Skip to content
Saturday 8 August 2026London --:--Frankfurt --:--Zurich --:--
NewslettersSearchEN · DE
MorningWire

European business, markets and politics

FTSE 100
10,901.09
+0.31%
DAX
26,319.45
+0.69%
CAC 40
8,714.93
+0.17%
STOXX 50
6,523.86
+0.33%
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
More
GermanyFranceBankingAIEnergyFintechPropertyCapital Markets
  • Germany
  • France
  • Europe
  • Markets
  • Business
  • Economy
  • Technology
  • Politics
  • Opinion
  • DE
Wednesday 07 May 2025 10:32 am

M&S, Harrods and Co-op attacks expose UK’s growing cybersecurity risks

By: Saskia Koopman

Tech Reporter

Add as a preferred source on Google
The Co-op is headquartered in Manchester.
AI and talent crunch leave UK business exposed to cyberattacks.

A recent spate of cyber attacks on UK retail giants, including M&S, Harrods and Co-op, have exposed growing concerns over cybersecurity readiness at British businesses.

According to Cisco’s latest Index, released Wednesday, only four per cent of UK firms are fully prepared to defend against today’s complex cyber threats.

The report found, too, that 83 per cent of UK organisations are grappling with a shortage of skilled cybersecurity professionals, leaving many critical security roles unfilled as threat levels increase.

“The bad guys are there looking for ways in – and far too many organisations are sitting ducks”, Martin Lee, EMEA lead at Cisco Talos, told Morning Wire.

“They have tools, they have a business model, they know how to make money”.

A 2024 report from the UK’s National Cyber Security Centre (NCSC) also warned that ransomware groups are adopting more aggressive extortion tactics and increasingly centring their attacks around AI.

The recent spate of incidents at M&S, Co-op, and Harrods reflects a broader uptick in attacks on UK retail, logistics, and financial firms, with reports of phishing, ransomware, and supply chain compromise becoming increasingly common.

Earlier this year, Pwc flagged a growing divide between firms investing proactively in cybersecurity and those failing to do so, warning that reactive postures are no longer sustainable in the AI era.

AI outpaces cybersecurity oversight

While 92 per cent of UK organisations are already using AI in some form to detect or respond to various malware, the report found that over 78 per cent experienced security incidents related to AI within the past year.

Despite this, 65 per cent of IT teams said they had little to no visibility into employee use of unapproved AI tools, raising concerns over so-called ‘shadow AI’.

“People love shiny new tech, and move faster than policy”, Lee said. “We’re seeing employees putting confidential company data into AI systems without understanding where the data goes”.

Recent findings from Gartner support this trend, noting that over 40 per cent of employees in large enterprises use GenAI tools daily, and often without formal guidance or oversight.

Read more

Trust, stability, resilience and innovation – the cornerstones of 25+ years of cybersecurity leadership

Christiane Hoffmann, a blonde woman in glasses and a black business suit, smiling with arms crossed.

Lee warned that while AI can help automate security monitoring and accelerate threat detection, it still requires trained professionals to oversee its implementation.

“AI is a force multiplier”, he said, “but people need to scope, implement, and manage it”.

Skill shortage hinders response

The talent shortfall is compounding the problem, with nearly half of UK firms surveyed having over ten open cybersecurity roles.

What’s more, only 45 per cent are allocating more than 10 per cent of their IT budgets to cyber defence, which has tumbled from 54 per cent last year.

“We’ve never had enough cyber professionals- and we never will”, said Lee.

“So, let’s get AI doing the simple stuff, and use our people for the things machines can’t do – like responding to complex incidents and making strategic decisions”.

The report also flagged growing challenges related to security complexity, with over two thirds of businesses relying on over 10 disconnected security tools.

This fragmentation can hinder response times and increase the risk of missed threats.

Lee advised businesses to focus on strengthening foundational defences.

“The biggest advice I can give to businesses is to get to basics right”, he said. “Cyber criminals are looking for the easiest route in – and if you’re better prepared, they’ll move on to someone else”.

This issue doesn’t stop with the UK. “Cybersecurity is a global issue,” said Lee. Threats don’t respect national boundaries. “

Read more

UK government probes OpenAI breach after ‘unprecedented’ hack

Sam Altman discussing OpenAIs ChatGPT advancements at a press conference, emphasizing AI innovation and future developments

Share this article

  • Facebook
  • X
  • LinkedIn
  • WhatsApp
  • Email

Similarly tagged content:

Sections

  • News

Categories

  • Tech
  • Business

People & Organisations

  • Cisco
  • cisco talos
  • Co-op
  • Cyber
  • cyberattacks
  • cybersecurity
  • harrods
  • Marks & Spencer
  • ransomware
  • uk business

Trending Articles

  • Why the Loire Valley is about so much more than fairytale castles

  • Why HMRC is huge Premier League transfer window tax headache

  • Thames Water faces fresh threat to survival after pensions regulation breach

  • Back to basics: Sainsbury’s gradual retreat from the British high street

  • Thunder Call set to Strike in Shergar Cup Sprint

More from Morning Wire

  • Trust, stability, resilience and innovation – the cornerstones of 25+ years of cybersecurity leadership

    Partner
    Christiane Hoffmann, a blonde woman in glasses and a black business suit, smiling with arms crossed.
  • UK government probes OpenAI breach after ‘unprecedented’ hack

    Tech
    Sam Altman discussing OpenAIs ChatGPT advancements at a press conference, emphasizing AI innovation and future developments
  • U.K. Firms Make Cyber Resilience Measurable

    Business Wire
  • UK’s AI watchdog flags new OpenAI and Anthropic cyber alarms

    AI
    Smartphone displaying the Claude by Anthropic AI assistant app, showing the app icon and interface.
  • Accertify and Liminal Release First Empirical Study Proving Fraud-Cyber Convergence Works – and Defining How to Do It Right

    Business Wire
  • Darktrace says Anthropic was right to pause Mythos on ‘security and safety’ grounds

    Tech
    Dario Amodei, CEO of Anthropic, speaking at a tech conference podium, wearing a suit and addressing the audience.
  • Bregal Milestone III Closes at its Increased Hard Cap of €915 Million

    Business Wire
  • Arch Construction Risk Report Reveals Top Challenges Facing Sector Amid Rising Volatility

    Business Wire
MorningWire

Independent European business, markets and political news for decision-makers.

Morning Briefing

Europe

  • Germany
  • France
  • Europe
  • UK & Ireland

Business

  • Markets
  • Banking
  • Technology
  • Energy
  • Property
  • Fintech

Editorial

  • Opinion
  • Editorial Policy
  • Corrections
  • Contact

Company

  • About Morning Wire
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
© 2026 Morning Wire Ltd · Published by Morning Wire Media, Bahnhofstrasse 65, 8001 Zürich, Switzerland
Privacy · Terms · Cookies · Facebook