Scattered Spider Hacking Group Linked to M&S Cyberattack, Causing Payment Disruptions and Supply Issues
Marks & Spencer (M&S) is currently grappling with a significant cyberattack linked to the notorious hacking group Scattered Spider, resulting in over a week of operational disruptions. The British retailer has suspended contactless payments and online orders, while hundreds of agency workers at its main distribution center were sent home. Customers nationwide report empty shelves, with M&S confirming limited product availability due to containment measures. Scattered Spider, identified as one of the most dangerous cybercriminal networks by security experts, has been active since 2022, executing over 100 targeted attacks across telecoms, finance, retail, and gaming sectors. The group, composed largely of English-speaking teenagers from the UK and US, employs tactics like social engineering and SIM swapping to bypass security. Their previous high-profile attacks include ransomware strikes on Caesars Entertainment and MGM Resorts, with Caesars paying $15 million to restore systems. Cybersecurity analysts emphasize the group’s decentralized structure and financial motivations, which complicate law enforcement efforts. M&S has apologized for the inconvenience, assuring customers that stores remain open but urging vigilance.
