{"id":15264,"date":"2025-05-14T05:29:45","date_gmt":"2025-05-14T05:29:45","guid":{"rendered":"https:\/\/dmsretail.com\/RetailNews\/what-do-the-ms-co-op-and-harrods-cyber-attacks-mean-for-uk-retailers\/"},"modified":"2025-05-14T05:29:45","modified_gmt":"2025-05-14T05:29:45","slug":"what-do-the-ms-co-op-and-harrods-cyber-attacks-mean-for-uk-retailers","status":"publish","type":"post","link":"https:\/\/dmsretail.com\/RetailNews\/what-do-the-ms-co-op-and-harrods-cyber-attacks-mean-for-uk-retailers\/","title":{"rendered":"What do the M&amp;S, Co-op and Harrods cyber attacks mean for UK retailers?"},"content":{"rendered":"<p> <p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/>\n<\/p>\n<p><span style=\"font-weight: 400\">M&amp;S, Co-op and Harrods have been subject to cyber attacks of late, with wide ranging implications for both shoppers and staff.<\/span><\/p>\n<p><span style=\"font-weight: 400\">Issues for M&amp;S kicked off over the Easter holiday weekend, with shoppers at the food and fashion giant reporting they were unable to use contactless payments or click and collect services<\/span><\/p>\n<p><span style=\"font-weight: 400\">The retailer\u2019s CEO Stuart Machin went on to inform shoppers that it was \u201cmanaging a cyber incident,\u201d and that it needed to make \u201csome small changes\u201d to store operations to \u201cprotect you and the business\u201d. <\/span><span style=\"font-weight: 400\">Since then, the ongoing attack has had wide-reaching implications including stock shortages and WFH staff locked out of IT systems.\u00a0<\/span><\/p>\n<p>On 13 May, the supermarket confirmed that personal customer data had been stolen as part of the attack.<\/p>\n<p>However, it reassured shoppers that the stolen data did not include payment details, card information, or account passwords, and there was no evidence that the data had been shared.<\/p>\n<p><span style=\"font-weight: 400\">On 30 April, fellow grocer Co-op fell victim to a cyberattack, with some of the convenience retailer\u2019s back-office systems and call centre services breached.<\/span><\/p>\n<p><span style=\"font-weight: 400\">Co-op\u2019s staff have since been told to keep their cameras on in remote work meetings, not to record or transcribe calls, or post any sensitive information into Teams chats, according to the BBC. On 4 May it was revealed that hackers had accessed a &#8220;significant&#8221; amount of customer data.\u00a0\u00a0<\/span><\/p>\n<p><span style=\"font-weight: 400\">On 2 May, it also emerged that Harrods had faced a cyber attack, with the department store said to be engaging specialists to help investigate and fix the issue. However, the retailer managed to thwart the attempted intrusion.<\/span><\/p>\n<p>These attacks have prompted the chair of the Business and Trade Select Committee to write to the bosses of M&amp;S and Co-op to seek reassurance that they are managing the incidents effectively, and are the latest in an escalating wave of cyber security breaches across UK retail in recent years.<\/p>\n<p>Retailers ranging from JD Sports to Boots and WHSmith have all been targeted in recent years, and insurance firm QBE also found that the number &#8220;disruptive and destructive global cyber-attacks&#8221; occurring per year had more than doubled from 2020 until 2024.<\/p>\n<p><span style=\"font-weight: 400\">With a host of attacks plaguing the industry, what could the cyber attacks mean for UK retailers, and what is the industry&#8217;s best recourse to defend itself?\u00a0<\/span><\/p>\n<p><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter size-full wp-image-187004\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/Foodhall-interior-2.jpg\" alt=\"M&amp;S \" width=\"1800\" height=\"1198\" \/><\/p>\n<h3>&#8216;A constantly moving picture&#8217;<\/h3>\n<p>The recent torrent of cyber attacks have shaken up the retail industry, exposing its vulnerabilities and prompting businesses to re-evaluate cyber security strategies.<\/p>\n<p>To keep themselves safe, Walker Morris regulatory and compliance partner Andrew Northage emphasises that businesses must avoid &#8220;standing still&#8221; since hackers are &#8220;trying new things all the time&#8221;.<\/p>\n<p>&#8220;If you think you can stand still and be cyber protected, that would be a big mistake to make,&#8221; he says.