Scattered Spider Suspected in Major M&S Cyberattack
ID: 5c4047bf-b0a4-5a95-ba3c-d07d374b0b8a
STIX ID: report--5c4047bf-b0a4-5a95-ba3c-d07d374b0b8a
Feed Name: HackRead
Threat Score
**Executive summary:** The retail giant Marks & Spencer suffered a ransomware incident attributed to the Scattered Spider group that reportedly involved theft of the NTDS.dit (enabling credential compromise), lateral movement, and deployment of the DragonForce encryptor against VMware ESXi virtual machines on April 24; the attack disrupted contactless payments, Click & Collect, online orders and store supply, causing substantial financial and operational losses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
