Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Will Humans Live Forever? AI Races to Defeat Aging
    • AI evolves itself to speed up scientific discovery
    • Australia’s privacy commissioner tried, in vain, to sound the alarm on data protection during the u16s social media ban trials
    • Nothing Phone (4a) Pro Review: A Close Second
    • Match Group CEO Spencer Rascoff says growing women’s share on Tinder is his “primary focus” to stem user declines; Sensor Tower says 75% of Tinder users are men (Kieran Smith/Financial Times)
    • Today’s NYT Connections Hints, Answers for April 20 #1044
    • AI Machine-Vision Earns Man Overboard Certification
    • Battery recycling startup Renewable Metals charges up on $12 million Series A
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Monday, April 20
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»Tech Analysis»The true cost of cyber hacking on businesses
    Tech Analysis

    The true cost of cyber hacking on businesses

    Editor Times FeaturedBy Editor Times FeaturedOctober 6, 2025No Comments11 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link


    Theo Leggett profile imageTheo LeggettWorldwide Enterprise Correspondent

    BBC JLR and M&S logos and hands at a computerBBC

    The primary day of September ought to have marked the start of one of many busiest durations of the yr for Jaguar Land Rover.

    It was a Monday, and the discharge of latest 75 sequence quantity plates was anticipated to provide a surge in demand from keen automotive patrons. At factories in Solihull and Halewood, in addition to at its engine plant in Wolverhampton, workers have been anticipating to be working flat out.

    As a substitute, when the early shift arrived, they have been despatched dwelling. The manufacturing strains have remained idle ever since.

    Although they’re anticipated to renew operations within the coming days, it will likely be in a sluggish and thoroughly managed method. It may very well be one other month earlier than output returns to regular. Such was the impression of a significant cyber assault that hit JLR on the finish of August.

    It’s working with varied cyber safety specialists and police to research, however the monetary harm has already been finished. Over a month’s value of worldwide manufacturing was misplaced.

    Analysts have estimated its losses at £50m per week.

    Getty Images A general view of the JLR signage outside the Jaguar Land Rover electric propulsion manufacturing centreGetty Photos

    JLR’s manufacturing strains have been left idle after the agency confronted a cyber assault on the finish of August

    For a corporation that made a £2.5bn revenue within the final monetary yr, and which is owned by the Indian big Tata Group, the losses must be painful however not deadly. However JLR isn’t an remoted incident.

    To this point this yr there was a wave of cyber assaults concentrating on large companies, together with retailers reminiscent of Marks & Spencer and the Co-op, in addition to a key airport programs supplier. Different excessive profile victims have included the kids’s nursery chain Kido, whereas final yr incidents involving Southern Water and an organization that supplied important blood assessments to the NHS raised severe considerations in regards to the vulnerability of crucial infrastructure and providers.

    In all, a authorities run survey on cyber safety breaches estimates 612,000 companies and 61,000 charities have been focused throughout the UK. So simply how a lot are assaults like these costing companies and the financial system?

    And will or not it’s, as one professional analyst places it, that this yr’s main assaults are the results of a “cumulative impact of a form of inaction” on cyber safety from the federal government and companies that’s now beginning to chew?

    Pyramid of suppliers affected

    What is critical about an assault on the size of the one which hit JLR is simply how far the results can stretch.

    The corporate sits on the high of a pyramid of suppliers, 1000’s of them. They vary from main multinationals, reminiscent of Bosch, right down to small corporations with a handful of staff, and so they embrace firms that are closely reliant on a single buyer: JLR.

    For a lot of of these corporations, the shutdown represented a really actual menace to their enterprise.

    In a letter to the Chancellor on 25 September, the Enterprise and Commerce Committee warned that smaller corporations “might have at finest per week of cashflow left to help themselves”, whereas bigger firms “might start to significantly battle inside a fortnight”.

    Business analysts expressed considerations that if firms began to go bankrupt, a trickle may quickly turn into a flood – doubtlessly inflicting everlasting harm to the nation’s superior engineering trade.

    Resuming manufacturing doesn’t mechanically imply the disaster is over both.

    “It has come too late,” explains David Roberts, who’s the Chairman of Coventry-based Evtec, a direct provider to JLR, with some 1,250 staff.

    “All of our firms have had six weeks of zero gross sales, however all the prices. The sector nonetheless desperately wants money.”

    From Co-op to Marks & Spencer

    A current IBM report, which checked out information breaches skilled by about 600 organisations worldwide discovered that the common price was $4.4m (or £3.3m).

    However JLR is much from an outlier with regards to high-profile cyber assaults on an excellent higher scale. Marks & Spencer and the Co-op grocery store chain this yr are estimated to have price £300 million and £120 million respectively.

