Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Scattered Spider Behind Cyberattacks on M&S and Co-op, Causing Up to $592M in Damages

Posted on June 21, 2025June 21, 2025 By CWS

Jun 21, 2025Ravie LakshmananCyber Assault / Essential Infrastructure
The April 2025 cyber assaults concentrating on U.Okay. retailers Marks & Spencer and Co-op have been categorised as a “single mixed cyber occasion.”
That is in response to an evaluation from the Cyber Monitoring Centre (CMC), a U.Okay.-based impartial, non-profit physique arrange by the insurance coverage business to categorize main cyber occasions.
“On condition that one menace actor claimed duty for each M&S and Co-op, the shut timing, and the same ways, strategies, and procedures (TTPs), CMC has assessed the incidents as a single mixed cyber occasion,” the CMC stated.
The group has categorized the disruption of the retailers as a “Class 2 systemic occasion.” It is estimated that the safety breaches could have a complete monetary impression of £270 million ($363 million) to £440 million ($592 million).

Nevertheless, the cyber assault on Harrods across the identical time has not been included at this stage, citing a scarcity of satisfactory details about the trigger and impression.
The preliminary entry vector employed within the assaults concentrating on Marks & Spencer and Co-op revolved round the usage of social engineering ways, significantly concentrating on IT assist desks.
The CMC additional famous that its attribution efforts are nonetheless ongoing. That stated, the infamous cybercrime group often known as Scattered Spider (aka UNC3944) is believed to be behind the intrusions.
The group, an offshoot of the bigger cybercrime group often known as The Com, has a monitor document of leveraging its English-speaking members to hold out superior social engineering assaults the place they impersonate members of an organization’s IT division to acquire unauthorized entry.
“The impression from this occasion is ‘slim and deep,’ having important implications for 2 corporations, and knock-on results for suppliers, companions, and repair suppliers,” the CMC stated.
Earlier this week, Google Menace Intelligence Group (GTIG) revealed that Scattered Spider actors have begun to focus on main insurance coverage corporations in the US.
“Given this actor’s historical past of specializing in a sector at a time, the insurance coverage business ought to be on excessive alert, particularly for social engineering schemes which goal their assist desks and name facilities,” John Hultquist, Chief Analyst at GTIG, stated.
“The anticipated menace of Iranian cyber functionality to U.S. organizations has been the main target of many discussions these days, however these actors are already concentrating on vital infrastructure. We anticipate extra high-profile incidents within the close to time period as they transfer from sector to sector.”

The event comes as Indian consulting big Tata Consultancy Providers (TCS) disclosed that its programs or customers weren’t compromised as a part of the assault in opposition to Marks & Spencer. Final month, the Monetary Instances reported that TCS is internally probing whether or not its programs had been used as a launchpad for the assault.
It additionally follows a brand new technique from the Qilin ransomware operation that entails providing authorized help to ramp up strain throughout ransom negotiations. The menace actors additionally declare to have an in-house workforce of journalists who can work along with the authorized division to craft weblog posts and help with sufferer negotiations.

Discovered this text attention-grabbing? Comply with us on Twitter  and LinkedIn to learn extra unique content material we publish.

The Hacker News Tags:592M, Causing, Coop, Cyberattacks, Damages, Scattered, Spider

Post navigation

Previous Post: Aflac Finds Suspicious Activity on US Network That May Impact Social Security Numbers, Other Data
Next Post: How Smart Timesheet Software Is Changing the Way of Work

Related Posts

New GodRAT Trojan Targets Trading Firms Using Steganography and Gh0st RAT Code The Hacker News
Hackers Use Facebook Ads to Spread JSCEAL Malware via Fake Cryptocurrency Trading Apps The Hacker News
Chrome Extension Caught Injecting Hidden Solana Transfer Fees Into Raydium Swaps The Hacker News
Cisco Patches CVE-2025-20188 (10.0 CVSS) in IOS XE That Enables Root Exploits via JWT The Hacker News
Sneaky 2FA Phishing Kit Adds BitB Pop-ups Designed to Mimic the Browser Address Bar The Hacker News
Malicious npm Package Uses Hidden Prompt and Script to Evade AI Security Tools The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • China-Linked Hackers Exploit VMware ESXi Zero-Days to Escape Virtual Machines
  • xRAT Malware Attacking Windows Users Disguised as Adult Game
  • Fog Ransomware Attacking US Organizations Leveraging Compromised VPN Credentials
  • In Other News: 8,000 Ransomware Attacks, China Hacked US Gov Emails, IDHS Breach Impacts 700k
  • Threat Actors Attacking Systems with 240+ Exploits Before Ransomware Deployment

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • China-Linked Hackers Exploit VMware ESXi Zero-Days to Escape Virtual Machines
  • xRAT Malware Attacking Windows Users Disguised as Adult Game
  • Fog Ransomware Attacking US Organizations Leveraging Compromised VPN Credentials
  • In Other News: 8,000 Ransomware Attacks, China Hacked US Gov Emails, IDHS Breach Impacts 700k
  • Threat Actors Attacking Systems with 240+ Exploits Before Ransomware Deployment

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark