Skip to content
Thursday 10 September 2026London --:--Frankfurt --:--Zurich --:--
NewslettersSearchEN · DE · FR
MorningWire

European business, markets and politics

FTSE 100
10,626.10
-0.41%
DAX
25,568.54
-0.03%
CAC 40
8,175.21
+0.23%
STOXX 50
6,308.50
-0.05%
  • Europe
  • Markets
  • Business
  • Economy
  • Regulation
  • Politics
  • Opinion
More
GermanyFranceEU InstitutionsCompetitionPublic AffairsBankingTechnologyEnergy
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Economy
  • Regulation
  • Politics
  • Opinion
  • DE
Tuesday 20 December 2022 6:00 am  |  Updated:  Monday 19 December 2022 11:26 am

As cyber criminals start targeting retail, companies must be ready to fight back

By: Robert Blumofe

Add as a preferred source on Google
Cyber criminals are doubling down on financially squeezed companies.

Given the current geopolitical situation, it’s easy to conflate cybersecurity with the war in Ukraine and bad actors overseas. Historically, cyber-attacks have traditionally been associated with nation states and hacktivists conducting high-profile attacks on high-profile targets to wreak havoc, make headlines, and draw attention to their cause. However, the current cyber-security landscape is far murkier – and it’s right on our doorstep – thanks to the rise of organised cyber-crime at scale. 

This underground economy, fuelled by the Internet and easy access to illegal tools on the Dark Web, has made cyber-attacks far more profitable, viable and repeatable, enabling cyber-criminals to operate down-market. The strategy is no longer to score one big hit, but rather to systematically steal smaller amounts of money, quietly racking up significant profits. As a consequence, no one is safe. When previously it would have just been the high-profile businesses that were targeted, small and medium sized companies are now just as likely to become victims. 

Who are cyber-criminals’ ideal targets? In truth, any organisation with money and valuable data. For instance, gaming firms managing in-game microtransactions are a prime target because they have established relationships with their customers who often save their card details within their account. 

Unsurprisingly, financial services companies have long been a key target because the stakes are so high – with significant funds and financial data stored within their systems. However, due to the highly secure and regulated nature of banking, other sectors can become easier victims.

Retail has caught the cyber-criminals’ attention. While far less regulated than financial services with less stringent security requirements, retailers handle a sizable number of transactions and a significant amount of valuable personal and financial data.

Moreover, online retailers rely heavily on their reputations and customer loyalty. A recent survey we commissioned with YouGov showed that 59 per cent of online shoppers would stop shopping at a retailer if it was the victim of a cyber-attack. And we know that large retailers, including Tesco, are no strangers to breaches. The Works had to close some stores and faced delays on fulfilling restock and online orders due to a cyber-attack earlier this year, which is a testament to how disruptive a hack can be for retailers, both online and physically. 

Any perceived lack of trustworthiness has real financial consequences: 91 per cent of consumers surveyed said they would abandon their shopping cart if a website did not appear secure enough and almost half don’t trust retailers to keep their personal details safe. This can significantly impact retailers’ bottom lines, making consumers less likely to set up accounts, save bank details, and share other information that incentivises repeat business. 

When we look at the activities of criminals, we spot several common modus operandi. Criminals use phishing to divert web traffic towards their malicious platforms to steal credentials. They often act through bots, often at enormous scale. These bots can be used to undercut prices or perform credential stuffing attacks. A couple of months ago, FishPig, a British IT company providing software to more than 200,000 ecommerce websites, experienced a security breach, which shows that the sector is also vulnerable to supply chain-related security risks. 

As the risk of a recession persists, many businesses may be tempted to cut back on their cybersecurity budgets to save money and protect business. But cyber-criminals won’t be cutting back – they will be doubling down, preying on financially squeezed companies and their equally stretched customers. Cybercrime can be more profitable during a recession for these very reasons. Criminals will be stronger and more malignant in their approach, so businesses shouldn’t be taking a gamble on online safety and data protection.

Read more

Iranian hackers behind UK energy plant attack

UK industrial electricity prices are the highest in the G7 and 46 per cent above the average of the International Energy Agency.

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • Opinion

Categories

  • Opinion

Trending Articles

  • Tesco and Boots lead 100,000 jobs pledge to tackle Neets crisis

  • Airport chaos latest: Heathrow, London City ‘starting to recover’ after air traffic control failure

  • Hedge fund billionaire Chris Rokos joins UK wealth exodus 

  • Five lenders hike mortgage prices as interest rate threat looms

  • As it happened: FTSE 100 dives as oil prices surge past $100 in blow to inflation

More from Morning Wire

  • Iranian hackers behind UK energy plant attack

    Energy
    UK industrial electricity prices are the highest in the G7 and 46 per cent above the average of the International Energy Agency.
  • AI gold rush leaves accountancy firms exposed to costly cyberattacks

    AI
    Two tablets displaying code and a cyber warning symbol, with blurry blue and pink background numbers
  • Stansted Airport owner hit with cyber attack as millions of customers’ data stolen

    Transport & Infrastructure
    London Stansted Airport is part of the wider Manchester Airports Group (MAG).
  • Cloudflare Introduces Adaptive Intelligence; Reverses the Economics of Automated Cyber Attacks

    Business Wire
  • Cloudflare Partners with OpenAI Daybreak Models to Redefine Vulnerability Management with AI-Powered Edge Defense

    Business Wire
  • Andrew Bailey warns markets are not ready for the rise (or fall) of AI

    Markets
    Andrew Bailey, Governor of the Bank of England, in a suit and tie, looking thoughtful during a press conference.
  • IGI Announces the Launch of Cipher, A Specialty Treaty Reinsurance Platform Focused on Cyber

    Business Wire
  • British Airways travellers hit as 3,000 luggage items stuck in Heathrow 

    Transport & Infrastructure
    Heathrow and several European airports are suffering from a cyber attack.
MorningWire

Independent European business, markets and political news for decision-makers.

Morning Briefing

Europe

  • Germany
  • France
  • EU Institutions
  • Europe

Business

  • Markets
  • Business
  • Economy
  • Regulation
  • Competition
  • Public Affairs

Editorial

  • Opinion
  • Editorial Policy
  • Corrections
  • Contact

Company

  • About Morning Wire
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
© 2026 Morning Wire Ltd · Published by Morning Wire Media, Bahnhofstrasse 65, 8001 Zürich, Switzerland
Privacy · Terms · Cookies · Facebook