Marks & Spencer (M&S) has confirmed that customer data was stolen during a major...

Published: 12:08 pm May 13, 2025
Updated: 1:14 pm October 8, 2025
M&S Confirms Customer Data Stolen in Major Cyber Attack – UKNIP

 

Marks & Spencer (M&S) has confirmed that customer data was stolen during a major cyber attack that began last month, affecting services and disrupting operations across the UK.

The retailer issued a formal statement today revealing that some personal customer information was accessed by cyber criminals, although payment details and passwords remain secure.

What Data Was Stolen?

In a statement shared on Instagram, M&S said:

“Unfortunately, some personal customer information has been taken. Importantly, there is no evidence that the information has been shared and it does not include usable card or payment details, or account passwords.”

As a precaution, all customers will be prompted to reset their passwords upon their next login, and M&S has shared tips on staying safe online.

Impact on M&S Services

The cyber attack, first reported on Saturday, April 19, has led to:

On Friday, April 25, M&S took the drastic step of suspending all online orders, leading to a 5% drop in share price.

Who Is Behind the Attack?

Cybersecurity experts believe the culprits are Scattered Spider, a notorious ransomware gang. The group is known for social engineering tactics and high-profile attacks on MGM Resorts and Caesars Entertainment in 2023.

Jamie Akhtar, CEO of CyberSmart, said:

“Scattered Spider is one of the most active and disruptive threat actors in the last 18 months… known for manipulating access through impersonation and bypassing multi-factor authentication.”

Response and Investigation

M&S has:

  • Notified the National Cyber Security Centre (NCSC) and the Information Commissioner’s Office (ICO)
  • Engaged external cybersecurity consultants
  • Continued to operate stores across the UK
  • Promised transparency and further updates as they restore services

Despite efforts, shoppers continue to report shortages of popular items such as bananas, fish, and Colin the Caterpillar cakes.

Timeline of the Attack

What Is a Cyber Attack?

A cyber attack is a deliberate attempt to disrupt, damage, or gain unauthorised access to computer systems. Common types include:

  • Ransomware
  • Phishing
  • Malware
  • Denial-of-service (DoS)
  • Social engineering

What Should Customers Do?

✅ Reset your password when prompted
Stay vigilant for phishing emails or suspicious activity
✅ Monitor your accounts and report fraud to your bank
✅ Visit M&S Online Safety Guide for updates

Related Incidents

 

We are your go-to destination for breaking UK news, real-life stories from communities across the country, striking images, and must-see video from the heart of the action.

Follow us on Facebook at for the latest updates and developing stories, and stay connected on X (Twitter) the for live coverage as news breaks across the UK.

SIGN UP NOW FOR YOUR FREE DAILY BREAKING NEWS AND PICTURES NEWSLETTER

Your information will be used in accordance with our Privacy Policy

YOU MIGHT LIKE