How working from home made Britain a sitting duck for cyber attackers
Former M&S boss Lord Stuart Rose has long branded himself an 'unreconstructed get-back-to-work man', claiming the practice of working from home is damaging both the economy and employees' wellbeing.
Now, the 76-year-old businessman may have another reason to oppose remote working – with the arrangement possibly putting one of Britain's best-loved retailers, and his former employer, at the mercy of hackers.
Since Easter weekend, M&S has been reeling from a major cyber attack that has paralysed online orders, disabled contactless payments in-store, and wiped nearly £700 million off its market value.
And M&S is not the only retailer that has been subjected to such an attack. Earlier this week, the Co-op said it was having to fend off hackers and, on Thursday evening, luxury department store Harrods said they had 'recently experienced attempts to gain unauthorised access to some of their systems'. In a statement, the store added: 'Our seasoned IT security team immediately took proactive steps to keep systems safe and as a result we have restricted internet access at our sites.'
Harrods said all its stores remained open and it is unknown if the three attacks are related.
Though M&S bosses have yet to reveal the cause, questions are mounting over whether the hackers were able to penetrate the multibillion-pound firm's cyber defences through one of its remote workers.
It would not be a surprise as for years security experts and intelligence agencies have warned that hackers are targeting remote workers as the weakest link in the chain in a company's digital infrastructure.
Indeed, just last year the retailer – which is understood to allow staff to work two days a week at home – warned in its annual report that WFH was increasing its exposure to cyber attacks.
But why? The answer is simple – computers in most corporate offices have a vast array of tough defences installed to keep bad actors out, from firewalls to secure internet routers, all of which are kept under close watch by the on-site security team.
Yet such protection wanes as soon as staff are out the revolving doors. Suddenly, the onus falls instead on the employee, whether it's keeping their devices updated or being vigilant when using unsecured public WiFi while working in cafes.
A survey by Malwarebytes Lab, carried out around six months after the first Covid lockdown, found one in five businesses had faced a security breach as a result of a remote worker.
Four years later, a poll by Absolute Security in 2024 revealed three out of four bosses still believed staff working from home was their 'biggest weakness' when trying to defend against cyber attacks.
Experts believe M&S was infected by a ransomware called Dragonforce, a malicious software that locks a user out of their computer or network and scrambles the data – with the criminals demanding a fee to unlock it.
In its rush to contain the attack, M&S bosses quickly moved to lock remote-working staff out of the company's internal IT systems. But could these remote workers have also been the crucial weakness that let the hackers in?
To infect a computer, hackers need to find a chink in digital defences – and staff working from home can often be easy prey. A common target is through a virtual private network (VPN), used by remote employees to securely connect to their office networks.
Such software is only useful if it's kept up-to-date and uses multi-factor authentication, which requires several forms of verification to access. In 2021, investigators traced the huge ransomware attack that took down the Colonial Pipeline – which supplies 45 per cent of United States' fuel on the East Coast – to an old version of a VPN account commonly used by remote employees.
The same year, a hacker gained control of the Oldsmar water treatment plant in Florida, and tried to poison the supply by increasing the chemical content, through a remote access software called TeamViewer. All the plant's computers were using the same password for remote access, and were running on an outdated Windows operating system.
In other words, both were ripe for exploitation. In 2022, an alert by the Five Eyes intelligence alliance warned that the Microsoft software, Remote Desktop Protocol (RDP), that linked 'millions' of Britons to their company networks, was 'one of the top ways' Russian hackers could potentially gain a crucial foothold within critical infrastructure, from the NHS to nuclear power stations.
Yet often, the real weakness is not a system flaw but the people behind the systems – either the security team or the employees themselves. One of the most popular methods of gaining unauthorised access is 'social engineering', which involves tricking humans into compromising their security.
Such tactics were used in the attack on Twitter in July 2020 when a 17-year-old boy was able to gain access to 130 celebrity Twitter accounts – including Barack Obama, Kim Kardashian, and its future owner Elon Musk – to promote a Bitcoin scam.
An investigation by the New York State Department of Financial Services found the teen had 'directly exploited Twitter's shift to remote working' by calling up employees and pretending to be from the IT department to get access to the internal systems.
Earlier this week it was revealed the Met Police are investigating whether the M&S attack was carried out by a hacking collective called Scattered Spider. The group first appeared in 2022 and have already been linked to more than 100 targeted attacks, including US casino operator Caesars, which paid over £11 million to restore its network.
Unlike the majority of such gangs, who are generally based in places such as Russia, the group are English-speaking and known to include UK and US citizens, some as young as 16. Their motivation is said to be as much about bragging rights as money.
