{"id":122545,"title":"M&S Warns Customers of Scam Risk After Cyber Attack Exposes Personal Data","publisher":"Share Talk","author":"sharetalk","published":"2025-05-14T13:54:58+00:00","modified":"2026-06-22T09:40:11+00:00","canonical_url":"https://www.share-talk.com/ms-warns-customers-of-scam-risk-after-cyber-attack-exposes-personal-data/","markdown_url":"https://www.share-talk.com/ms-warns-customers-of-scam-risk-after-cyber-attack-exposes-personal-data.md","json_url":"https://www.share-talk.com/ms-warns-customers-of-scam-risk-after-cyber-attack-exposes-personal-data.json","category":"B2B","categories":["B2B","Business & Support Services","Food & Beverages","Food Industry","Technology","Technology, Media & Telecoms"],"tags":["B&M","Central Europe","christmas","cyber attack","Ireland","Ken Murphy","M&S","Marks & Spencer","Online Orders","sales","Tesco","UK","UK retailers"],"featured_image":"https://i0.wp.com/www.share-talk.com/wp-content/uploads/2025/05/Marks-Spencer-14-may.webp?fit=1200%2C800&quality=80&ssl=1","format":"news","language":"en-GB","content":"Marks & Spencer has [issued a warning to customers](https://www.linkedin.com/company/marks-and-spencer/posts/?feedView=all) to remain vigilant against scam emails and phone calls following a cyber attack that stole personal data.\n\nThe retailer is contacting affected customers this week to confirm that hackers accessed sensitive information, including contact details, dates of birth, order histories, and partially masked credit card numbers—typically the last four digits.\n\nWhile these masked details can’t be used to make payments directly, M&S cautioned that scammers could exploit them to deceive individuals into revealing their full card information.\n\nThe company urges customers to be cautious of unsolicited messages and report any suspicious activity immediately.\n\n[!\\[\\](https://www.share-talk.com/wp-content/uploads/2025/05/25-Marks-and-Spencer_-Posts-_-LinkedIn-Google-Chrome-2025-05-14-at-2.48.13-PM-259x300.webp)](https://www.linkedin.com/company/marks-and-spencer/posts/?feedView=all)\n\nMarks & Spencer has warned customers to be on alert for scam messages following a cyber attack that resulted in the theft of personal information, including contact details and partial payment data.\n\nJayne Wall, M&S’s operations director, advised customers not to share personal details with unknown callers. “You do not need to take any action, but you might receive emails, calls or texts claiming to be from M&S when they are not, so do be cautious,” she said.\n\nWall stressed that M&S would never ask for sensitive information such as usernames or passwords. “Importantly, the data does not include useable card or payment details, and it also does not include any account passwords,” she added.\n\nThe retailer clarified that it does not store full card numbers on its systems—only “masked” data, such as the last four digits.\n\nStolen information is believed to include names, phone numbers, addresses, dates of birth, and customer reference numbers.\n\nM&S has contacted millions of customers—particularly those in its Sparks loyalty programme and anyone who has shopped online—urging them to be vigilant and consider resetting their passwords. The company has not disclosed the total number of customers affected."}