Facebook Pixel “Everything I have heard points towards these attacks starting with an old chestnut” | PC Pro - technology - Read this story on Magzter.com
Go Unlimited with Magzter GOLD

Go Unlimited with Magzter GOLD

Get unlimited access to 10,000+ magazines, newspapers and Premium stories for just

$149.99
 
$74.99/Year

Try GOLD - Free

“Everything I have heard points towards these attacks starting with an old chestnut”

PC Pro

|

August 2025

In light of the ransomware attacks on M&S, the Co-op and Harrods, Davey analyses how it happened and what you can do to stop it happening to you

- DAVEY WINDER

“Everything I have heard points towards these attacks starting with an old chestnut”

When it comes to icons of the British high street, they don’t come much bigger than Marks & Spencer. Even if you aren’t a lady of a certain age keen on getting a new girdle at the same time as buying some expensive tomatoes, the fact that M&S has been hit by ransomware attackers should worry you. Especially when another huge name in retail, the Coop, fell to the same attackers soon after. It remains unclear if the same group was responsible for both, although it does appear to have made that claim.

The final member of this very British retail trio, Harrods, has said that it was also targeted, but a spokesperson confirmed it “immediately took proactive steps to keep systems safe” by restricting internet access to impacted sites.

I'm taking the unusual step of devoting my entire column this month to these attacks. In particular, investigating the group behind them and the methods employed, and sharing mitigation advice that stretches beyond the retail sector to help prevent all organisations becoming another ransomware victim.

The attacks...

We will, no doubt, have to wait many months for the results of the ongoing official investigations by the stores and law enforcement to become public. Even then, I can’t predict the level of technical disclosure. That doesn’t stop me from conducting some investigative digging of my own, with the help of industry colleagues, and getting a reasonably good idea of what happened in terms of attack methodology.

So let’s start there, shall we? Everything I have heard has pointed towards these ransomware attacks starting with an old chestnut. One that has become the vinegar-soaked, oven-baked, resin-coated conker of initial access tactics: the IT helpdesk impersonation scam.

MORE STORIES FROM PC Pro

PC Pro

PC Pro

LG UltraFine 6K Evo

Thunderbolt 5 connectivity and a 6K resolution both impress, but at this price we want OLED technology

time to read

3 mins

April 2026

PC Pro

PC Pro

Motorola signature

One of the most stylish phones in the universe, but that comes with a matching price and two compromises

time to read

3 mins

April 2026

PC Pro

PC Pro

Geekom X14 Pro

The CPU may be ageing, but Geekom's debut laptop delivers in every other area - if you can find it for sale

time to read

3 mins

April 2026

PC Pro

PC Pro

Asus Zenbook Duo (2026)

With a next-gen processor and numerous design improvements, this is the best dual-screen laptop yet

time to read

3 mins

April 2026

PC Pro

PC Pro

Dell UltraSharp 52 Thunderbolt Hub Monitor

A superb choice for anyone who currently finds themselves with three or more monitors sitting on their desk

time to read

5 mins

April 2026

PC Pro

PC Pro

Investors may still believe in Elon Musk, but Jon Honeyball isn't buying any of it

My day started badly. Still bleary-eyed at 6am, with a bucket of coffee sitting untouched beside me, I dropped the SIM-removal tool into my keyboard.

time to read

3 mins

April 2026

PC Pro

PC Pro

Green cloud

Don't entrust your jobs to dirty, energy-hungry servers:

time to read

2 mins

April 2026

PC Pro

PC Pro

"I've said it before, and I'll say it again: the biggest obstacle to security is inconvenience"

Have you seen those password books on Amazon? They're not a cybersecurity abomination, despite what you may think

time to read

7 mins

April 2026

PC Pro

PC Pro

"Cyber resilience is now treated as a matter of governance rather than pure technical compliance"

Rule Britannia, Britannia waives the rules... or why the shoulder-shrugging Cyber Security and Resilience Bill causes such problems for UK businesses

time to read

6 mins

April 2026

PC Pro

PC Pro

"Not to point any fingers here; I seriously doubt the fault lies with our esteemed editor"

Whether it's PDFs from PC Pro's editor, Outlook messages or his partner's photos, space is at a premium for Steve this month

time to read

9 mins

April 2026

Listen

Translate

Share

-
+

Change font size