Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Headlines > M&S, Co-op cyberattackers duped IT help desks into resetting passwords, says report
    Headlines

    M&S, Co-op cyberattackers duped IT help desks into resetting passwords, says report

    M&S, Co-op cyberattackers duped IT help desks into resetting passwords, says report

    Published by Global Banking and Finance Review

    Posted on May 6, 2025

    Featured image for article about Headlines

    LONDON (Reuters) -Cyberattacks on Britain's Marks & Spencer and Co-op Group started with hackers impersonating employees while contacting the retailers' IT help desks, technology specialist site BleepingComputer reported.

    The site said the hackers were able to convince the help desks to reset the impersonated employees' passwords so they could gain access to the network.

    It said this is why Britain's National Cyber Security Centre has recommended that all companies review their help desk processes to detect and block these types of breaches.

    "Criminal activity online – including, but not limited to, ransomware and data extortion – is rampant. Attacks like this are becoming more and more common. And all organisations, of all sizes, need to be prepared," Jonathon Ellison and Ollie Whitehouse, respectively national resilience director and chief technology officer at Britain's cyber security centre, said in a joint blog post.

    Both M&S and the Co-op declined to comment on the BleepingComputer report.

    Shares in M&S were down 4% on Tuesday, extending losses since it first disclosed the cyber incident on April 22 to 12%.

    On April 25, M&S stopped taking clothing and home orders through its website and app.

    It has not said when online ordering will resume, while the availability of some food products has also been affected. It has also not disclosed the financial impact.

    Analysts at Deutsche Bank estimate a profit hit of about 30 million pounds ($40 million) so far and the run rate at about 15 million pounds a week, given the knock-on effect on food.

    They said cyber insurance would likely cover most of the 30 million pounds but that cover is generally for a limited amount of time.

    "The biggest costs from a cyber attack is usually the cost of lost business and, if sensitive consumer data is compromised, any fines and loss of reputation," they said.

    Other expenses include immediate remediation with external cyber security and IT technology partners and future-proofing the business.

    The disruption could last for weeks.

    Ciaran Martin, the former CEO of the National Cyber Security Centre told Reuters that, after such a serious attack, the length of the recovery period at M&S was not unusual so far, given the need to rebuild computer networks.

    Last week, a group calling itself DragonForce told the BBC it had stolen the data of staff and potentially 20 million customers from the Co-op and was also behind attacks on M&S and London department store Harrods.

    BleepingComputer, citing multiple sources, had previously said the attack on M&S was believed to have been conducted by a hacking collective known as "Scattered Spider" deploying DragonForce ransomware.

    The National Cyber Security Centre said it could not say if the attacks were linked.

    ($1 = 0.7526 pounds)

    (Reporting by James Davey; editing by Barbara Lewis)

    Related Posts
    UK's Prince William and son George volunteer at homelessness charity
    UK's Prince William and son George volunteer at homelessness charity
    Exclusive-US seizes vessel off Venezuelan coast, officials say
    Exclusive-US seizes vessel off Venezuelan coast, officials say
    US offers new talks format including Russia and Ukraine, Zelenskiy says
    US offers new talks format including Russia and Ukraine, Zelenskiy says
    Escalating Russian airstrikes aim to cut Ukraine off from sea, Zelenskiy says
    Escalating Russian airstrikes aim to cut Ukraine off from sea, Zelenskiy says
    Stellantis CEO says investments at risk in Europe after EU auto package
    Stellantis CEO says investments at risk in Europe after EU auto package
    French presidential silverware keeper faces trial over suspected porcelain theft
    French presidential silverware keeper faces trial over suspected porcelain theft
    Ukraine and Portugal agree on co-production of Ukrainian sea drones
    Ukraine and Portugal agree on co-production of Ukrainian sea drones
    Italian police arrest 384, seize 1.4 tonnes of drugs in nationwide crackdown
    Italian police arrest 384, seize 1.4 tonnes of drugs in nationwide crackdown
    How Brazil's deadliest police raid turned into a bloodbath
    How Brazil's deadliest police raid turned into a bloodbath
    Bangladesh holds state funeral for slain youth leader amid tight security
    Bangladesh holds state funeral for slain youth leader amid tight security
    Ukraine says it hit Russian oil rig, patrol ship in Caspian Sea
    Ukraine says it hit Russian oil rig, patrol ship in Caspian Sea
    US, Russian officials to meet in Florida for more Ukraine talks
    US, Russian officials to meet in Florida for more Ukraine talks

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    More from Headlines

    Explore more articles in the Headlines category

    US hits ISIS in Syria with large retaliatory strikes, officials say

    US hits ISIS in Syria with large retaliatory strikes, officials say

    Australia PM says Jewish community 'completely unbreakable' after Bondi attack

    Australia PM says Jewish community 'completely unbreakable' after Bondi attack

    Russia's Dmitriev heading for US to meet Witkoff, Kushner, source says

    Russia's Dmitriev heading for US to meet Witkoff, Kushner, source says

    IMF welcomes EU's 90 billion euro loan to Ukraine, more work to be done

    IMF welcomes EU's 90 billion euro loan to Ukraine, more work to be done

    Israeli attack on school shelter in Gaza City kills 5 Palestinians, hospital chief says

    Israeli attack on school shelter in Gaza City kills 5 Palestinians, hospital chief says

    Russian missiles attack port near Ukraine's Odesa, kill seven, officials say

    Russian missiles attack port near Ukraine's Odesa, kill seven, officials say

    Rubio says new governance bodies for Gaza will be in place soon, followed by international force

    Rubio says new governance bodies for Gaza will be in place soon, followed by international force

    Musk wins appeal that restores 2018 Tesla pay deal now worth about $139 billion

    Musk wins appeal that restores 2018 Tesla pay deal now worth about $139 billion

    US intelligence indicates Putin's war aims in Ukraine are unchanged

    US intelligence indicates Putin's war aims in Ukraine are unchanged

    Bondi attack suspects kept to themselves during Philippines stay, hotel staffer recalls

    Bondi attack suspects kept to themselves during Philippines stay, hotel staffer recalls

    UK children's author David Walliams dropped by publisher after harassment allegations

    UK children's author David Walliams dropped by publisher after harassment allegations

    Germany removes dividend ban for Uniper, paving way for IPO

    Germany removes dividend ban for Uniper, paving way for IPO

    View All Headlines Posts
    Previous Headlines PostEU plans tariffs on 100 billion euros of US goods if talks fail, Bloomberg News reports
    Next Headlines PostEU and UK to hold annual summits, draft statement shows