Jaguar Land Rover Cyber Attack
Author
Discussion

Puddenchucker

Original Poster:

5,058 posts

235 months

I have seen this mentioned on here: Jaguar Land-Rover have fallen victim to a Cyber attack causing massive disruption and threatening the survival of some of their suppliers:

https://www.bbc.co.uk/news/articles/czdjn0lv64ro

https://www.telegraph.co.uk/business/2025/09/14/te...

Is this just another nail in JLR's coffin? If some of their key suppliers go under, it will cause JLR problems once they get their systems back up and running.

daddy cool

4,073 posts

246 months

Jaguar's IT team were unavailable for comment:

Bathroom_Security

3,630 posts

134 months

They have cut staff as a result of this.

Xenoous

1,858 posts

75 months

daddy cool said:
Jaguar's IT team were unavailable for comment:

paulw123

4,214 posts

207 months

How about JLR do the decent thing and support their struggling suppliers rather than shrugging or going crying to the government?

Gareth79

8,471 posts

263 months

M&S used Tata Consultancy Services for their IT...

edit: Actually it seems they released a statement saying none of their systems or users were involved, interesting: https://www.reuters.com/business/media-telecom/ind...

JoshSm

1,927 posts

54 months

paulw123 said:
How about JLR do the decent thing and support their struggling suppliers rather than shrugging or going crying to the government?
Whinging to try to get other people to cover the consequences of their failure for their suppliers was a bit cheeky.

On a more general note do people not have disaster recovery plans any more? What happened was a foreseeable risk with entirely predictable financial & reputational cost.

L1OFF

3,563 posts

273 months

paulw123 said:
How about JLR do the decent thing and support their struggling suppliers rather than shrugging or going crying to the government?
My first thought entirely when I read this over the weekend. I always see "government" help as Taxpayer on the hook.

Jim the Sunderer

3,258 posts

199 months

https://www.jlr.com/news/2023/09/jlr-expands-partn...

"JLR expands partnership with Tata Consultancy Services (‘TCS’) to accelerate digital transformation"

Transformation seems complete.

JoshSm

1,927 posts

54 months

Jim the Sunderer said:
Transformation seems complete.
Should have paid closer attention to their requirements, apparently 'smoking hole in the ground' is still compliant.

At least no-one will be troubling the helpdesk KPIs if everything is so borked.

White-Noise

5,296 posts

265 months

Jim the Sunderer said:
https://www.jlr.com/news/2023/09/jlr-expands-partn...

"JLR expands partnership with Tata Consultancy Services ( TCS ) to accelerate digital transformation"

Transformation seems complete.
It's a shame to see it hasn't gone well at JLR, I had a great partnership with TCS when I worked with them. Issue may not come from the work they did, or maybe it did.

I hope JLR survives but I don't get good vibes off them with the cyber stuff and the rebranding.

ThingsBehindTheSun

2,343 posts

48 months

But just think, once they get all their new EVs released the Wokerati will be queueing up to buy Jaguars.

Probably.......

Xenoous

1,858 posts

75 months

White-Noise said:
It's a shame to see it hasn't gone well at JLR, I had a great partnership with TCS when I worked with them. Issue may not come from the work they did, or maybe it did.

I hope JLR survives but I don't get good vibes off them with the cyber stuff and the rebranding.
TCS were complicit in the M&S and Co-op attacks. Their IT team reset passwords for elevated TCS accounts for the attackers which is just incredibly poor security. Apparently, they were able to bypass MFA too, which in this case just likely meant the help desk guy revoked MFA on that account for them. Genuinely shocking how easily they were able to get in.

This coupled with other things that have happened over the last few years (Crowdstrike for example) does make me laugh at these business outsourcing their IT.

SeanyD

3,424 posts

217 months

The attack was first announced on the 2nd, and the latest update on the 10th saying they're still working on it. We're now at the 15th, anyone know if it's been sorted? It's a real shame any business needs to suffer this, and it's increasingly difficult and complex to 100% secure any business from these things.

Mikebentley

7,585 posts

157 months

Why would JLR not survive this? Sounds like a load of exaggeration to me.

Spare tyre

11,633 posts

147 months

I see it all the time

Save £1 today without worry about next week

untakenname

5,164 posts

209 months

It's odd there's not more detail as to what actually happened, especially three weeks in.

The CEO was asked a few days back to report more but they haven't yet responded, imo they shouldn't be asked they should be ordered in front of the committee if there's 250k jobs at risk.

https://committees.parliament.uk/publications/4944...

Usually when there's an large IT outage someone on the inside will details to TheRegister but this hasn't happened yet.


Sheets Tabuer

20,445 posts

232 months

I've been through this with two companies and rebuilt them, I thought having it on my CV would have led to more job offers hehe

Edited by Sheets Tabuer on Monday 15th September 16:02

WelshChris

1,245 posts

271 months

I wonder if the hackers could upload some drawings for some decent looking cars?

Byker28i

77,608 posts

234 months

WelshChris said:
I wonder if the hackers could upload some drawings for some decent looking cars?
Wouldn't it be more likely that manufacturers bringing equivalent EV's to the market, backed by govt investment, might have a reason to spoil the market for competitors. Especially if that govt already had a long history of hacking/attacks etc?