Marks & Spencer Cyberattack Attributed to Scattered Spider Ransomware Group; Here’s What Happened

British retailer Marks & Spencer (M&S) has been grappling with a significant cyberattack, reportedly orchestrated by the hacking group Scattered Spider. The incident has disrupted operations across the company’s UK stores and online platforms. Attack Overview The cyberattack, identified as a ransomware incident, has been linked to Scattered Spider, a group known for targeting major […]

British retailer Marks & Spencer (M&S) has been grappling with a significant cyberattack, reportedly orchestrated by the hacking group Scattered Spider. The incident has disrupted operations across the company’s UK stores and online platforms.

Attack Overview

The cyberattack, identified as a ransomware incident, has been linked to Scattered Spider, a group known for targeting major corporations. The hackers allegedly infiltrated M&S’s systems in February 2025, extracting the NTDS.dit file—a critical component of Windows Active Directory that stores user credentials. This breach enabled the attackers to access and encrypt the company’s servers using the DragonForce ransomware variant.

Operational Impact

As a result of the attack, M&S has faced widespread disruptions:​

Financial Repercussions

  • Revenue Loss: The disruption in online sales is estimated to have cost the company approximately £3.8 million per day.
  • Market Valuation: M&S’s market value reportedly declined by nearly £700 million following the incident.

Response and Investigation

M&S has engaged cybersecurity firms, including CrowdStrike, Microsoft, and Fenix24, to investigate and mitigate the breach. The company has also reported the incident to the UK’s National Cyber Security Centre and the Information Commissioner’s Office.

While it remains unclear whether M&S has paid or intends to pay a ransom, industry experts caution against such actions, citing potential long-term risks and the possibility of encouraging further attacks.

About Scattered Spider

Scattered Spider, also known as Octo Tempest, is a hacking group comprising individuals primarily from the US and UK. The group has been active since at least 2022 and is known for employing sophisticated social engineering techniques, including phishing and impersonation, to infiltrate corporate networks. They have previously targeted major companies, such as MGM Resorts and Caesars Entertainment.

Ongoing Developments

M&S continues to work towards restoring its systems and services. Customers are advised to remain vigilant against potential phishing attempts exploiting the situation. The company has not provided a specific timeline for the full resumption of its operations.​

For corrections, news tips, and any other content requests, please send us an email at [email protected].

Hot this week

Rabies in Curry County Shows How Easily a Virus Slips Past the Boundaries We Trust

A rabies case in rural New Mexico is more than a health alert — it is a warning against complacency. Even fenced yards, officials say, cannot shield pets from wildlife-borne disease when vaccination gaps persist.

Family Faces Felony, Sex Trafficking Charges at Six Massage Parlors

A family has been charged with multiple felony charges due to sex trafficking.

Ethics Commission Lawsuit Against Elevate is More Than Paperwork — It’s a Warning Flare for New Mexico

A lawsuit over Project Jupiter’s anonymous ad campaign has become a larger reckoning over dark money, environmental politics and democratic transparency in New Mexico.

Reports Drop in Syphilis and STI Cases in 2026 Health Update

Health officials in New Mexico reported a decline in...

Trump Participates in Healthcare Event Discussing Innovation and Affordability

Donald Trump attended a healthcare event in Washington, D.C....

Topics

Rabies in Curry County Shows How Easily a Virus Slips Past the Boundaries We Trust

A rabies case in rural New Mexico is more than a health alert — it is a warning against complacency. Even fenced yards, officials say, cannot shield pets from wildlife-borne disease when vaccination gaps persist.

Family Faces Felony, Sex Trafficking Charges at Six Massage Parlors

A family has been charged with multiple felony charges due to sex trafficking.

Ethics Commission Lawsuit Against Elevate is More Than Paperwork — It’s a Warning Flare for New Mexico

A lawsuit over Project Jupiter’s anonymous ad campaign has become a larger reckoning over dark money, environmental politics and democratic transparency in New Mexico.

Reports Drop in Syphilis and STI Cases in 2026 Health Update

Health officials in New Mexico reported a decline in...

Trump Participates in Healthcare Event Discussing Innovation and Affordability

Donald Trump attended a healthcare event in Washington, D.C....

Small Actions, Big Difference: Students Make an Impact on Earth Day

APS students celebrated Earth Day through hands-on environmental activities beyond the classroom.

Health Coverage in Charts: Who Actually Benefits From Government Subsidies?

The analysis concerns U.S. residents, healthcare providers, and agencies...

Too Many Hunters, Limited Tags—New Mexico’s Hunting Tag System Takes Heat

As thousands miss out on hunting tags, debate grows over fairness, private land access, and looming reforms to New Mexico’s wildlife commission.

Related Articles