According to the FBI, the group's modus operandi is tricking people into letting them into their systems, from impersonating IT staff to 'sim swapping', a tactic in which a fraudster persuades their victim's mobile provider to transfer the phone number to a sim card under their control.
'Scattered Spider have been linked to dozens of attacks over the last few years and their clever tactics often target the human element,' Jake Moore, global security advisor at cybersecurity software company ESET, tells The Telegraph. Moore points to remote workers in particular as a potential target. 'Working from home adds yet another attack entry point which has limited control.'
He reveals how, as a test, he once hacked into the work account of a superintendent simply by calling the Police HQ help desk. 'They asked me two security questions, which were easy to find out the answers to online – vehicle registration and shoulder number – and then I was able to convince them I was the superintendent and had forgotten my password after being on holiday for two weeks.
'They reset the password to a new string of text and gave me the password over the phone. I then logged in and had full access to the police networks. At this point I made the chief constable aware of this vulnerability.'
The heightened danger of WFH on M&S's cybersecurity is not a view shared by all however. 'That's total BS as far as I'm concerned,' says Ciaran Martin, ex-chief executive of the UK's National Cyber Security Centre (NCSC). 'I don't have a strong view on either side of the culture war, but it's not a thing, so far as I understand the details in this incident specifically.
'I was head of the NCSC when lockdown one happened, and I was stunned at how little rise there was in cyber harm when we went on an unplanned, short-notice experiment in home working. Turns out the bring your own device security and other remote working things we'd been doing for years before 2020 worked pretty well. We have many systemic problems in cyber security but remote working isn't on my list!'
But the NCSC is clearly aware of the vulnerabilities, saying in an advisory note published in April 2020 that 'the surge in home working has increased the use of potentially vulnerable services… amplifying the threat to individuals and organisations'.
Often, remote workers are the first in line to have their access removed from internal systems when there is an attack – suggesting security teams are wary of the threat. As it battled to contain damage from its cyber attack, on Wednesday, Co-op told staff they could no longer log on to the company's IT system from home, a 'proactive measure' it explained after detecting 'third parties' trying to break in over the weekend.
Indeed, experts warn the threat to companies from remote work is only rising with the advent of generative AI, the technology behind chatbots. Not only is it making social engineering easier, both in terms of scale and its believability, but it is also inadvertently giving away vast swathes of confidential company data to third parties that in-house security teams have no ability to protect.
'Hybrid work has made enforcing security standards a minefield,' says Arkadiy Ukolov, co-founder of Ulla Technology. 'Employees increasingly rely on AI-powered tools such as ChatGPT – often outside corporate oversight – unaware that these systems may quietly harvest client data to train their models. This opens doors to data leakages where third parties gain access to very sensitive information.'
'The risk isn't theoretical – it's happening in the background, right now,' he adds. In response, the London-based firm has developed an AI-powered assistant that can be integrated into a company's infrastructure to keep the data private. 'The most vulnerable industries are the legal sector, government departments and the NHS.
'Their employees manage highly sensitive information such as intellectual property, corporate secrets and medical documents on a daily basis. For them, poorly managed hybrid working systems pose an existential security threat.'
Broaden your horizons with award-winning British journalism. Try The Telegraph free for 1 month with unlimited access to our award-winning website, exclusive app, money-saving offers and more.

