Try GOLD - Free
“Everything I have heard points towards these attacks starting with an old chestnut”
PC Pro
|August 2025
In light of the ransomware attacks on M&S, the Co-op and Harrods, Davey analyses how it happened and what you can do to stop it happening to you
When it comes to icons of the British high street, they don’t come much bigger than Marks & Spencer. Even if you aren’t a lady of a certain age keen on getting a new girdle at the same time as buying some expensive tomatoes, the fact that M&S has been hit by ransomware attackers should worry you. Especially when another huge name in retail, the Coop, fell to the same attackers soon after. It remains unclear if the same group was responsible for both, although it does appear to have made that claim.
The final member of this very British retail trio, Harrods, has said that it was also targeted, but a spokesperson confirmed it “immediately took proactive steps to keep systems safe” by restricting internet access to impacted sites.
I'm taking the unusual step of devoting my entire column this month to these attacks. In particular, investigating the group behind them and the methods employed, and sharing mitigation advice that stretches beyond the retail sector to help prevent all organisations becoming another ransomware victim.
The attacks...
We will, no doubt, have to wait many months for the results of the ongoing official investigations by the stores and law enforcement to become public. Even then, I can’t predict the level of technical disclosure. That doesn’t stop me from conducting some investigative digging of my own, with the help of industry colleagues, and getting a reasonably good idea of what happened in terms of attack methodology.
So let’s start there, shall we? Everything I have heard has pointed towards these ransomware attacks starting with an old chestnut. One that has become the vinegar-soaked, oven-baked, resin-coated conker of initial access tactics: the IT helpdesk impersonation scam.
This story is from the August 2025 edition of PC Pro.
Subscribe to Magzter GOLD to access thousands of curated premium stories, and 10,000+ magazines and newspapers.
Already a subscriber? Sign In
MORE STORIES FROM PC Pro
PC Pro
LG UltraFine 6K Evo
Thunderbolt 5 connectivity and a 6K resolution both impress, but at this price we want OLED technology
3 mins
April 2026
PC Pro
Motorola signature
One of the most stylish phones in the universe, but that comes with a matching price and two compromises
3 mins
April 2026
PC Pro
Geekom X14 Pro
The CPU may be ageing, but Geekom's debut laptop delivers in every other area - if you can find it for sale
3 mins
April 2026
PC Pro
Asus Zenbook Duo (2026)
With a next-gen processor and numerous design improvements, this is the best dual-screen laptop yet
3 mins
April 2026
PC Pro
Dell UltraSharp 52 Thunderbolt Hub Monitor
A superb choice for anyone who currently finds themselves with three or more monitors sitting on their desk
5 mins
April 2026
PC Pro
Investors may still believe in Elon Musk, but Jon Honeyball isn't buying any of it
My day started badly. Still bleary-eyed at 6am, with a bucket of coffee sitting untouched beside me, I dropped the SIM-removal tool into my keyboard.
3 mins
April 2026
PC Pro
Green cloud
Don't entrust your jobs to dirty, energy-hungry servers:
2 mins
April 2026
PC Pro
"I've said it before, and I'll say it again: the biggest obstacle to security is inconvenience"
Have you seen those password books on Amazon? They're not a cybersecurity abomination, despite what you may think
7 mins
April 2026
PC Pro
"Cyber resilience is now treated as a matter of governance rather than pure technical compliance"
Rule Britannia, Britannia waives the rules... or why the shoulder-shrugging Cyber Security and Resilience Bill causes such problems for UK businesses
6 mins
April 2026
PC Pro
"Not to point any fingers here; I seriously doubt the fault lies with our esteemed editor"
Whether it's PDFs from PC Pro's editor, Outlook messages or his partner's photos, space is at a premium for Steve this month
9 mins
April 2026
Listen
Translate
Change font size

