06 Apr 2011
Marks & Spencer has warned customers that they may receive an onslaught of spam after their email addresses were hacked.
The retailer appears to be the first major UK company to have been affected by the attack on US marketing firm Epsilon.
Last Wednesday hackers accessed the name and email details of bank and retailer customers from the Epsilon database. Epsilon clients range from JP Morgan and Citgroup, to McDonald's and Disney.
"We have been informed by Epsilon, a company we use to send emails to our customers, that some M&S customer email addresses have been accessed without authorisation," the company said in an email to customers sent on Tuesday evening.
"We wanted to bring this to your attention as it is possible that you may receive spam email messages as a result."
Marks & Spencer reassured customers that no personal or financial details had been accessed or are at risk.
However, security experts have warned that the Epsilon hackers may sell the list of customer details to phishers and malware distributors who could then use it to launch targeted attacks.
"Data theft accounts for 33 per cent of all attacks today and, although an increase in spam is an obvious outcome, not so obvious is the increased risk of targeted malware attacks seeking to infiltrate company systems," warned Paul Davis, European operations director at network security firm FireEye.
"The loss of personal data is the initial step in a series of potential exploits, from mass spam through to advanced targeted malware which seeks to establish a beachhead within corporate systems for subsequent exploit and data exfiltration."
Latest stories from Security
Related videos
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
V3 examines the key strengths and weaknesses of Samsung's latest iPhone killer
Connect with V3.co.uk
Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them
The importance of understanding your infrastructure
Java Deveoper/Programmer/Software Engineer, Algo Trading...
Austin Fraser has the pleasure of appointing a number...
Austin Fraser has the pleasure of appointing a Java Developer...
Austin Fraser has the pleasure of appointing a Senior...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Email Hacking
Dear all M&S customers who have been affected by the email hacking situation. If you have any queries/ questions or wish to take the matter higher/further please contact our legal team on 0208 718 4114
Posted by: Marks&Spencer 08 Apr 2011
Another company attacked by Virus
Benefit Cosmetics - had an email from them before the M &S message
Posted by: Sarah Fleming 06 Apr 2011
No personal information lost?
S&M should recall that personal information is that which can identify the individual. Email addresses certainly fall into this category.
Posted by: Jonathan Care 06 Apr 2011