Skip to content
Search

Latest Stories

M&S mum on Indian contractor as ‘weak link’

M&S mum on Indian contractor as ‘weak link’

M&S has trebled its tech spending in three years to strengthen cyber defences

MARKS & SPENCER said hackers broke into its systems by tricking employees at a third-party contractor, skirting its digital defences to launch a cyberattack that will disrupt the retailer for months.

Giving the first details since disclosing the breach on April 22, chief executive Stuart Machin said all companies were vulnerable, and M&S had boosted its defences by trebling tech spending in the last three years. M&S has an IT contract with Tata Consulting Services. One source familiar with the matter told Reuters it was a means of access. TCS declined to comment. Machin declined to comment on TCS specifically when asked if it was the weak link.


“Unable to get into our systems by breaking through our digital defences, the attackers did try another route resorting to social engineering and entering through a third party rather than a system weakness,” he told reporters.

“Once access was gained, they used highly sophisticated techniques as part of the cyber attack.”

Machin declined to comment on any ransom demand, citing advice from government agencies and law enforcement.

M&S stopped online sales.

It said last Wednesday (21) they were unlikely to be fully restored until July.

Machin said M&S became aware of the breach when it spotted suspicious activity during the Easter weekend of April 19-20.

He said the time between the hackers gaining access and detection was “short”. Experts told the company that the average was 10 days and in some cases many months.

The National Crime Agency told the BBC the attack investigation was focused on a cluster of young, Englishspeaking hackers.

M&S, which has sales of nearly £14 billion a year, immediately called in experts, partners and authorities, Machin said.

Some 600 systems had been scanned for damage, he said, and they were gradually being brought back online.

More For You

Octopus Energy Unveils Smart Home EV Charger to Slash Charging Costs

It follows a broader strategy by Octopus Energy to offer home energy hardware

Getty Images

Octopus Energy unveils first smart home EV charger to cut charging costs

Octopus Energy, the UK’s largest electricity supplier, has launched its first home electric vehicle (EV) charger, named Octopus Charge. The charger is designed to integrate with the company’s smart energy system to enable cost-effective and environmentally friendly charging.

Smart charging through Kraken platform

The new Octopus Charge device connects to the energy supplier’s proprietary Kraken platform, which automatically adjusts charging to coincide with times when electricity is cheapest and greenest. This enables EV owners to take advantage of lower rates and reduce their carbon footprint.

Keep ReadingShow less
Record-breaking data breach

The data is spread across 30 different datasets

iStock

Record-breaking data breach exposes 16 billion credentials, raising global cybersecurity concerns

A massive new cybersecurity report has revealed what experts are calling the largest data breach in history, involving over 16 billion login credentials. The records, uncovered by researchers at Cybernews, appear to come from a variety of sources and have raised alarm bells across the tech and cybersecurity industries.

Unprecedented scale of exposure

The data is spread across 30 different datasets, with individual troves containing between tens of millions and more than 3.5 billion credentials each. In total, the exposed records add up to 16 billion, a staggering number that equates to more than two credentials for every person on Earth.

Keep ReadingShow less
leaders discussed the new Defence Cooperation Accord between the UK and Bahrain,

The leaders discussed the new Defence Cooperation Accord between the UK and Bahrain, aimed at deepening joint military training and naval ties.

Crown Prince of Bahrain's website

UK and Bahrain strengthen defence and investment ties

PRIME MINISTER Keir Starmer met Crown Prince Salman bin Hamad Al Khalifa, prime minister of Bahrain, at Downing Street on Thursday.

A Downing Street spokesperson said the leaders discussed the UK-Bahrain relationship and welcomed the UK becoming a full member of the Comprehensive Security Integration and Prosperity Agreement (C-SIPA), a trilateral pact with Bahrain and the United States focused on regional security.

Keep ReadingShow less
Swiss banks

Funds held in customer accounts by Indian clients rose by 11 per cent in the year to 346 million Swiss francs (£3.14m) and accounted for about one-tenth of overall funds.

iStock

Indian funds in Swiss banks triple to £3.1bn in 2024

INDIAN money in Swiss banks more than trebled in 2024 to 3.5 billion Swiss francs (£3.1bn), attributed to a rise in funds held through local branches and other financial institutions, annual data released by Switzerland's central bank showed on Thursday (19).

However, funds held in customer accounts by Indian clients rose by 11 per cent in the year to 346 million Swiss francs (£3.14m) and accounted for about one-tenth of overall funds, the report showed.

Keep ReadingShow less
Bank of England

In a statement, the central bank pointed to a recent rise in energy prices, citing the 'escalation of the conflict in the Middle East' as a factor.

Getty Images

Bank of England holds interest rate at 4.25 per cent

THE BANK OF ENGLAND (BoE) kept its key interest rate at 4.25 per cent on Thursday, citing persistent inflation and rising risks from US tariffs and the conflict between Israel and Iran.

The decision, which was widely expected, came a day after the US Federal Reserve also left its interest rates unchanged, pointing to continued inflation and slowing growth in the United States.

Keep ReadingShow less