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles
Yahoo
11 minutes ago
- Yahoo
Merck claims study success with PCSK9 cholesterol pill
This story was originally published on BioPharma Dive. To receive daily news and insights, subscribe to our free daily BioPharma Dive newsletter. An experimental cholesterol-lowering pill from Merck & Co. succeeded in a pair of late-stage studies, the company said Monday. In one study, Merck's drug, enlicitide, was tested against a placebo in people already taking statins and who have either an inherited condition that causes high cholesterol or are at risk of atherosclerosis. The second trial evaluated enlicitide against other oral therapies, such as ezetimibe, in people on statins and with abnormally high levels of fats in the blood. Merck didn't provide specifics, but said in both cases enlicitide met all of its study objectives and demonstrated 'statistically significant and clinically meaningful reductions' in LDL-C, or 'bad' cholesterol, without any important differences in the number of adverse events. Details will be presented at a future medical meeting. Company shares climbed 2% in early trading Monday. A decade ago, the Food and Drug Administration approved a pair of injectable treatments that could dramatically lower cholesterol in people with heart disease. The drugs, known as PCSK9 inhibitors for the cholesterol-regulating protein they target, were hailed as medical breakthroughs and billed as multibillion-dollar sellers. Instead, their developers struggled to convince payers and physicians of their worth. Sales totals, until recently, have largely disappointed. Merck believes it will have better luck with enlicitide, which could be the first oral medication that blocks PCSK9. The company has bet heavily on its future, enrolling about 17,000 participants across several late-stage studies. And it's counting on enlicitide to become one of the products that can help it grow sales once the patents protecting Keytruda, its dominant cancer immunotherapy, expire later this decade. Questions about its post-Keytruda future have spurred a 40% share slide over the last year and heightened pressure on its next prospects to succeed. The company, for its part, has spoken boldly about enlicitide's promise. Research chief Dean Li has described it as likely becoming the first of its kind available, the 'most effective' cholesterol-lowering pill medicine on the market, and the foundation for future drug combinations. Enlicitide should also be able to sidestep the reimbursement issues long weighing down sales of PCSK9 blockers, CEO Robert Davis said during a presentation in January. Though the drug is a so-called macrocyclic peptide and thus more complicated to make than traditional small molecule pills, Merck has invested significantly in production and believes it can manufacture enlicitide at a low cost. That could help the company 'price it in a way that won't create the excess challenges' others have had and obtain a 'competitive advantage,' Davis said. Still, there is a large collection of branded and generic cholesterol drugs available, as well as multiple newer medicines in advanced testing. AstraZeneca, for one, has a PCSK9 pill in development that some analysts believe to be a meaningful threat to Merck's program. While there are 'early signs' Merck's drug might be more effective, AstraZeneca's could be 'more tolerable and easier to administer,' Leerink Partners analyst Daina Graybosch wrote in April. The size of enlicitide's effects in Phase 3 testing, then, will be closely scrutinized. In Phase 2 trials, a variety of enlicitide doses lowered LDL levels by up to 60% after eight weeks of treatment. One of the Phase 3 studies Merck reported on Monday tested cholesterol levels after 24 weeks, and there is typically a 'degradation in efficacy' when companies move a drug into larger, longer trials, wrote Jefferies analyst Dennis Ding. Ding also speculated that drug adherence could be lower in Merck's studies, as food intake disrupts enlicitide effectiveness. 'The magnitude of benefit will be key to watch,' he wrote.
Yahoo
13 minutes ago
- Yahoo
Stock market today: S&P 500, Dow, Nasdaq mixed as US and China reboot trade talks
US stocks were mixed on Monday as investors looked to renewed US-China trade talks for signs either side is willing to dial down tensions and reach a tariff deal. The S&P 500 (^GSPC) rose 0.1% after the benchmark edged above 6,000 to notch its highest close since February. The Dow Jones Industrial Average (^DJI) fell 0.4% while the tech-heavy Nasdaq Composite (^IXIC) drifted up 0.4%. The focus is on high-level US-China trade talks that began in London on Monday, after a phone call between President Trump and Chinese President Xi last week. Read more: The latest on Trump's tariffs The stakes are high amid warnings that tariff barriers will harm economies worldwide — the US in particular. Investors are looking for a revival of the momentum shown in the Geneva pact in mid-May. Relations have soured since then, with the US and China accusing each other of not keeping to the trade truce and ratcheting up pressures in other areas. For now, markets appear to have shaken off the volatility that has plagued markets following Trump's early-April tariff hikes. Stocks ended last week on a high note, as encouraging jobs data helped ease fears of a recession fueled by his policy overhaul. The economic highlight this week is May US consumer inflation print due on Friday, with the wholesale inflation report ushering it in on Thursday. On the corporate front, Apple (AAPL) kicks off its big annual WWDC developers conference on Monday. Wall Street is watching for more insight into the company's AI plans, though not on the lines of last year's splashy announcements. Meanwhile, investors are keeping a wary eye on escalating tensions in Los Angeles after Trump sent in the National Guard to deal with anti-deportation protests. Circle's stock (CRCL) surged for a third day in a row on Monday following its blockbuster IPO last week. Shares of the stablecoin issuer gained more than 15% to trade near $122 per share, raising the company's market cap to roughly $24 billion. The move follows gains on Thursday and Friday, when the stock rose as much as 200% shortly after its long-anticipated public market debut. Stocks edged higher on Monday amid hopes that US-China trade talks will ease tariff tensions and eventually lead to a permanent deal between the two leading economies. The S&P 500 (GSPC) rose to just above the flat