Today's cybersecurity headlines are brought to you by ThreatPerspective


Ethical Hacking News

Marks & Spencer's Cyber Incident: A Cautionary Tale of Online Security Breaches


Marks & Spencer's Cyber Incident: A Cautionary Tale of Online Security Breaches

Marks & Spencer has paused online orders due to an ongoing "cyber incident" that has been causing significant disruptions to its operations. The company has assured customers that they do not need to take any action, but cybersecurity experts are warning of potential phishing attempts and urging the company to take more robust action to mitigate the impact of the breach.

  • Marks & Spencer has paused online orders due to a high-profile cyber incident.
  • The company's cloud was compromised, leading to disruptions in operations.
  • Oracle's cloud was also affected by the breach.
  • Cybersecurity experts warn customers of potential phishing attempts and urge vigilance.
  • Marks & Spencer has declined to provide further details about the nature of the incident or whether any customer data was compromised.



  • Marks & Spencer, a well-established UK retailer, has recently found itself at the center of a high-profile cyber incident. The company has paused online orders for customers via its website and app due to an ongoing "cyber incident" that has been causing significant disruptions to their operations.

    In recent days, Marks & Spencer has experienced a series of issues with returns, Click & Collect orders, contactless payments, and even self-serve return kiosks. The company's chief executive has assured customers that they do not need to take any action, but the ongoing nature of the incident has raised concerns about the potential for further disruptions.

    According to reports, Marks & Spencer initially informed the London Stock Exchange about the incident on Saturday, stating that it had experienced problems with returns and Click & Collect orders. The company later revealed that its cloud was compromised, leading to a pause in online orders.

    Oracle, a leading cloud computing provider, has confirmed that its cloud was also affected by the cyber incident. However, the extent of the breach is still unclear, and Marks & Spencer has declined to provide further details about the nature of the incident or whether any customer data was compromised.

    The incident has sparked concerns among cybersecurity experts, who are urging customers to remain vigilant and take steps to protect themselves from potential phishing attempts. William Wright, CEO at Closed Door Security, warned that attackers may use the incident to send out phishing emails designed to trick recipients into handing over their personal or financial information.

    "Marks & Spencer customers should keep an eye on their online accounts and bank statements, and also be on guard for phishing attempts," Wright said. "We don't know if criminals have accessed any customer data, but it's always safer to be on guard."

    The incident has also raised questions about the effectiveness of Marks & Spencer's cybersecurity measures. The company has been criticized for its handling of the situation, with some experts suggesting that it should have taken more robust action to mitigate the impact of the breach.

    In a statement, Marks & Spencer assured customers that its experienced team, supported by leading cyber experts, is working to restart online and app shopping as soon as possible. The company also thanked its customers, colleagues, and partners for their understanding and support during this challenging time.

    The incident highlights the importance of robust cybersecurity measures in protecting against online threats. As more businesses shift their operations online, the risk of cyber breaches increases. It is essential that companies prioritize cybersecurity and take steps to protect themselves and their customers from potential threats.

    In recent years, the UK has seen a significant increase in cyber attacks, with many high-profile incidents affecting major retailers and organizations. The incident at Marks & Spencer serves as a reminder of the need for businesses to remain vigilant and proactive in protecting against online security breaches.

    The impact of the breach on Marks & Spencer's customers is still unclear, but it is essential that the company takes steps to restore confidence in its cybersecurity measures. By prioritizing the safety and security of its customers, Marks & Spencer can rebuild trust and ensure that its online operations are secure for the foreseeable future.

    In conclusion, the cyber incident at Marks & Spencer serves as a cautionary tale of the importance of robust cybersecurity measures. As more businesses shift their operations online, the risk of cyber breaches increases. It is essential that companies prioritize cybersecurity and take steps to protect themselves and their customers from potential threats.



    Related Information:
  • https://www.ethicalhackingnews.com/articles/Marks--Spencers-Cyber-Incident-A-Cautionary-Tale-of-Online-Security-Breaches-ehn.shtml

  • https://go.theregister.com/feed/www.theregister.com/2025/04/25/ms_halts_online_orders/

  • https://www.theregister.com/2025/04/25/ms_halts_online_orders/?td=amp-keepreading

  • https://www.itpro.com/business/m-and-s-calls-in-ncsc-after-cyber-incident-disrupts-customer-payments-online-orders


  • Published: Fri Apr 25 12:31:26 2025 by llama3.2 3B Q4_K_M













    © Ethical Hacking News . All rights reserved.

    Privacy | Terms of Use | Contact Us