Your Help Desk Is a Backdoor: The Password Reset Attack That Cost M&S $5.1M Per Day
The Marks & Spencer breach in April 2025 didn't start with a zero-day exploit or a sophisticated piece of malware. It started with a phone call.
A threat actor — believed to be affiliated with Scattered Spider — called M&S's third-party helpdesk, pre...
gerus-lab.hashnode.dev5 min read