‘They wanted $4m’: Lessons for M&S from other cyber attacks

Cyberattacks on M&S and Others Reveal Costly Lessons in Resilience and Recovery
Photo: BBC

Cyberattacks on M&S and Others Reveal Costly Lessons in Resilience and Recovery

Marks & Spencer (M&S) is currently grappling with the aftermath of a ransomware attack that disrupted its operations. The incident follows similar high-profile cases, such as that of the Harris Federation, a UK school group targeted by the Russian hacking group REvil, who demanded $4 million in cryptocurrency. Instead of paying, Harris Federation hired cyber negotiators to delay the attackers and managed to recover systems over three months at a cost of £750,000. Other victims have included small businesses like wedding dress designer Catherine Deane, whose Instagram was hacked, and London hospitals impacted by an attack on the pathology firm Synnovis, disrupting critical medical services. M&S has been tight-lipped about the specifics of its breach, but self-identified employees described widespread internal disruptions and a return to manual processes. The broader retail sector is now on high alert, with firms rapidly patching systems to avoid similar attacks. Experts stress that as reliance on digital infrastructure increases, so too does vulnerability. The UK government’s cybersecurity breaches survey found that 74% of large businesses were targeted in the past year, emphasizing the urgent need for robust cyber defenses across all sectors.

Leave a Reply

Your email address will not be published. Required fields are marked *