<\/p>\n<p>&#8220;The picture is constantly moving and evolving and you have to move and evolve with it. Internally and externally, you need to make sure you&#8217;ve got the best support and advice that you can get using people that are really on top of it, because it&#8217;s a constantly moving picture.&#8221;<\/p>\n<p><span style=\"font-weight: 400\">Retail Technology Magazine publisher Miya Knights also highlights the importance of retailers sharing industry knowledge amongst each other once attacks occur and in order to defend themselves in the first place.\u00a0<\/span><\/p>\n<p>&#8220;Chief information security officers (CISOs) in retail need to get round a table and talk about what happened and share best practice and knowledge so they can all be better armed against these hackers,&#8221; she says.<\/p>\n<p>&#8220;What floats all boats can also sink all boats, so I think they need to share knowledge about what&#8217;s happened so they can all be better protected.&#8221;<\/p>\n<p>The need for knowledge sharing is particularly urgent, as research from cybersecurity firm Cisco found that just one in four UK firms are fully prepared to defend against increasingly complex cyber threats, with nearly half of those surveyed having over ten unfilled cybersecurity roles across their respective organisations.<\/p>\n<p><span style=\"font-weight: 400\">BRC CEO Helen Dickinson highlights that <\/span><span style=\"font-weight: 400\">\u201cretailers spend hundreds of millions every year to mitigate these risks and ensure they can continue to serve customers,&#8221; adding that\u00a0<\/span><span style=\"font-weight: 400\">\u201cmany businesses continue to work closely with the National Cyber Security Centre to share cyber threat intelligence, and are continually reviewing their systems to ensure they are as secure as possible.&#8221;<\/span><\/p>\n<p>Regarding how long recovery from the attacks could take, Northage argues: &#8220;I would say probably months, it&#8217;s unlikely to be weeks, I&#8217;d be surprised if it&#8217;s years, but you&#8217;re probably looking at six months plus.&#8221;<\/p>\n<p>&#8220;It very much varies on what information they&#8217;ve got, how they got into the systems, and how complex the systems are.&#8221;<\/p>\n<p><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter size-full wp-image-187104\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/harrods-cyber-attack.jpg\" alt=\"Harrods\" width=\"2782\" height=\"1476\" \/>The impacts from the M&amp;S attack in particular have certainly been wide reaching, with issues including <span style=\"font-weight: 400\">empty shelves, the suspension of all online orders, and it shutting its work from home staff out of some of its IT systems.<\/span><\/p>\n<p>However, Skillcast CEO Vivek Dodd highlights that the &#8220;real damage&#8221; to cyber attacks is often to consumers&#8217; trust, &#8220;particularly when the attack causes wide-spread public concern&#8221;.<\/p>\n<p><span style=\"font-weight: 400\">Northage notes that while the stock shortages at M&amp;S have affected customers, &#8220;<\/span><span style=\"font-weight: 400\">it also affects the company in terms of a loss of confidence and shoppers going elsewhere.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400\">He also points out that M&amp;S and Co-op\u2019s loyalty schemes hold \u201clots of customer data\u201d which was \u201cthe sort of thing that would make your average customer nervous\u201d as to what details of theirs were out there.\u00a0\u00a0<\/span><\/p>\n<p>&nbsp;<\/p>\n<h3><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter size-full wp-image-187103\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2025\/05\/ms-screenshot.jpg\" alt=\"M&amp;S\" width=\"2842\" height=\"1210\" \/>Who else is at risk?<\/h3>\n<p>With M&amp;S, Co-op and Harrods having hit the headlines with the attacks, shoppers may be left wondering why these particular retailers were vulnerable.<\/p>\n<p><span style=\"font-weight: 400\">Although Knights says she does not think anyone can definitively say why they were targeted, they had been picked out on one level due to them being \u201cprominent household names\u201d.