Friday, February 27, 2026
74.1 F
Albuquerque

Marks & Spencer Cyberattack Attributed to Scattered Spider Ransomware Group; Here’s What Happened

British retailer Marks & Spencer (M&S) has been grappling with a significant cyberattack, reportedly orchestrated by the hacking group Scattered Spider. The incident has disrupted operations across the company’s UK stores and online platforms. Attack Overview The cyberattack, identified as a ransomware incident, has been linked to Scattered Spider, a group known for targeting major […]

British retailer Marks & Spencer (M&S) has been grappling with a significant cyberattack, reportedly orchestrated by the hacking group Scattered Spider. The incident has disrupted operations across the company’s UK stores and online platforms.

Attack Overview

The cyberattack, identified as a ransomware incident, has been linked to Scattered Spider, a group known for targeting major corporations. The hackers allegedly infiltrated M&S’s systems in February 2025, extracting the NTDS.dit file—a critical component of Windows Active Directory that stores user credentials. This breach enabled the attackers to access and encrypt the company’s servers using the DragonForce ransomware variant.

Operational Impact

As a result of the attack, M&S has faced widespread disruptions:​

Financial Repercussions

  • Revenue Loss: The disruption in online sales is estimated to have cost the company approximately £3.8 million per day.
  • Market Valuation: M&S’s market value reportedly declined by nearly £700 million following the incident.

Response and Investigation

M&S has engaged cybersecurity firms, including CrowdStrike, Microsoft, and Fenix24, to investigate and mitigate the breach. The company has also reported the incident to the UK’s National Cyber Security Centre and the Information Commissioner’s Office.

While it remains unclear whether M&S has paid or intends to pay a ransom, industry experts caution against such actions, citing potential long-term risks and the possibility of encouraging further attacks.

About Scattered Spider

Scattered Spider, also known as Octo Tempest, is a hacking group comprising individuals primarily from the US and UK. The group has been active since at least 2022 and is known for employing sophisticated social engineering techniques, including phishing and impersonation, to infiltrate corporate networks. They have previously targeted major companies, such as MGM Resorts and Caesars Entertainment.

Ongoing Developments

M&S continues to work towards restoring its systems and services. Customers are advised to remain vigilant against potential phishing attempts exploiting the situation. The company has not provided a specific timeline for the full resumption of its operations.​

For corrections, news tips, and any other content requests, please send us an email at info@brant.one.

Hot this week

State Regulators Order Recall of ‘GH Kush Pops’ After Discovering THC Levels Exceed What is Legal

State regulators in New Mexico have ordered a mandatory recall of GH Kush Pops after testing found the medical cannabis lollipops exceeded the legal THC limit.

DOJ to Review New Mexico’s Sunshine Law — Why it Matters and What Happens Next

The New Mexico Department of Justice is reviewing the state’s Sunshine Law. Here’s why the study matters for transparency and what could follow.

Rio’s Story

Rio Brant was always a little different from the...

From WNMU to the Super Bowl Stage: Leah Lopez Shines with Bad Bunny

Leah Lopez, a former student at Western New Mexico University (WNMU), recently performed at the Super Bowl halftime show with Bad Bunny.

Police: Two Suspects Accused of Shooting an Officer Arrested After a Multi-day Hunt

Police arrested Jovan Martinez and Makaela Johnson in the Fort Sumner area days after authorities say they fired at a state trooper during a traffic stop near Vaughn. The officer was not injured.

Topics

State Regulators Order Recall of ‘GH Kush Pops’ After Discovering THC Levels Exceed What is Legal

State regulators in New Mexico have ordered a mandatory recall of GH Kush Pops after testing found the medical cannabis lollipops exceeded the legal THC limit.

DOJ to Review New Mexico’s Sunshine Law — Why it Matters and What Happens Next

The New Mexico Department of Justice is reviewing the state’s Sunshine Law. Here’s why the study matters for transparency and what could follow.

Rio’s Story

Rio Brant was always a little different from the...

From WNMU to the Super Bowl Stage: Leah Lopez Shines with Bad Bunny

Leah Lopez, a former student at Western New Mexico University (WNMU), recently performed at the Super Bowl halftime show with Bad Bunny.

Police: Two Suspects Accused of Shooting an Officer Arrested After a Multi-day Hunt

Police arrested Jovan Martinez and Makaela Johnson in the Fort Sumner area days after authorities say they fired at a state trooper during a traffic stop near Vaughn. The officer was not injured.

New Mexico Logs First Measles Case of 2026 as Inmate Tests Positive: What to Watch and More

A federal inmate in southern New Mexico has tested positive for measles, marking the state’s first confirmed case of 2026. Health officials say no public exposure sites have been identified and vaccination remains the best protection.

Four Finalists Continue WNMU Presidential Search After One Withdraws

Western New Mexico University (WNMU) announced that four candidates will continue their bid for the university’s 16th president after Cameron Braxton Wesson, Ph.D., withdrew from consideration for the position.

Bernalillo County Shifts to New IPRA Portal, Sets Feb 27 Shutdown of Old System

Bernalillo County is rolling out a new IPRA request system, closing NextRequest on Feb 27 and launching JustFOIA on March 2.

Related Articles