Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Need more storage? Get a lifetime of 10TB cloud space for just $270.

    Ask HN: Would you use a job board where every listing is verified?

    OpenAI is reportedly pushing back the launch of its ‘adult mode’ even further

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      What the polls say about how Americans are using AI

      February 27, 2026

      Tensions between the Pentagon and AI giant Anthropic reach a boiling point

      February 21, 2026

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026
    • Business

      Need more storage? Get a lifetime of 10TB cloud space for just $270.

      March 8, 2026

      Google PM open-sources Always On Memory Agent, ditching vector databases for LLM-driven persistent memory

      March 8, 2026

      Regulate AWS and Microsoft, says UK cloud provider survey

      March 8, 2026

      Google releases Gemini 3.1 Flash Lite at 1/8th the cost of Pro

      March 4, 2026

      Huawei Watch GT Series

      March 4, 2026
    • Crypto

      Banks Respond to Kraken’s Federal Reserve Access as Trump Sides with Crypto

      March 4, 2026

      Hyperliquid and DEXs Break the Top 10 — Is the CEX Era Ending?

      March 4, 2026

      Consensus Hong Kong 2026: The Institutional Turn 

      March 4, 2026

      New Crypto Mutuum Finance (MUTM) Reports V1 Protocol Progress as Roadmap Enters Phase 3

      March 4, 2026

      Bitcoin Short Sellers Caught Off Guard in New White House Move

      March 4, 2026
    • Technology

      Ask HN: Would you use a job board where every listing is verified?

      March 8, 2026

      OpenAI is reportedly pushing back the launch of its ‘adult mode’ even further

      March 8, 2026

      NASA’s DART spacecraft changed a binary asteroid’s orbit around the sun, in a first for a human-made object

      March 8, 2026

      Forget the Specs. Which MacBook Neo Color Is Best? CNET Weighs In

      March 8, 2026

      OpenAI’s head of robotics resigns following deal with the Department of Defense

      March 8, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»M&S confirms social engineering led to massive ransomware attack
    Technology

    M&S confirms social engineering led to massive ransomware attack

    TechAiVerseBy TechAiVerseJuly 9, 2025No Comments4 Mins Read4 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    M&S confirms social engineering led to massive ransomware attack
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    M&S confirms social engineering led to massive ransomware attack

    M&S confirmed today that the retail outlet’s network was initially breached in a “sophisticated impersonation attack” that ultimately led to a DragonForce ransomware attack.

    M&S chairman Archie Norman revealed this in a hearing with the UK Parliament’s Business and Trade Sub-Committee on Economic Security regarding the recent attacks on the retail sector in the country.

    While Norman did not go into details, he stated that the threat actors impersonated one of the 50,000 people working with the company to trick a third-party entity into resetting an employee’s password.

    “In our case the initial entry, which was on April the 17th, occured through what people now call social engineering. As far as I can tell that’s a euphamism for impersonation,” Norman explained to the MPs.

    “And it was a sophisticated impersonation. They just didn’t walk up and say will you change my password. They appeared as somebody with their details. And part of the point of entry also involved a third-party.”

    As reported by FT in May, IT outsourcing company Tata Consultancy Services had begun investigating whether it was inadvertantly involved in the attack on M&S. Tata provides help desk support for M&S and is believed to have been tricked by the threat actors into resetting an employee’s password, which was then used to breach the M&S network.

    For the first time, M&S referenced the DragonForce ransomware operation as the potential attacker, which he stated was believed to be operating from Asia.

    “The instigator of the attack is believed to be DragonForce, who are a ransomware operation based, we believe, in Asia.”

    Since the attack, many media outlets have incorrectly linked a hacktivist group known as “DragonForce Malaysia” with the DragonForce ransomware gang. The hacktivists are believed to be a pro-Palestine group operating out of Malaysia, while the DragonForce ransomware operation is believed to be in Russia.

    As first reported by BleepingComputer, the attack on M&S was conducted by threat actors linked to Scattered Spider, who deployed the DragonForce ransomware on the network.

    This led M&S to purposely shut down all their systems to prevent the spread of the attack.

    However, by then, it was too late, with numerous VMware ESXi servers encrypted and sources telling BleepingComputer that approximately 150GB of data was believed to be stolen.

    The ransomware operation employs a double-extortion tactic, which involves not only encrypting devices but also stealing data and threatening to publish it if a ransom is not paid.

    While BleepingComputer was told that data was stolen in the attack, DragonForce has not made an entry on their data leak site for M&S. This could indicate that the retail chain paid a ransom demand to prevent the leaking of stolen data.

    When asked about the ransom demands during the hearings, Norman said they took a hands-off approach when dealing with the threat actors.

    “We took an early decision that nobody at M&S would deal with the threat actors directly. We felt that the right thing would be to leave this to the professionals who have experience in the matter,” explained Norman.

    Norman is likely referring to ransomware negotiation firms that help companies negotiate with threat actors and obtain access to Bitcoin to facilitate payments.

    When explicitly asked if they paid a ransom demand, Norman said they were not discussing these details publicly as they “don’t think it’s in the public interest,” but had fully shared the subject with the NCA and the authorities.

    Ransomware gangs rarely do anything for free, and if data was stolen and not leaked by now, then either a payment has been made or the threat actors are still negotiating with M&S.

    8 Common Threats in 2025

    While cloud attacks may be growing more sophisticated, attackers still succeed with surprisingly simple techniques.

    Drawing from Wiz’s detections across thousands of organizations, this report reveals 8 key techniques used by cloud-fluent threat actors.

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleNew Android TapTrap attack fools users with invisible UI trick
    Next Article Samsung announces major security enhancements coming to One UI 8
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Ask HN: Would you use a job board where every listing is verified?

    March 8, 2026

    OpenAI is reportedly pushing back the launch of its ‘adult mode’ even further

    March 8, 2026

    NASA’s DART spacecraft changed a binary asteroid’s orbit around the sun, in a first for a human-made object

    March 8, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025705 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025292 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025166 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025125 Views
    Don't Miss
    Business Technology March 8, 2026

    Need more storage? Get a lifetime of 10TB cloud space for just $270.

    Need more storage? Get a lifetime of 10TB cloud space for just $270. Image: StackCommerce…

    Ask HN: Would you use a job board where every listing is verified?

    OpenAI is reportedly pushing back the launch of its ‘adult mode’ even further

    NASA’s DART spacecraft changed a binary asteroid’s orbit around the sun, in a first for a human-made object

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Need more storage? Get a lifetime of 10TB cloud space for just $270.

    March 8, 20262 Views

    Ask HN: Would you use a job board where every listing is verified?

    March 8, 20260 Views

    OpenAI is reportedly pushing back the launch of its ‘adult mode’ even further

    March 8, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    Best TV Antenna of 2025

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.