Co-op announces ‘attempted’ cyberattack in wake of M&S incident

Avatar

The Co-op retail chain in the United Kingdom announced on Wednesday it had proactively shut down part of its IT systems following an attempted cyberattack, which testimony from staff suggested may have been detected at least three days ago.

The incident comes amid ongoing disruption to its competitor Marks & Spencer, which suffered an attack last week that shuttered its online stores. On Monday, the chain told workers not to turn up at its main warehouse distribution centers.

According to a Co-op spokesperson, the firm detected “attempts to gain unauthorised access to some of our systems” and as such had “taken proactive steps to keep our systems safe, which has resulted in a small impact to some of our back office and call centre services.”

Its stores, including home deliveries, are continuing uninterrupted, according to a spokesperson who said the company was “working hard to reduce any disruption to our services and would like to thank our colleagues, members, partners and suppliers for their understanding during this period.”

Staff at two Co-op stores told Recorded Future News that the system they used to clock-in to their shifts was down and had been since the beginning of this week, although they said they hadn’t noticed any other disruption.

The Co-op spokesperson appeared to confirm that the clock-in system disruption was connected to the cyberattack by repeating that they had taken proactive steps to keep their systems safe, but said they were unable to provide additional information.

At the moment there is no evidence that data has been compromised in the attack, however the impact to back-room operations could disrupt efforts to track stock, as reported by The Guardian.

“We are not asking our members or customers to do anything differently at this point. We will continue to provide updates as necessary,” the spokesperson stated.

The Co-op is a consumer co-operative with more than 50,000 employees in over 3,000 locations across the country — including grocery stores, insurance services and funeral parlours — and earlier this month reported making around £161 million in profits before tax over the last financial year, with revenues of around £11.3 billion.

CybercrimeIndustryNewsNews Briefs
Get more insights with the

Recorded Future

Intelligence Cloud.

Learn more.

No previous article

No new articles

Alexander Martin

is the UK Editor for Recorded Future News. He was previously a technology reporter for Sky News and is also a fellow at the European Cyber Conflict Research Initiative.

 

Total
0
Shares
Previous Post

Japanese global logistics company confirms ransomware attack

Next Post

The FBI’s Brett Leatherman gives the latest ‘Typhoon’ forecast

Related Posts

Critical Apache Roller Vulnerability (CVSS 10.0) Enables Unauthorized Session Persistence

A critical security vulnerability has been disclosed in the Apache Roller open-source, Java-based blogging server software that could allow malicious actors to retain unauthorized access even after a password change. The flaw, assigned the CVE identifier CVE-2025-24859, carries a CVSS score of 10.0, indicating maximum severity. It affects all versions of Roller up to and including 6.1.4.
Avatar
Read More

New ‘Rules File Backdoor’ Attack Lets Hackers Inject Malicious Code via AI Code Editors

Cybersecurity researchers have disclosed details of a new supply chain attack vector dubbed Rules File Backdoor that affects artificial intelligence (AI)-powered code editors like GitHub Copilot and Cursor, causing them to inject malicious code. "This technique enables hackers to silently compromise AI-generated code by injecting hidden malicious instructions into seemingly innocent
Avatar
Read More