AdviceGDPRNews retailers cyber attack

Retailers: Why Are They So Often Targets Of Cyber Attacks?

Over the past few months, a wave of cyber attacks has swept through the UK retail sector, disrupting some of the country’s largest brands. Adidas, Harrods, The Co-Op and most publicized due to the impact of the attack, Marks & Spencer, have all been targeted by cyber criminals, resulting in outages, data breaches and multi-million-pound losses.
But why are these retailers so frequently targeted by attackers? This blog post will explore the unique risks that retailers face, what we can learn from recent incidents and how the sector as a whole can protect itself from future attacks.

READ MORE
AdviceNews NHS England

NHS England Puts Pause on AI Project Following Concerns Over Use of GP Data

NHS England has made the decision to put a pause on their project to use GP data to train an artificial intelligence model, known as Foresight, following concerns raised by GP leaders. Foresight, the AI model with oversight from NHS England, is trained on de-identified NHS data from roughly 57 million patients in England. The purpose of the model is to predict potential health outcomes for patient groups across England, based on knowledge about the patient’s condition. NHS England has previously described it as working “like an auto-complete function for medical timelines”.

READ MORE
AdviceNews Marks & Spencer Cyber Attack Set To Cost £300 Million

Marks & Spencer Cyber Attack Set To Cost £300 Million

Marks & Spencer are expecting a £300 million hit to their operating profits following a cyber attack that is expected to lead to disruption to online operations until July. While investigations into the incident are still ongoing, it is believed that the cyber attack, which has been blamed on ‘human error’, occurred after attackers tricked third-party IT helpdesk staff into giving them access to company systems. This is known as a ‘social engineering’ attack, where human error is relied on to gain unauthorised access to accounts and systems. In this case, it is believed that two IT logins were used as part of the attack.

READ MORE
LegislationAdviceNews The Data (Use and Access) Bill: Where do we stand right now? (May 2025)

The Data (Use and Access) Bill: Where do we stand right now? (May 2025)

The Data (Use and Access) Bill, introduced in the House of Lords in October 2024 is a new piece of legislation proposed by the Government with the aim of cutting out much of the “red tape and pointless paperwork” that they feel are stopping businesses from using data effectively under GDPR. The primary aims of the bill are to grow the economy and improve public services.

READ MORE
News Black and white image of glasses in front of a computer screen - blog post about the Legal Aid cyber attack

Legal Aid Cyber Attack: A Significant Amount Of Personal Data Stolen

In late April, it was revealed that the online digital services for Legal Aid, the Government agency responsible for providing legal funding, had been hit by a cyber attack. It was initially thought that the only systems compromised were the ones which allow Legal Aid providers to log the work that they complete and receive payments from the Government, but we now know that in addition to this, a significant amount of personal data, including contact details, addresses, dates of birth, criminal records, national ID numbers, employment status has also been compromised. It is estimated that roughly 2 million pieces of data are affected.

READ MORE
News A black and white snapshot the price of Bitcoin over time - a currency sold on Coinbase

Coinbase Cyber Attack – Personal Data Stolen In Cryptocurrency Exchange Cyber Attack

Coinbase, an American based cryptocurrency exchange has confirmed that following a cyber attack last week, customer data has been stolen. In a report to the United States Securities and Exchange Commission, Coinbase say that they received an email from an unknown actor claiming that had obtained information about certain Coinbase customer accounts and internal documentation regarding customer service and account management systems.

READ MORE
News Toyota Bank Polska Fined

Newcastle Based Sole Trader Fined £50,000 After Making Over 190,000 Unlawful Marketing Calls

The ICO have announced that they have taken enforcement action against Newcastle based sole trader Darian Bishop (trading as ECO4U) after it was found that they had made 194,110 unsolicited marketing calls to individuals who were registered with the Telephone Preference Service. This was picked up by the ICO in October 2023 after only 21 complaints to them and the TPS.

READ MORE
LegislationNews

The Data (Use and Access) Bill: What is the impact on charities?

The UK Government has introduced an amendment to the Data (Use and Access) Bill, which will have a significant impact on the way that charities advertise fundraisers and activities. The amendment proposes that charities will be allowed to take advantage of the soft opt-in exemption for email and SMS marketing. Soft opt-in is the idea that if an individual has used one of your services recently and has given you their contact information, they are probably happy to receive marketing from you about services that haven’t specifically consented to. This is something that was previously reserved for profit-making organisations.

READ MORE
News Toyota Bank Polska Fined

Apple and Meta fined combined total of €700 million for breach of the Digital Markets Act

The European Commission, the body responsible for drafting proposals for new European legislation, has fined Apple €500 million and Meta €200 million for breaches of the Digital Markets Act. They found that Apple had breached its anti-steering obligations, and that Meta had breached its obligation to offer consumers the choice of a service which uses less of their personal data.

READ MORE
News

Co-op forced to shut down part of IT system following hack attempt

Following the discovery of an attempted hack, The Co-op have been forced to shut down parts of their IT system. On the 29th of April, a letter was sent out to members of staff that as part of measures taken to “keep systems safe”, access to some systems had been “pre-emptively withdrawn”. It is not expected that this’ll impact customers directly, with only back office and call centre services being slightly impacted.

READ MORE