Skip to content
Wednesday 12 August 2026London --:--Frankfurt --:--Zurich --:--
NewslettersSearchEN · DE
MorningWire

European business, markets and politics

FTSE 100
10,833.15
-0.10%
DAX
26,331.07
-0.23%
CAC 40
8,674.94
-0.46%
STOXX 50
6,533.99
-0.26%
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
More
GermanyFranceBankingAIEnergyFintechPropertyCapital Markets
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
  • DE
Wednesday 16 July 2025 10:58 am  |  Updated:  Wednesday 16 July 2025 10:59 am

Co-op boss confirms data of all 6.5m members stolen

By: Saskia Koopman

Tech Reporter

Add as a preferred source on Google
The Co-op shut down parts of its IT systems on April 30 after detecting a potential breach.
Chief executive Shirine Khoury-Haq said she was “devastated” by the impact of the incident on workers and members

The chief executive of Co-op has confirmed that the personal data of all its 6.5m members was stolen during a major cyber attack in April, marking one of the most widespread data breaches in UK retail history.

Speaking publicly for the first time since the attack, Shirine Khoury-Haq said the breach had a “devastating” impact on customers and staff, and described the hack as “deeply personal”.

“There was no financial or transactional data taken, but names, addresses and contact information was accessed”, Khoury-Haq told BBC Breakfast. “It hurt my members… and that I take personally”.

The comments come just days after the National Crime Agency (NCA) arrested four individuals in connection with the attack, including three teenagers and a 20-year-old woman, following a joint operation across Staffordshire, London, and the West Midlands.

Retail cybercrime wave

The attack on Co-op was part of a coordinated wave of cyber intrusions targeting high-profile UK retailers, including Marks & Spencer and Harrods.

The NCA confirmed last week that the group of suspects were arrested on suspicion of blackmail, money laundering, Computer Misuse Act offences, and participation in an organised crime group.

According to investigators, the group attempted to deploy ransomware across Co-op’s systems but was blocked at the last moment when IT staff severed internet access, potentially avoiding catastrophic business disruption.

However, Co-op later admitted hackers had gained access to a “significant” volume of customer and employee data, including membership details from its profit-sharing scheme.

M&S suffered significant operational damage from a related attack, which has reportedly cost the FTSE 100 retailers £300m in lost earnings.

The company is preparing a £100m insurance claim to recover part of that loss, having had a cyber insurance policy in place through Allianz and Beazley.

Read more

John Lewis boss quits after warnings of ‘really tough’ trading

Two men, one in an olive green coat, the other in a blue blazer, both smiling.

Co-op and Harrods, however, did not hold cyber insurance at the time of the attacks – potentially leaving them exposed to material financial and reputational risk.

Co-ops significant damage

Khoury-Haq described the internal scramble to contain the breach, recalling how IT staff worked around the clock to halt further intrusion.

“I met with our IT staff while they were in the midst of it”, she said. “I will never forget the looks on their faces as they tried to fight off these criminals”.

After the hackers were ejected from Co-op’s systems, Khoury-Haq said the firm was able to track their actions in real time and share that data with law enforcement.

Despite these efforts, she acknowledged that the damage was significant. “People will be worried, and all members should be concerned”.

Sector-wide reckoning

The spree of attacks has prompted renewed scrutiny of corporate cybersecurity practices, particularly among UK retailers with vast stores of customer data and legacy IT systems.

In Co-op’s case, the breach also triggered disruption to contactless payments and customer service lines across its food stores in May.

The company restored full payment functionality by mid-May.

Co-op operated under a mutual model, with its 6.5m members owning a share in the business.

“Hacking is not a victimless crime”, said a Co-op spokesperson. “We’ve engaged fully with the NCA throughout and are pleased that this has led to arrests on behalf of our members”.

Read more

London-listed healthcare services firm hit by cyberattack

Assura has been the subject of a ferocious bidding war for nearly six months

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Tech
  • Business
  • Retail

People & Organisations

  • Co-op
  • Cyber
  • cyber attack
  • Cyber crime
  • cyber insurance
  • data breach
  • Marks & Spencer

Trending Articles

  • Five-star Mayfair hotel hit with HMRC winding-up petition

  • Nottingham Forest owner Marinakis sues Crystal Palace for defamation

  • Back to basics: Sainsbury’s gradual retreat from the British high street

  • It’s not just Jason Arday, most of sociology is a scam

  • Hargreaves Lansdown orders staff back to office

More from Morning Wire

  • John Lewis boss quits after warnings of ‘really tough’ trading

    Retail
    Two men, one in an olive green coat, the other in a blue blazer, both smiling.
  • London-listed healthcare services firm hit by cyberattack

    Markets
    Assura has been the subject of a ferocious bidding war for nearly six months
  • M&S to face shareholder grilling over cyber attack recovery

    Retail
    Marks and Spencer was one of three UK retailers to be targeted
  • Champions Cup rugby team hacked in ransom attack with player data at risk

    Sport Business
    Rugby player in a pink uniform running with the ball, pursued by an opponent in a black jersey.
  • IT consultant ordered to pay £50,000 after being accused of stealing Soho House members’ personal details

    Legal
    Soho House has continued to attract new members to its clubs.
  • Regulator flags BDO’s ‘unacceptable’ audit issues for fifth year in a row 

    Accountancy
    BDO is headquartered in London. Credit - BDO
  • As it happened: Stocks fall into red as oil fluctuates over Middle East developments

    FTSE 100 Live
    Large oil tanker navigating a strait under a cloudy sky, impacting oil prices and global trade.
  • UK government probes OpenAI breach after ‘unprecedented’ hack

    Tech
    Sam Altman discussing OpenAIs ChatGPT advancements at a press conference, emphasizing AI innovation and future developments
MorningWire

Independent European business, markets and political news for decision-makers.

Morning Briefing

Europe

  • Germany
  • France
  • Europe
  • UK & Ireland

Business

  • Markets
  • Banking
  • Technology
  • Energy
  • Property
  • Fintech

Editorial

  • Opinion
  • Editorial Policy
  • Corrections
  • Contact

Company

  • About Morning Wire
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
© 2026 Morning Wire Ltd · Published by Morning Wire Media, Bahnhofstrasse 65, 8001 Zürich, Switzerland
Privacy · Terms · Cookies · Facebook