

What is going on with the retail cyber attacks?
May 1, 2025
Mickey Carroll, a Sky science and technology reporter, dives deep into the world of cyber attacks, focusing on the notorious group Scattered Spider. He discusses the recent cyber attack on M&S, which caused major operational disruptions. Carroll reveals how Scattered Spider exploits employee vulnerabilities and their clever tactics, including using local accents in phishing schemes. The conversation also touches on the urgent need for retail companies to strengthen cybersecurity measures and the ongoing struggle against organized cybercrime.
AI Snips
Chapters
Transcript
Episode notes
M&S Contactless Payment Shutdown
- Marks and Spencer stopped accepting contactless payments on Easter Monday due to the attack.
- The attack caused empty shelves and disrupted their distribution centers, impacting business severely.
Human Vulnerability Enables Ransomware
- The likely entry point was through employees via human vulnerability rather than technical firewalls.
- Attackers probably used ransomware to hold M&S systems and data hostage for money.
Scattered Spider's Notorious CV
- Scattered Spider is a decentralized hacker network named by cybersecurity firm CrowdStrike.
- They have hacked hundreds of companies, including Caesars and MGM casinos, securing $15 million ransom.