line, after the broad benchmark closed on Friday at its highest level since February. The Dow Jones Industrial Average (^DJI) gained 0.1%, while the tech-heavy Nasdaq Composite (^IXIC) edged 0.2% higher. High-level trade talks between Beijing and Washington began in London on Monday. This follows a phone call between President Trump and Chinese leader Xi Jinping last week. Apple's annual Worldwide Developers Conference (WWDC) kicks off in Cupertino, Calif., today. While investors may get another taste of artificial intelligence features, including AI-powered Siri, Apple isn't expected to deliver any big announcements. The company will likely showcase new features and designs for iOS, iPadOS, macOS, and watchOS. There's always a chance it will debut a new piece of hardware too. Apple (AAPL) stock rose 0.5% in premarket trading ahead of the event. Read our tech editor's preview of everything to expect from Apple WWDC 2025. Robinhood (HOOD) stock slipped 4% after it didn't make it into the benchmark S&P 500 index as some speculated it might. S&P Dow Jones Indices did not make any changes to S&P 500 membership as part of its quarterly rebalancing. Reuters reports: Read more here. Shares of Warner Bros. Discovery (WBD) rose more than 6% in premarket trading on Monday after the media company said it would split into two companies. Warner Bros. will separate its studios and streaming business, which includes HBO Max, and its cable television networks, including CNN. The split is expected to be completed by mid-2026. Reuters reports: Read more here. Economic data: New York Fed one-year inflation expectations (May); Wholesale trade sales month-over-month (April) Earnings: Casey's (CASY) Here are some of the biggest stories you may have missed overnight and early this morning: All eyes on AI as Apple takes the stage for WWDC A quieter summer is coming for stocks: Wall Street experts Hopes for US-China thaw as trade talks resume Senate GOP to lay out major revisions to Trump's tax bill Resilient economy to limit summer pullback in stocks: MS, Goldman Meta is set to throw billions at startup that leads in AI data China exports to US fall by most since 2020 despite tariff truce Here are some top stocks trending on Yahoo Finance in premarket trading: Robinhood (HOOD) stock fell 5% before the bell on Monday after the S&P Dow Jones Indices made no changes to the S&P 500 in its quarterly rebalancing. Tesla (TSLA) stock also dropped on Monday in premarket trading after CEO Elon Musk criticized President Trump's tax bill. Strategy (MSTR) stock rose on Monday by 2%. A SEC filing revealed the company had purchased 705 bitcoin during the period of May 26 to June 1 at an aggregate purchase price of $75.1M. Wall Street strategists are growing optimistic about US stocks, with forecasters at Morgan Stanley (MS) and Goldman Sachs Group (GS) the latest to suggest resilient economic growth would limit any pullback over the summer. Bloomberg reports: Read more here. Circle's stock (CRCL) surged for a third day in a row on Monday following its blockbuster IPO last week. Shares of the stablecoin issuer gained more than 15% to trade near $122 per share, raising the company's market cap to roughly $24 billion. The move follows gains on Thursday and Friday, when the stock rose as much as 200% shortly after its long-anticipated public market debut. Stocks edged higher on Monday amid hopes that US-China trade talks will ease tariff tensions and eventually lead to a permanent deal between the two leading economies. The S&P 500 (GSPC) rose to just above the flat line, after the broad benchmark closed on Friday at its highest level since February. The Dow Jones Industrial Average (^DJI) gained 0.1%, while the tech-heavy Nasdaq Composite (^IXIC) edged 0.2% higher. High-level trade talks between Beijing and Washington began in London on Monday. This follows a phone call between President Trump and Chinese leader Xi Jinping last week. Apple's annual Worldwide Developers Conference (WWDC) kicks off in Cupertino, Calif., today. While investors may get another taste of artificial intelligence features, including AI-powered Siri, Apple isn't expected to deliver any big announcements. The company will likely showcase new features and designs for iOS, iPadOS, macOS, and watchOS. There's always a chance it will debut a new piece of hardware too. Apple (AAPL) stock rose 0.5% in premarket trading ahead of the event. Read our tech editor's preview of everything to expect from Apple WWDC 2025. Robinhood (HOOD) stock slipped 4% after it didn't make it into the benchmark S&P 500 index as some speculated it might. S&P Dow Jones Indices did not make any changes to S&P 500 membership as part of its quarterly rebalancing. Reuters reports: Read more here. Shares of Warner Bros. Discovery (WBD) rose more than 6% in premarket trading on Monday after the media company said it would split into two companies. Warner Bros. will separate its studios and streaming business, which includes HBO Max, and its cable television networks, including CNN. The split is expected to be completed by mid-2026. Reuters reports: Read more here. Economic data: New York Fed one-year inflation expectations (May); Wholesale trade sales month-over-month (April) Earnings: Casey's (CASY) Here are some of the biggest stories you may have missed overnight and early this morning: All eyes on AI as Apple takes the stage for WWDC A quieter summer is coming for stocks: Wall Street experts Hopes for US-China thaw as trade talks resume Senate GOP to lay out major revisions to Trump's tax bill Resilient economy to limit summer pullback in stocks: MS, Goldman Meta is set to throw billions at startup that leads in AI data China exports to US fall by most since 2020 despite tariff truce Here are some top stocks trending on Yahoo Finance in premarket trading: Robinhood (HOOD) stock fell 5% before the bell on Monday after the S&P Dow Jones Indices made no changes to the S&P 500 in its quarterly rebalancing. Tesla (TSLA) stock also dropped on Monday in premarket trading after CEO Elon Musk criticized President Trump's tax bill. Strategy (MSTR) stock rose on Monday by 2%. A SEC filing revealed the company had purchased 705 bitcoin during the period of May 26 to June 1 at an aggregate purchase price of $75.1M. Wall Street strategists are growing optimistic about US stocks, with forecasters at Morgan Stanley (MS) and Goldman Sachs Group (GS) the latest to suggest resilient economic growth would limit any pullback over the summer. Bloomberg reports: Read more here.

