Search

Shopping cart

Saved articles

You have not yet added any article to your bookmarks!

Browse articles
Newsletter image

Subscribe to the Newsletter

Join 10k+ people to get notified about new posts, news and tips.

Do not worry we don't spam!

GDPR Compliance

We use cookies to ensure you get the best experience on our website. By continuing to use our site, you accept our use of cookies, Privacy Policy, and Terms of Service.

M&S boss reveals new details about cyber attack on company

The chairman of Marks & Spencer has told MPs the company is still in "rebuild mode" - and will be for "some time to come" - following a cyber attack which led to empty shelves and limited online operations for months.

Speaking publicly for the first time since the attack, Archie Norman declined to answer whether the business had paid a ransom. "It's a business decision, it's a principal decision," he told members of the Business and Trade Committee (BTC).

"The question you have to ask is - and I think all businesses should ask - is, when they look at the demand, what are they getting for it? "Because once your systems are compromised and you're going to have to rebuild anyway, maybe they've got exfiltrated data that you don't want to publish. Maybe there's something there, but in our case, substantially the damage had been done." When asked again later, Mr Norman said: "We're not discussing any of the details of our interaction with the threat actor, including this subject, but that subject is fully shared with the NCA [National Crime Agency]." He added: "We don't think it's in the public interest to go into that subject on it, because it is a matter of law enforcement." The initial entry into M&S's systems took place on 17 April through "sophisticated impersonation" that involved a third party, Mr Norman said.

It was two days later, on Easter Saturday, before the company became aware of the attack, and approximately a week after the intrusion before the retailer heard directly from the attacker. A day later, after learning of the attack, the authorities were notified, while customers were told on Tuesday 22 April, MPs heard.

As well as British authorities, the FBI was contacted, which is "more muscled up in this zone" and was "very supportive.

Prev Article
Tech Innovations Reshaping the Retail Landscape: AI Payments
Next Article
The Rise of AI-Powered Personal Assistants: How They Manage

Related to this topic:

Comments

By - Tnews 08 Jul 2025 5 Mins Read
Email : 0

Related Post