<\/span><\/p>\n<p><span style=\"font-weight: 400\">\u201cThey\u2019re retailers, so security is not core to their businesses in such a way as maybe financial services or the public sector,&#8221; she notes.<\/span><\/p>\n<p><span style=\"font-weight: 400\">\u201cBut nevertheless their turnover makes them an attractive target in the fact that they\u2019re large organisations and they handle a lot of customer data.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400\">Despite this, she argues: \u201cI would expect the hackers targeted a number of retailers, and the reason M&amp;S, Co-op and Harrods have hit the headlines is because they were vulnerable.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400\">Regarding other retailer types that could be at risk, Knights thinks those most vulnerable would be &#8220;those that have a sizable business with large tier one scale turnover across many channels&#8221;.<\/span><\/p>\n<p><span style=\"font-weight: 400\">\u201cThat means they potentially use digital heavily across all of their customer and supplier facing channels, and therefore there is more surface area to secure.\u201d\u00a0<\/span><\/p>\n<p>Northage thinks any other retailers could be at risk of cyber attacks: &#8220;When M&amp;S and Co-op were the first two, you think is it grocery?<\/p>\n<p>&#8220;But the fact that we&#8217;ve now had Harrods as well says to me that it&#8217;s maybe supply chain or it&#8217;s something to do with customers where they&#8217;ve found the vulnerability.<\/p>\n<p>&#8220;Obviously lots of other big retailer will have similar systems, particularly if they&#8217;re in the FMCG market.&#8221;<\/p>\n<h3><img decoding=\"async\" loading=\"lazy\" class=\"aligncenter wp-image-169216\" src=\"https:\/\/www.retailgazette.co.uk\/wp-content\/uploads\/2024\/08\/Wincanton-proudly-renews-30-year-partnership-with-Co-op.jpg\" alt=\"Co-op\" width=\"920\" height=\"613\" \/>A &#8216;wake up call&#8217; for UK retailers<\/h3>\n<p>With M&amp;S, Co-op and Harrods being targeted by hackers, it raises the question of whether the UK retail sector is particularly vulnerable to cyber attacks.<\/p>\n<p><span style=\"font-weight: 400\">Although Knights does not think so, she argues: \u201cThis is a wake up call for UK retailers where security may not have been core to their business but it should be.&#8221;<\/span><\/p>\n<p>She adds that this is particularly pertinent given the growth of online and multichannel retail in the wake of Covid alongside the declining use of cash amongst shoppers, all of which makes the sector &#8220;more vulnerable&#8221; to future cyber attacks.<\/p>\n<p><span style=\"font-weight: 400\">\u201cRetail organisations should have the same checks and balances in place as you would expect government organisations and financial services organisations to have,\u201d she concludes.<\/span><\/p>\n<p>The recent spate of attacks certainly serves as a warning to the industry that no retailer should rest of their laurels when it comes to cyber security &#8211; but securing the talent and pace of innovation required to bring these threats to heel is clearly a sector-wide challenge.<\/p>\n<p><em><strong>Click here to sign up to Retail Gazette\u2018s free daily email newsletter<\/strong><\/em><\/p>\n<p><p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>M&amp;S, Co-op and Harrods have been subject to cyber attacks of late, with wide ranging implications for both shoppers and staff. Issues for M&amp;S kicked [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":15265,"comment_status":"","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13],"tags":[],"class_list":["post-15264","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-magazines"],"_links":{"self":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/15264","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/comments?post=15264"}],"version-history":[{"count":0,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/15264\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media\/15265"}],"wp:attachment":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media?parent=15264"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/categories?post=15264"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/tags?post=15264"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}