Business Insider
42 minutes ago
- Business Insider
US-China trade, inflation, Apple's big event: Here's what the stock market is watching this week
Investors will be monitoring a host of potentially market-moving events this week, with updates due on trade and inflation, while Apple kicks off a highly anticipated product event. Recession fears have edged down after the turmoil that racked markets earlier in the spring, but the market is still struggling with uncertainty regarding President Donald Trump's trade policies and their implications for the economy. While last week's jobs report showed a solid labor market, investors are monitoring how the inflation side of the Federal Reserve's dual mandate fares this week, and how it will influence the rate-cut outlook for the year. Meanwhile, Apple's Worldwide Developers Conference will provide insight into not only new software updates but also the future of the AI race among mega-cap tech companies. Here's what investors are watching this week. US-China trade talks After last week's phone call between Trump and Chinese president Xi Jinping, China and US trade officials are meeting in London on Monday for two days of trade negotiations. Last month's trade talks were key to calming recession fears and helped propel the S&P 500 to its highest levels since February, but concerns still remain. The biggest negotiation topic will be over China's exports of rare earth metals, which are critical components in manufacturing semiconductors, smartphones, and other technologies. Continued improvements in trade relations between the two countries will be critical to reducing volatility in the market and could shed clarity on the direction of tariff rates. CPI data The consumer price index for May will be released on Wednesday. Last month 's reading of 2.3% was fairly benign, but investors will continue to watch for signs of Trump's tariffs showing up in the hard data. Importantly, the reading will be key in determining the Fed's next move. The median forecast is for annual consumer inflation to have risen 2.5% last month. Meanwhile, expectations for the June 17 Fed meeting are for officials to keep interest rates unchanged. "The big surprise could be how little Trump's tariffs are boosting inflation despite upward pressures on prices-paid and prices-received indexes in the Fed's regional business surveys," wrote on Sunday. Yet, some strategists have predicted that inflation will pick up in the back half of this year, spurring stagflation concerns. Meanwhile, consumer sentiment will get a fresh reading on Friday. Sentiment has been low as Americans feel pessimistic about tariffs, though hard data that the Fed looks at has held up. Apple's Worldwide Developers Conference All eyes will be on Apple this week as it kicks off its annual Worldwide Developers Conference, where the company is expected to unveil new AI features embedded in iOS 19. The conference will be an opportunity for Apple to address several headwinds it has faced this year. "In a nutshell WWDC is a pivotal moment in Apple's future as the developers are the hearts and lungs of the Cupertino growth story with the Street being laser-focused on Apple today," Wedbush analyst Dan Ives wrote. The tech giant has trailed peers like Microsoft and Google in the AI race, and its stock has taken a beating this year as the worst-performing Magnificent Seven member, largely due to concerns about tariffs and iPhone production. Last month, Trump threatened a tariff of at least 25% on iPhones not made in the US. Investors will be looking for updates on Apple Intelligence as well, as the company's AI offering has been underwhelming to Wall Street. A key bond auction The US Treasury sells a lot of bonds, and usually the sale is unremarkable for markets. However, with deficit concerns running high as the GOP budget bill moves through Congress, a $22 billion auction of 30-year bonds on Thursday could move the market if demand appears weak. A weak sale of 20-year bonds last month rattled markets and sent yields surging, and all eyes are on this week's sale as a potential investor referendum on the sweeping tax and spending bill.