Passez à l'illimité avec Magzter GOLD

Passez à l'illimité avec Magzter GOLD

Obtenez un accès illimité à plus de 9 000 magazines, journaux et articles Premium pour seulement

$149.99
 
$74.99/Année

Essayer OR - Gratuit

“Everything I have heard points towards these attacks starting with an old chestnut”

PC Pro

|

August 2025

In light of the ransomware attacks on M&S, the Co-op and Harrods, Davey analyses how it happened and what you can do to stop it happening to you

- DAVEY WINDER

“Everything I have heard points towards these attacks starting with an old chestnut”

When it comes to icons of the British high street, they don’t come much bigger than Marks & Spencer. Even if you aren’t a lady of a certain age keen on getting a new girdle at the same time as buying some expensive tomatoes, the fact that M&S has been hit by ransomware attackers should worry you. Especially when another huge name in retail, the Coop, fell to the same attackers soon after. It remains unclear if the same group was responsible for both, although it does appear to have made that claim.

The final member of this very British retail trio, Harrods, has said that it was also targeted, but a spokesperson confirmed it “immediately took proactive steps to keep systems safe” by restricting internet access to impacted sites.

I'm taking the unusual step of devoting my entire column this month to these attacks. In particular, investigating the group behind them and the methods employed, and sharing mitigation advice that stretches beyond the retail sector to help prevent all organisations becoming another ransomware victim.

The attacks...

We will, no doubt, have to wait many months for the results of the ongoing official investigations by the stores and law enforcement to become public. Even then, I can’t predict the level of technical disclosure. That doesn’t stop me from conducting some investigative digging of my own, with the help of industry colleagues, and getting a reasonably good idea of what happened in terms of attack methodology.

So let’s start there, shall we? Everything I have heard has pointed towards these ransomware attacks starting with an old chestnut. One that has become the vinegar-soaked, oven-baked, resin-coated conker of initial access tactics: the IT helpdesk impersonation scam.

PLUS D'HISTOIRES DE PC Pro

PC Pro

How connected tech could fix roads

Oceans of data, AI-managed traffic signals and more autonomous cars on the road all have the potential to make our roads safer.

time to read

9 mins

October 2025

PC Pro

PC Pro

"I'm an evil system tester, thinking up software-breaking situations, and this occasion was no different"

What would life be like without Google if its services were unavailable due to a deliberate act of sabotage?

time to read

9 mins

October 2025

PC Pro

PC Pro

"Ransomware is an extortion racket, and the people behind it are as caring as the Kray twins"

Guilty: it's another column about ransomware, but this one is different as Davey asks whether the government is right to ban ransom payments

time to read

8 mins

October 2025

PC Pro

Synology DiskStation DS1525+

A well-priced and powerful desktop NAS with top performance and heaps of data protection features

time to read

3 mins

October 2025

PC Pro

PC Pro

LENOVO THINKSTATION P5 TOWER

Great design, but Intel's Xeon can't compete with AMD's processors

time to read

2 mins

October 2025

PC Pro

PC Pro

Will Intel ever be back in the workstation market?

Certainly not this year. But there are promising signs for next year, if Intel hits all its claims - and assuming AMD doesn't jump ahead once more

time to read

4 mins

October 2025

PC Pro

PC Pro

Commodore: The comeback

David Crookes looks at how a once powerful and influential tech brand hopes to shine once more, including an exclusive interview with Commodore's new owner

time to read

8 mins

October 2025

PC Pro

PC Pro

Real world computing

\"I think cynicism is a good thing. And blunt sarcasm has been my trademark for 30 years\". New age-verification laws for 18+ sites raise questions about the trust we can place in third-party services that promise not to keep our data

time to read

10 mins

October 2025

PC Pro

PC Pro

Six things to look for in a workstation

There are few bigger and more important investments to make than a new workstation, or a fleet of them. Here's what you need to consider before taking the plunge

time to read

8 mins

October 2025

PC Pro

PC Pro

IDrive RemotePC Enterprise

Secure cloud-hosted remote support that's easy to use, very versatile and incredible value for larger businesses

time to read

2 mins

October 2025

Listen

Translate

Share

-
+

Change font size