Ransomware Hits Marks & Spencer: E-Commerce Paralysis and Customer Data Breach

British retailer Marks & Spencer faces a cyber attack that has paralyzed its online operations for over three weeks. The attack, allegedly ransomware, resulted in the compromise of customer data, though no payment details were accessed. Efforts to restore operations continue alongside collaborations with cybersecurity experts.


Devdiscourse News Desk | Updated: 13-05-2025 13:24 IST | Created: 13-05-2025 13:24 IST
Ransomware Hits Marks & Spencer: E-Commerce Paralysis and Customer Data Breach
This image is AI-generated and does not depict any real-life event or location. It is a fictional representation created for illustrative purposes only.

British retail giant Marks & Spencer announced on Tuesday that a cyber attack has compromised personal customer information, crippling its online operations for over three weeks. While stores remain open, the attack has halted online orders since April 25, prompting a 15% drop in share prices since the Easter weekend.

Reports suggest M&S fell victim to a ransomware attack, where criminals infiltrate company systems, encrypt files, and demand ransom for control. The retailer clarified no payment or password details were accessed, promising to inform affected customers. Despite the disruption, no evidence indicates the data has been shared.

Assuring customers there's no need for immediate action, M&S said efforts are underway to restore normal operations, collaborating with cybersecurity experts, law enforcement, and government agencies. Financial impacts are mounting, with missed sales during warm May weather. Analysts predict a profit hit of at least £30 million, although cyber insurance may cover most of the losses.

(With inputs from agencies.)

Give Feedback