Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    ;
    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Headlines > M&S, Co-op cyberattackers duped IT help desks into resetting passwords, says report
    Headlines

    M&S, Co-op cyberattackers duped IT help desks into resetting passwords, says report

    M&S, Co-op cyberattackers duped IT help desks into resetting passwords, says report

    Published by Global Banking and Finance Review

    Posted on May 6, 2025

    Featured image for article about Headlines

    LONDON (Reuters) -Cyberattacks on Britain's Marks & Spencer and Co-op Group started with hackers impersonating employees while contacting the retailers' IT help desks, technology specialist site BleepingComputer reported.

    The site said the hackers were able to convince the help desks to reset the impersonated employees' passwords so they could gain access to the network.

    It said this is why Britain's National Cyber Security Centre has recommended that all companies review their help desk processes to detect and block these types of breaches.

    "Criminal activity online – including, but not limited to, ransomware and data extortion – is rampant. Attacks like this are becoming more and more common. And all organisations, of all sizes, need to be prepared," Jonathon Ellison and Ollie Whitehouse, respectively national resilience director and chief technology officer at Britain's cyber security centre, said in a joint blog post.

    Both M&S and the Co-op declined to comment on the BleepingComputer report.

    Shares in M&S were down 4% on Tuesday, extending losses since it first disclosed the cyber incident on April 22 to 12%.

    On April 25, M&S stopped taking clothing and home orders through its website and app.

    It has not said when online ordering will resume, while the availability of some food products has also been affected. It has also not disclosed the financial impact.

    Analysts at Deutsche Bank estimate a profit hit of about 30 million pounds ($40 million) so far and the run rate at about 15 million pounds a week, given the knock-on effect on food.

    They said cyber insurance would likely cover most of the 30 million pounds but that cover is generally for a limited amount of time.

    "The biggest costs from a cyber attack is usually the cost of lost business and, if sensitive consumer data is compromised, any fines and loss of reputation," they said.

    Other expenses include immediate remediation with external cyber security and IT technology partners and future-proofing the business.

    The disruption could last for weeks.

    Ciaran Martin, the former CEO of the National Cyber Security Centre told Reuters that, after such a serious attack, the length of the recovery period at M&S was not unusual so far, given the need to rebuild computer networks.

    Last week, a group calling itself DragonForce told the BBC it had stolen the data of staff and potentially 20 million customers from the Co-op and was also behind attacks on M&S and London department store Harrods.

    BleepingComputer, citing multiple sources, had previously said the attack on M&S was believed to have been conducted by a hacking collective known as "Scattered Spider" deploying DragonForce ransomware.

    The National Cyber Security Centre said it could not say if the attacks were linked.

    ($1 = 0.7526 pounds)

    (Reporting by James Davey; editing by Barbara Lewis)

    Related Posts
    App developers urge EU action on Apple fee practices
    App developers urge EU action on Apple fee practices
    Luxury goods company Kering and Ardian finalise New York property deal
    Luxury goods company Kering and Ardian finalise New York property deal
    EU weighs scheme to allow combustion-engine vehicles after 2035, Handelsblatt reports
    EU weighs scheme to allow combustion-engine vehicles after 2035, Handelsblatt reports
    Antisemitism allowed to fester in Australia, says daughter of wounded Holocaust survivor
    Antisemitism allowed to fester in Australia, says daughter of wounded Holocaust survivor
    Human‑wave attacks and drones: How Myanmar's junta is fighting back
    Human‑wave attacks and drones: How Myanmar's junta is fighting back
    EU to relent on combustion engines ban after auto industry pressure
    EU to relent on combustion engines ban after auto industry pressure
    US suspends technology deal with Britain, FT reports
    US suspends technology deal with Britain, FT reports
    Taiwan's global credibility on the line with disputed laws, president says
    Taiwan's global credibility on the line with disputed laws, president says
    Trump sues the BBC for defamation over editing of January 6 speech, seeks up to $10 billion in damages
    Trump sues the BBC for defamation over editing of January 6 speech, seeks up to $10 billion in damages
    Europe to launch international commission for Ukraine war damages
    Europe to launch international commission for Ukraine war damages
    South Korea's ADEL signs up to $1.04 billion Alzheimer's drug development deal with Sanofi
    South Korea's ADEL signs up to $1.04 billion Alzheimer's drug development deal with Sanofi
    'Battlefield' maker EA forecasts softer 2026 bookings amid slow spending, crowded holiday slate
    'Battlefield' maker EA forecasts softer 2026 bookings amid slow spending, crowded holiday slate

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    More from Headlines

    Explore more articles in the Headlines category

    Britain clinches upgraded South Korea trade deal

    Britain clinches upgraded South Korea trade deal

    Bondi gunmen were inspired by Islamic State, had travelled to the Philippines, Australia police say

    Bondi gunmen were inspired by Islamic State, had travelled to the Philippines, Australia police say

    Belarus' Lukashenko says Venezuelan President Maduro is welcome to move to Belarus

    Belarus' Lukashenko says Venezuelan President Maduro is welcome to move to Belarus

    Trump says lawsuit against BBC likely to be filed soon

    Trump says lawsuit against BBC likely to be filed soon

    German parliament suffers suspected cyberattack during Zelenskiy’s visit, FT reports

    German parliament suffers suspected cyberattack during Zelenskiy’s visit, FT reports

    European leaders agree Ukraine security guarantees should include European-led peacekeeping force

    European leaders agree Ukraine security guarantees should include European-led peacekeeping force

    UK military chief urges Britain to better prepare for Russia threat

    UK military chief urges Britain to better prepare for Russia threat

    Ukraine says underwater drones hit submarine, but Moscow denies damage

    Ukraine says underwater drones hit submarine, but Moscow denies damage

    Serbia's prosecutor files to indict minister in connection with Kushner project

    Serbia's prosecutor files to indict minister in connection with Kushner project

    French court jails Congo ex-rebel leader for 30 years

    French court jails Congo ex-rebel leader for 30 years

    Italy's Caltagirone group strengthens governance procedure over Generali, MPS stakes

    Italy's Caltagirone group strengthens governance procedure over Generali, MPS stakes

    France says cattle disease under control as farm protests continue

    France says cattle disease under control as farm protests continue

    View All Headlines Posts
    Previous Headlines PostEU plans tariffs on 100 billion euros of US goods if talks fail, Bloomberg News reports
    Next Headlines PostEU and UK to hold annual summits, draft statement shows