惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

人人都是产品经理
人人都是产品经理
博客园_首页
博客园 - 三生石上(FineUI控件)
V
Visual Studio Blog
Hugging Face - Blog
Hugging Face - Blog
美团技术团队
小众软件
小众软件
T
Tailwind CSS Blog
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
月光博客
月光博客
有赞技术团队
有赞技术团队
WordPress大学
WordPress大学
博客园 - 【当耐特】
Apple Machine Learning Research
Apple Machine Learning Research
罗磊的独立博客
V
V2EX
酷 壳 – CoolShell
酷 壳 – CoolShell
IT之家
IT之家
量子位
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Recent Announcements
Recent Announcements
M
MIT News - Artificial intelligence
阮一峰的网络日志
阮一峰的网络日志
The GitHub Blog
The GitHub Blog

The Register - Offbeat: Legal

Noyb cries foul on LinkedIn withholding profile visitor data China makes it illegal to fire humans if AI takes their jobs Databricks fails to shake authors' copyright claim Cloudera allegedly overlooked US job candidates: DoJ Australia threatens tech companies with 2.25 percent tax China blocks Meta's acquisition of AI outfit Manus Scotland Yard can keep using live facial recognition on Londoners, say judges UK tribunal sends £2B claim accusing Microsoft of overcharging for licensing to trial Yet another ex-ransomware negotiator admits turning rogue after payoff from crimelords Americans behind Nork IT fraud sentenced to 200 months Indian government investigating TCS after police sting French cops free mother and son after crypto kidnapping EFF: California 3D printer bill threatens digital freedoms IBM pays up under Trump administration's diversity blitz OpenAI CEO Sam Altman home attack suspect charged AI vs the cold hard reality of the legal profession Big Tech has not enforced Australia’s social media ban Big Tech has not enforced Australia’s social media ban China's not thrilled AI experts want to leave the country China's not thrilled AI experts want to leave the country Patel dodges question about FBI buying location data Patel dodges question about FBI buying location data ChatGPT advised exec on firing Subnautica founders: court Japan to allow ‘proactive cyber-defense’ from October 1st FSF urges AI vendors to liberate LLMs Age verification isn't sage verification when it's inside operating systems India tests whether AI can stop trains hitting elephants Perplexity Comet hurtling toward Amazon ban Lenovo, Nintendo sue US government seeking tariff refunds Google embraces third party app stores and payments
JLR cyber bailout risks dangerous precedent, watchdog warns
Carly Page Carly Page · 2026-03-20 · via The Register - Offbeat: Legal

Cyber-crime

Jaguar Land Rover's cyber bailout sets worrying precedent, watchdog warns

Lack of clear criteria risks encouraging firms to lean on state support instead of worrying about insurance

The UK's cyber watchdog has warned that the government's £1.5 billion bailout of Jaguar Land Rover (JLR) risks setting a troubling precedent for how Britain handles major cyber crises.

Speaking at an event marking the Cyber Monitoring Centre's (CMC) first operational year, Ciaran Martin, chair of the CMC's technical committee and a distinguished fellow at RUSI, said the government's response to the JLR cyberattack could create longer-term problems if repeated without a clear framework.

"I think the loan guarantee is an unfortunate precedent because the government intervened in a case-specific way... without clear criteria," Martin said. "Otherwise you'll just end up with a series of ad hoc precedents that will leave nobody any the wiser."

The warning comes as the country's Ministry of Defence on Friday confirmed that the British Army will retire its Land Rover fleet after more than 70 years of service, as it looks to replace thousands of vehicles with a modern successor.

It follows a year in which the CMC has tried to put hard numbers on the financial impact of major cyber incidents on the UK economy, including the JLR attack, which it estimates cost up to £1.9 billion. Separate attacks on retailers Marks & Spencer and the Co-op were pegged at a combined £355 million.

But beyond the headline figures, the discussion highlighted a deeper problem: the widening gap between the economic damage from cyberattacks and what the insurance market can realistically absorb.

Tracy Poole, chief communications officer at Pool Re, said the cyber insurance "protection gap" could be as high as 90 percent, meaning most losses from large-scale incidents are effectively uninsured. While insurance can cover individual companies, she warned it falls short when the damage spills into supply chains and local economies.

"They can insure a company, but they can't insure a community and the impact on the wider community," she said.

That mismatch helps explain why governments end up stepping in when things go wrong, but Martin warned that doing it without clear rules risks sending the wrong signal. Cybersecurity, he said, is driven by how companies assess risk, and if they think the state will ride to the rescue, they may be less inclined to invest in resilience.

"It would be better to have a framework... rather than a response to events," he said, suggesting options could include mandatory insurance, tax incentives, or some form of government-backed safety net.

Alongside the policy debate, the CMC used the event to show how its work is evolving. The organization said it is working with the Office for National Statistics to introduce post-incident business polling after widespread cyber events, and is preparing a white paper examining the UK's exposure to cloud-related risks.

It also confirmed plans to expand beyond the UK. "We're in the process of establishing a US cyber monitoring center," said CMC head of operations Ruth Goodwin. The effort will start with appointing a technical committee and setting up a US legal entity closely linked to the UK operation, with live incident categorizations potentially landing in 2027.

The move reflects growing demand for clearer, standardized ways of measuring cyber damage, something that remains patchy across the industry. Martin acknowledged that while disruptive ransomware attacks are relatively straightforward to cost, the financial impact of data breaches is far harder to pin down.

That uncertainty, combined with the scale of recent incidents, suggests the UK is only just getting to grips with the true economic fallout of cyberattacks. If the JLR case is anything to go by, the question of who ultimately foots the bill is still very much up for debate. ®