You have 0 free articles left this month.
Register for a free account to access unlimited free content.
Powered by MOMENTUM MEDIA
lawyers weekly logo

Powered by MOMENTUMMEDIA

For breaking news and daily updates, subscribe to our newsletter.
Advertisement

M&S chairman refuses to say if retailer paid ransom

The chairman of UK retailer Marks & Spencer (M&S) has refused to answer whether or not the company paid ransom after it was hit by a ransomware attack in April.

M&S chairman refuses to say if retailer paid ransom
expand image

Speaking with a panel of lawmakers at the Business and Trade Committee, chairman Archie Norman declined to answer whether or not M&S paid a ransom to the hackers, saying it was not in the interest of the public.

“We’ve said that we are not discussing any of the details of our interaction with the threat actor,” he said.

“We don’t think it’s in the public interest to go into that subject, partly because it is a matter of law enforcement.”

 
 

Norman did say that “nobody” at M&S had directly interacted with the threat group, which he said was the DragonForce ransomware gang.

“We believe in this case there was the instigator of the attack and then, believed to be DragonForce, who were a ransomware operation based, we believe, in Asia.”

The media has previously accused DragonForce and/or hacking collective Scattered Spider for the incident.

“When this happens, you don’t know who the attacker is, and in fact, they never send you a letter signed Scattered Spider, that doesn’t happen,” Norman said.

At the same time, Norman said British businesses should be legally required to report cyber attacks, claiming that two major organisations had suffered cyber attacks of late without reporting them and that “quite a large number” never get reported.

“In fact, we have reason to believe there’ve been two major cyber attacks on large British companies in the last four months, which have gone unreported,” he said.

“I don’t think it would be regulatory overkill to say [that] if you have a material attack ... for companies of a certain size, you are required within a time limit to report those to the NCSC.”

Daniel Croft

Daniel Croft

Born in the heart of Western Sydney, Daniel Croft is a passionate journalist with an understanding for and experience writing in the technology space. Having studied at Macquarie University, he joined Momentum Media in 2022, writing across a number of publications including Australian Aviation, Cyber Security Connect and Defence Connect. Outside of writing, Daniel has a keen interest in music, and spends his time playing in bands around Sydney.
You need to be a member to post comments. Become a member for free today!

newsletter
cyber daily subscribe
Be the first to hear the latest developments in the cyber industry.