart ones. That’s because they’re designed to last longer on your home, and the more expensive sets allow you to cut and splice the cords to perfectly fit your home instead of dangling strings and extra lights. It’s an investment, but one you can enjoy year-round.
Are Permanent Outdoor Lights Worth It?
Yes, because you’ll install them once and be good to go with every holiday in your future: Christmas! Halloween! Your fave sports team headed to a big championship match! Your kid’s graduation (or your own)! Similar to how smart bulbs can give you so many options inside your home, the possibilities are endless and something you’ll be able to use and enjoy year-round.
How Does WIRED Test Permanent Outdoor Lights? What Happens When We’re Done Testing?
WIRED tests permanent outdoor lights on the homes of our reviewers. We’ve tested these lights on three different homes in separate areas with serious weather: Washington state, Missouri, and Scotland. We’ve also tested a set in the more mild climate of Southern California. We install these on the homes themselves and leave them up for at least a few weeks, if not months and years (depending on performance), to see how they hold up. Our picks remain on our homes for long-term testing, as these lights are supposed to be permanent, and used sets are safely disposed of.
If you want to get into stargazing in 2025, there’s still a chance to catch some of the best meteor showers of the year. Also known as shooting stars, meteors happen when Earth’s orbital path crosses a path of debris left by a comet and that material burns up in the Earth’s atmosphere. Watching a meteor shower is one of the most accessible ways to engage with the night sky.
The next shower are the Geminids, a busy and bright shower that peaks in mid-December, offering the chance to see hundreds of shooting stars each hour. This is just one of nine major meteor showers that grace skies throughout the year, and details of when they will appear in the northern hemisphere are listed below—so mark your 2026 calendar for these.
The Next Big Meteor Shower: The Geminids
The Geminids are active from about December 4 to December 17, peaking overnight from December 13 to December 14. They have a sharp peak, so the night of the 13th is the best time for skywatching.
The Geminids are the most spectacular meteor shower of the year. In addition to boasting up to 120 or even 150 meteors per hour during its peak, this meteor shower is also the brightest and most colorful of the year.
The Geminids are bright, slow-moving meteors that often have yellow tones, but they can be a range of other colors, including green, blue, white, red, or orange. And unlike most meteors, which are caused by comet debris, the Geminids are the remnants of an asteroid.
The night that the Geminids peak, their radiant, the constellation Gemini, will be above the horizon all night and will reach its highest point around 2 am local time, so meteors will be visible almost the whole night.
That same night, the moon will be about 32 percent illuminated and will rise around 1:30 am in the eastern US, so if you watch this shower shortly after midnight, the moonlight won’t interfere with your viewing experience.
How to Watch a Meteor Shower
You don’t need any special equipment to see a meteor shower—in fact, using devices like binoculars or telescopes actually prevents you from seeing meteors, because they travel too fast to be seen through the lenses of such equipment. All you need are your eyes, a dark sky with little to no moonlight, and a location that’s away from excess light, as moonlight and light pollution can wash out shooting stars.
Note that the moon appears (rises) and disappears (sets) in the night sky at different times depending on what time zone you are in. All moonrise/moonset times in this piece are for the eastern US. You can use tools like Time and Date’s moonrise/moonset calendar or this tool from the US Naval Observatory to check the precise moonrise/moonset times in your exact location.
Managing complex responsibilities is a common task for digital leaders. However, for Erik Mayer, transformation chief clinical information officer (CCIO) at Imperial College London and Imperial College Healthcare NHS Trust, the mix of responsibilities is central to his role.
He spends about 40% of his time in the clinic and the rest helping to define the future of digital healthcare.
“I enjoy both roles because, actually, they should be intertwined,” he says. “I have many conversations with clinical and academic colleagues who say, ‘Can I get access to this data?’ That’s why it should be intertwined, because what you put in is what you get out.”
Mayer’s successful transition from the surgery room to the IT department began during his PhD research from 2006 to 2009, when he analysed data to produce evidence for centralising cancer services and improving patient care. Through his role at the trust, he became involved in technology implementation projects.
“I’ve always been in and around data and producing robust evidence for why we should or shouldn’t do things,” he says.
“Then, at Imperial Trust, I was a surgical trainee and became involved in IT, informatics and data warehouse-type environments. I was heavily involved in the work when we went live with the Cerner electronic patient record in 2014.”
As Mayer’s experience grew, so did the opportunities to move into new areas. In 2018, after a competitive process, he was appointed to his current role. He has continued to expand his compass while working on the healthcare frontline.
“I wanted to be forward-thinking about creating secure environments to support access to data for driving research and innovation,” he says.
“I wear many hats. I’m a practising surgeon, transformation CCIO, clinical social professor in Imperial College, and I head up the directorate of the iCARE Secure Data Environment (SDE), which is a digital collaboration space that spans the university and the trust.”
Fostering collaboration
Looking back on his seven years in the CCIO role, Mayer says the data environment has evolved into today’s cloud-based platform using Microsoft Azure and Snowflake technology. He says the transformation process was accelerated during the coronavirus pandemic.
“We’d already set up the environment and had some exemplar projects going on where we were supporting healthcare delivery in the trust,” he says.
“Then Covid hit and, suddenly, there was a huge appetite and urgency about accessing data to support basic decision-making around operational processes.”
These processes included monitoring the number of people with the virus and moving patients around the hospital to free up intensive care beds. Through a collaboration with the North West London Integrated Care Board, Mayer and his peers brought together two key datasets, making it possible to track trends across 2.8 million people.