    Over the Easter weekend in April, attackers managed to achieve entry to Marks & Spencer’s IT programs through a third-party contractor, forcing it to take some networks offline.

    Initially, the disruption appeared comparatively minor – with contactless cost programs out of motion, and clients unable to make use of its ‘click on and accumulate’ service. Nevertheless, inside days, it had halted all on-line buying – which usually makes up round a 3rd of its enterprise.

    It was described on the time as “virtually like slicing off considered one of your limbs”, by Nayna McIntosh, former govt committee member of M&S and the founding father of Hope Style.

    Bloomberg via Getty Images A sign outside the entrance to a Marks & Spencer Group Plc (M&S) store on Oxford Street in LondonBloomberg through Getty Photos

    Attackers managed to achieve entry to Marks & Spencer’s IT programs through a third-party contractor

    When the Co-op grocery store chain was hit, the identical group of hackers claimed duty.

    It was, they advised, an try to extort a ransom from the corporate by infecting its networks with malicious software program. Nevertheless the IT networks have been shut down rapidly sufficient to keep away from vital harm.

    Because the criminals angrily described it to the BBC, “they yanked their very own plug – tanking gross sales, burning logistics, and torching shareholder worth”.

    In keeping with Jamie MacColl, a cyber professional on the safety analysis group, the Royal United Providers Institute (RUSI), it’s no shock to see main companies being focused on this approach.

    He says it’s the results of hackers being simply in a position to pay money for so-called ransomware (software program which might lock up or encrypt a sufferer’s pc networks till a ransom is paid).

    “Traditionally, this type of cyber crime… has largely been carried out by Russian-speaking criminals, primarily based in Russia or different elements of the previous Soviet Union”, he explains.

    “However there’s been a little bit of a change within the final couple of years the place English-speaking, largely teenage hackers have been leasing or renting ransomware from these Russian-speaking cyber criminals, after which utilizing it to disrupt and extort from the companies they’ve gained entry to.

    “And people English-speaking criminals do are inclined to give attention to fairly high-profile victims, as a result of they don’t seem to be simply financially motivated: they need to exhibit their ability and get kudos inside this fairly nasty form of hacking ecosystem that we now have.”

    Weak spots of massive enterprise

    What makes firms like Jaguar Land Rover and Marks & Spencer notably weak is the way in which wherein their provide chains work.

    Carmakers have an extended custom of utilizing so-called “just-in-time supply”, the place elements are usually not held in inventory however delivered from suppliers precisely the place and when they’re wanted.

    This cuts down on storage and waste prices. Nevertheless it additionally requires intricate coordination of each side of the provision chain, and if the computer systems break down, the disruption could be dramatic.

    Likewise, a retailer like Marks & Spencer depends on a fastidiously coordinated provide chain to ensure clients the precise portions of recent produce in the precise locations – which equally proves weak.

    Reuters A man types on a computer keyboardReuters

    If computer systems break down, the disruption could be dramatic for these companies that require intricate coordination of each side of the provision chain

    “Different industries have this mannequin too: electronics and high-tech, as a result of it is costly and dangerous to carry stock for a very long time on account of obsolescence. After which different industrial corporations, reminiscent of in aerospace, for comparable causes to automotive,” explains Elizabeth Rust, lead economist at Oxford Economics.

    “So they seem to be a bit extra weak to produce chain disruption from a cyber assault.”

    However she factors out this isn’t the case for industries reminiscent of prescription drugs, the place regulators require corporations to carry minimal ranges of inventory.

    Rethinking lean manufacturing

    Andy Palmer, a former chief govt of Aston Martin who has spent a long time working within the manufacturing sector, thinks the lean manufacturing fashions within the automotive and meals industries want a rethink.

    It’s a main threat, he says, when you’ve got “these programs the place every thing is tied to every thing else, the place the waste is taken out of each stage… however you break one hyperlink in that chain and you don’t have any security.

    “The manufacturing sector has to have one other take a look at the way in which it tackles this newest black swan”, he says, referring to an occasion that’s unexpected however which has vital penalties.

    However in accordance with Ms Rust, companies are unlikely to alter the way in which their provide chains function.

    “Cyber assaults are actually costly… however shifting away from just-in-time administration is doubtlessly much more costly. That is lots of of thousands and thousands, probably, {that a} agency must incur yearly”.

    She believes the prices would additionally make it a steep problem for regulators to demand such modifications.

    ‘The cumulative impact of inaction’

    In late September a ransomware assault on American aviation know-how agency Collins Aerospace induced severe issues at plenty of European airports, together with London Heathrow, after it disabled check-in and baggage dealing with programs.

