UK IT Channel News | IT Channel Oxygen
  • News
  • Topics
    • Vendor
    • Distributor
    • Partner
    • Indepth
    • Sustainability
    • M&A
    • People Moves
    • AI
    • Tech trends
  • Sustainability
  • About Us
  • Partner with us
Members
Must-Know Distributors
Oxygen 250
No Result
View All Result
  • News
  • Topics
    • Vendor
    • Distributor
    • Partner
    • Indepth
    • Sustainability
    • M&A
    • People Moves
    • AI
    • Tech trends
  • Sustainability
  • About Us
  • Partner with us
No Result
View All Result
UK IT Channel News | IT Channel Oxygen
No Result
View All Result
Home Cybersecurity

14 most significant cyber-attacks of 2025 so far – with a twist…

The twist being that our rundown is based entirely on the views of 12 partner leaders

Oxygen staff by Oxygen staff
30 June 2025
in Cybersecurity, Indepth, News, Partner
14 most significant cyber-attacks of 2025 so far – with a twist…
Share on LinkedinShare on Twitter

7. Harrods

When: May

What happened?

Harrods was the third major retailer to be hit in a spate of cyber-attacks eventually linked to the Scattered Spider hacker community.

The luxury department store restricted internet access to its sites following an attempt to gain access to its systems.

Who nominated it, and why?

Jonathan Lassman, NGS
Jonathan Lassman, NGS

Harrods was picked out as one of the most significant cyber-attacks of 2025 so far by two of our 12-strong panel in the shape of NGS Director Jonathan Lassman and Cyberfort CEO Glen Williams.

When asked to justify his choice, Williams said “chain-reaction breaches” like it “underscore shared vendor vulnerabilities and heavy reliance on third-party contractors”.

Retailers like Harrods have been the main target of the notorious Scattered Spider hacker group because the sector “has lower levels of regulation when it comes to cyber defences, the complexity of their supply chain and the high turnover in the workforce”, Sapphire CEO Ian Thomas said.

Channel takeaway:

The Scattered Spider attacks have stark knock-on implications for channel partners, Sapphire’s Thomas claimed.

“Elevated risk of insider threat means there is a need for a multi-disciplinary cross-functional defence effort not always just limited to SOC and supply chain risk, often involves strengthening HR/recruitment processes,” he said.

“Additionally DLP solutions such as Microsoft Purview can assist with creating detections for this type of insider risk management and investments in UEBA (user entity behaviour analytics).”

Making a more general point, Lassman said large firms are making themselves vulnerable by not focusing enough on phishing and misconfigurations.

“The world currently seems fixated on EDR, XDR, MDR etc, but the attacks are still happening because the real attack vectors are not being tackled,” he said.

“I think we have proven that while phishing simulation training is a great idea for awareness, it is definitely not enough because phishing is the number-one attack cause.”

Six cyber-attacks were considered more significant by our leadership panel. See next page for more…

Page 9 of 15
Prev1...8910...15Next
Tags: BridewellChorus ITComputacenterCybaVerseCyberfortCyXcelfeaturedmemberNGSPerformantaQuorum CyberRed HelixSapphireSeconTrending
Previous Post

A new ‘global standard’ for ISVs seeking Microsoft Marketplace success?

Next Post

‘A whirlwind’ – Wiz ‘well on way’ to 100% channel

Related Posts

Melissa Mulholland, Crayon
Sustainability

Crayon’s carbon-cutting coup copied by its new companion

5 September 2025
Windows 11 PC Devices
Market data

Windows 10 custom support bill could hit $7.3bn, research claims

5 September 2025
6 vendor giants laying off staff, and blaming it on AI
Careers & Skills

6 vendor giants laying off staff, and blaming it on AI

3 September 2025
Qodea CEO Alan Paton with TIQQE CEO Joakim Restadh
M&A

Qodea acquires Nordic AWS partner known for ‘unreasonable hospitality’

3 September 2025
CDW flags ‘growing customer caution’ in UK
Business

Ebuyer’s £2m sale saved 48 jobs, administrator’s report reveals

1 September 2025
Phoenix Software new employees
Careers & Skills

Phoenix Software ‘hiring across all roles’ as headcount tops 500

1 September 2025
5 key takeaways from Adarma administrator’s report
Cybersecurity

5 key takeaways from Adarma administrator’s report

28 August 2025
SoftwareOne and Crayon confirm talks – but there’s a crazy quirk
Business

Microsoft changes blow hole in SoftwareOne’s Q2 billings

28 August 2025
Next Post
Nick Ross, Wiz

‘A whirlwind’ – Wiz ‘well on way’ to 100% channel

Follow Us

IT Channel Oxygen keeps you informed on the UK IT channel and its sustainable transformation. Learn more

  • About
  • Our Team
  • Partner with us
  • Privacy Policy
  • Terms & Conditions
  • News
  • Cookie Policy (UK)

© 2025 IT Channel Oxygen

Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behaviour or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}
No Result
View All Result
  • Oxygen 250
  • Must-Know Distributors
  • Member area
  • KOcycle Zone
  • Big Interview
  • News
  • Indepth
  • About
  • Partner with us

© 2025 IT Channel Oxygen