“I wear many hats. I’m a practising surgeon, transformation CCIO, clinical social professor in Imperial College, and I head up the directorate of the iCARE Secure Data Environment”
Erik Mayer, Imperial College Healthcare NHS Trust
“That created a burning platform for data,” he says, looking back on the interest in information that this initiative helped to foster for the longer term. “Today, that data is now fully migrated and held in the same secure environment as the Imperial Trust data, as well as other databases across different tendencies.”
Mayer says having all these databases together in a secure data environment makes it easier for people to link insights. This capability has changed the mindset of people using data. Previously, particularly in the academic world, people and organisations had to set up data-sharing agreements. Now, collaboration is fast becoming the standard way of working.
“This project brought people into the data environment to do their research and innovation. That approach brought academics together with clinicians and data scientists, meaning we could get quick answers around risk prediction and other insights,” he says.
“Our digital transformation was about bringing the right multidisciplinary people together to work collaboratively in a secure way. Fundamentally, of course, by doing that, you maintain the public trust because you’re not selling data off or moving it around.”
Integrating data
Mayer says the implementation of Snowflake technology has been a crucial component of his data-led approach to digital transformation. While it took weeks to ingest data using previous legacy architectures, the Snowflake AI Data Cloud enables data ingestion in days, supporting the work of healthcare professionals in various roles in a secure environment.
“A lot of the projects are research, but we also focus on direct care,” he says. “So, for example, there are several dashboards that are supporting our clinicians in understanding patients and high-risk cohorts. So it’s direct care research, but it’s also about operational decision-making and efficiencies.”
Our digital transformation was about bringing the right multidisciplinary people together to work collaboratively in a secure way Erik Mayer, Imperial College Healthcare NHS Trust
The organisation is also tapping into the Snowflake Marketplace, an online platform where users source third-party data for its use in the AI Data Cloud. Through the marketplace, research and clinical teams have access to additional non-health data for research and clinical care. Potential sources include Ordnance Survey and the Met Office.
“This is an interesting area for us,” says Mayer, referring to the use of marketplace data. “We’re just starting on this journey. With some of the data, for example, you can start to understand where people live, what services they’re accessing, and why.”
This in-depth detail will be crucial as organisations attempt to support the long-term vision of the NHS 10-year health plan for neighbourhood-based healthcare services.
“You have the evidence to show what is happening, so you can start to plan better,” he says. “Bringing together data is now a way to help us support hospitals and the community.”
Mayer and his colleagues are exploring other ways to exploit the platform. One key use case is federation, including how other trusts in north-west London can share primary and secondary care data. Another use case is artificial intelligence (AI). The data team’s AI testbed in its SDE is supported by Snowflake and Accenture, with secure access to Microsoft AI services and models.
“If you can leave the source data in the separate SDEs and then federate to allow algorithms to run across those sources, you’re not duplicating the cost and resources,” he says.
“So, that’s the piece we’re just developing across environments, which will support, again, operational efficiency, direct care and, of course, research.”
“The interoperability piece for sharing information on individual patients across healthcare providers is critical,” he says. “Just in terms of time savings, you’re not having to sit there trying to understand what’s happened so far – it’s all linked up. And I’m seeing that in my practice now, it’s happening. That kind of federation is a game-changer.”
“These initiatives have gone a long way already to providing a front door for access to data with an explanation around what it is, the clinical definitions and the metadata,” he says.
“We don’t need to reinvent the wheel. We need to build on what we’ve got so far, because that effort has been developing well over the last three or four years.”
This progress includes work in his own organisation. “Within the iCARE SDE, we have built the London analytics platform,” he says.
“We are one half of the London Secure Data Environment, so we are providing that architecture, and the data will start flowing soon. This effort is not just about our trust. It’s a framework that will support the national agenda.”
The NHS has a chequered history when it comes to IT initiatives. However, Mayer says the progress that’s been made recently in data-led projects is impressive. While digital transformation across large-scale organisations can be a challenging process, he’s positive about the opportunities ahead for UK healthcare.
“Now, I think there’s a requirement for a careful thought piece around how local NHS trusts fund, resource and keep up with change, and thinking about business intelligence units, and how those areas start to shape up,” he says.
Leading transformation
Mayer reflects on the pace of change. He suggests the speed of transformation continues to quicken and that AI will play a crucial role in the future of healthcare.
From optimising schedules to reducing the administrative burden by automating clinician note-taking, emerging technologies can have a big impact. However, the key to success is identifying the right, trusted technological solutions for the business challenges.
“We need to think about the problem and the opportunity, and then look at the technology to support us, as opposed to going, ‘AI is going to solve everything’,” he says.
“We’ve got to maintain the public trust around this transformation. They’re starting to engage with these technologies, so we must consider the digital literacy piece.”
This rapid pace of change can bring new and unexpected challenges to healthcare technologists. Mayer says effective digital leaders will develop professional resilience and respect by building a sense of social capital.
“It’s about being clear about the benefits and impact of what everyone’s doing as a multi-disciplinary team,” he says. “Our team includes data engineers, data scientists, clinicians and nurses. If they can feel, metaphorically, the impact and see the effect on care delivery, then they know they’re making a difference.”
Mayer says those results also inspire him. “As a leader, I see that impact, and that’s what gets me out of bed every day,” he says. “Essentially, successful delivery is about that team environment – it’s having a clear message and clear social capital where you say, ‘This is what we’re trying to do and why’.”