    The issue was resolved comparatively rapidly, however not earlier than a lot of flights had been cancelled.

    Business sources warn that Europe’s airspace and key airports are so closely congested that disruption in a single space can rapidly unfold to others – and the prices can rapidly add up.

    On this occasion, the knock-on results have been largely confined to widespread delays and flight cancellations. Nevertheless it nods to an even bigger query of what occurs if a hack on crucial infrastructure paralyses monetary, transport or power networks, doubtlessly main to very large financial prices – or worse?

    AFP via Getty Images Travellers wait in terminal 4 at Heathrow AirportAFP through Getty Photos

    A ransomware assault induced severe issues at plenty of European airports, together with London Heathrow final yr

    “I feel the worst-case situation might be one thing affecting monetary providers or power provision, due to the potential cascading results of both of these two”, says RUSI analyst Jamie MacColl.

    “The excellent news is the monetary sector is by far probably the most heavily-regulated sector within the UK for cyber safety. And I feel it is fairly telling, there’s not often been a really impactful cyber assault on a Western financial institution.”

    The outlook, have been there an assault on the power sector, isn’t clear.

    A 2015 research by Lloyds Financial institution, entitled “Enterprise Blackout”, modelled the impression of a hypothetical assault on the US energy grid, concluding that financial losses may exceed $1 trillion (£742bn). Nevertheless Mr MacColl believes that within the UK, there’s most likely sufficient spare capability within the grid to cope with a cyber incident.

    Extra concerningly, Mr MacColl thinks the UK has had “fairly a laissez-faire method to cyber safety over the previous 15 years”, with the problem given little precedence by successive governments.

    He believes that this yr’s main assaults could be the “cumulative impact of a form of inaction on cyber safety, each from the federal government and from companies, and it is form of actually beginning to chew now”.

    That inaction, he says, wants to alter, with each regulators and huge companies taking extra duty.

    Anadolu via Getty Images A check-in kiosk shows that it is unavailableAnadolu through Getty Photos

    Some check-in and baggage dealing with programs have been disabled on account of the assault that affected a number of European airports

    In July final yr the federal government did announce plans to introduce a Cyber Safety and Resilience invoice however its passage to turning into legislation has been repeatedly delayed.

    In Might, GCHQ’s Nationwide Cyber Safety Centre revealed a report warning in regards to the rising impression of cyber threats from hackers utilizing synthetic intelligence-based instruments. It advised that over the following two years, “a rising divide will emerge between organisations that may preserve tempo with AI-enabled threats, and those who fall behind – exposing them to higher threat, and intensifying the general menace to the UK’s digital infrastructure.

    Nevertheless, what worries Jamie MacColl most are the kinds of assaults we’ve not but thought to guard in opposition to.

    “I might be extra involved in regards to the form of firm that’s the solely enterprise that gives a selected service, however that we do not actually find out about, and that is not regulated as crucial nationwide infrastructure”, he says.

    An assault on considered one of these much less glamourous financial pivots, he argues, may have large ramifications by the broader financial system.

    “That is the form of factor that will preserve me up at night time,” he says. “The one level of failure that we aren’t conscious of but.”

    High picture credit score: PA

    BBC InDepth is the house on the web site and app for the most effective evaluation, with recent views that problem assumptions and deep reporting on the most important problems with the day. And we showcase thought-provoking content material from throughout BBC Sounds and iPlayer too. You may ship us your suggestions on the InDepth part by clicking on the button under.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    Francis Bacon and the Scientific Method

    April 19, 2026

    Efficient Design and Simulation of LPDA-Fed Parabolic Reflector Antennas

    April 17, 2026

    IEEE Connects Hardware Startups With Investors

    April 16, 2026

    From RSA to Lattices: The Quantum Safe Crypto Shift

    April 15, 2026

    Stealth Satellite TV Defeats Iran’s Internet Blackout

    April 15, 2026

    Tech Life – Sharing the road with driverless cars

    April 14, 2026

    Comments are closed.

    Editors Picks

    Will Humans Live Forever? AI Races to Defeat Aging

    April 20, 2026

    AI evolves itself to speed up scientific discovery

    April 20, 2026

    Australia’s privacy commissioner tried, in vain, to sound the alarm on data protection during the u16s social media ban trials

    April 20, 2026

    Nothing Phone (4a) Pro Review: A Close Second

    April 20, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    I Clamp Every Accessory I Can to My Desk To Avoid Clutter, and You Should, Too

    March 17, 2026

    Deep Dive into WebSockets and Their Role in Client-Server Communication | by Clara Chong | Feb, 2025

    February 3, 2025

    Hard Rock Casino Tejon officially opens its doors just outside of LA

    November 18, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.