Skip to content
UK food supply chain at risk from hostile attacks

UK food supply chain at risk from hostile attacks

Theregister • September 7, 2026

Defending against cyber foes is among factors hitting food price inflation, report finds

Peers ask why UK cyber bill leaves execs off the personal liability hook 2 hours ago

Peers ask why UK cyber bill leaves execs off the personal liability hook

OpenAI commits $1B in AI credits to frontline cyber defenders 3 days ago

OpenAI commits $1B in AI credits to frontline cyber defenders

Attacker stole a METR API key, used $600K worth of credits, and no one noticed for weeks 5 days ago

Attacker stole a METR API key, used $600K worth of credits, and no one noticed for weeks

Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows 25 days ago

Microsoft-vendetta hacker has a new zero day that gives system privileges on fully patched Windows

DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi 26 days ago

DEF CON dingus suspected of trying to take over Delta in-flight Wi-Fi

A UK watchdog is warning that cyber criminals making moves against online systems in the food supply chain could cause serious upset, following damaging attacks on the Co-op and Marks & Spencer last year.

The National Audit Office (NAO) named cyber-attacks as one of the major threats to the food supply chain and said the Department for Environment, Food & Rural Affairs (Defra) should work closely with industry to help prevent severe shocks.

“Recent disruptions have shown the resilience of the UK’s food supply chain, but risks are increasing in likelihood and severity. Defra should learn from approaches taken in other countries, and strengthen preparedness for emergencies by testing plans with local government and industry,” said Gareth Davies, head of the NAO.

In its report published late last week, the NAO said the sector had shown some resilience to cyber-attacks, but the government needed to work with the sector to help mitigate their impact.

The report found businesses in the food supply chain have faced increased costs and, in some cases, disruptions to day-to-day operations, for example following 2025 cyber-attacks on retailers such as Marks & Spencer and the Co-op.

Leading UK retailer Marks & Spencer estimated the cyberattack that took place in April last year will cost it around £136 million ($177.2 million) in total. The retailer said one of the earliest actions it took in its incident response was to disconnect its warehouse management systems, which in turn meant online and in-store orders were adversely impacted.

Food retailer the Co-op confirmed that thieves stole data from 6.5 million of the organization's members during a cyberattack last year.

In its report, the NAO said: “The way the food supply chain has developed over time has prioritized efficiency, which reduces costs for businesses, and therefore for consumers. However, it leaves the supply chain more vulnerable to disruptions. Defra and food supply chain stakeholders see risks increasing, and businesses are investing to address growing risks such as increased threats of cyber-attacks. Defra is less confident the ability of businesses to withstand shocks without government intervention in the five to 10 years because of increasing risks and the potential for more severe disruptions.”

The NAO found cyber-attacks were among the disruptions that had increased operating costs for businesses and disrupted day-to-day operations, affecting their core digital systems.

Several food supply chain organizations cited the substantial investments businesses are making to manage the threat and incidence of cyber-attacks. However, some said overall economic pressure on businesses is making this and other resilience investments more difficult, the NAO added.

Defra said it undertook specific food-related exercises which, since 2023, have focused on testing responses to a cyber incident affecting the food sector.

However, the government department may not be best placed to offer tech advice. In 2023, it admitted two-thirds of its interactions with its 21 million customers still require paper-based forms, after decades of digital government initiatives. Meanwhile, 30 percent of its applications were out of support. ®

US watchdog opens probe into Tesla's Cybercab self-certification

Wheels turning on the road and in government

DRAM contract prices forecast to grow only 13-18% in Q3

PC buyers already had enough of helping to fund the AI revolution, only essential refreshes happening now

Best eSIM for travel 2026: which one offers the best value for money?

PARTNER CONTENT: Price isn't everything

Nightwing CEO has a Labor Day message for staff – and apparently The Register

Nothing says ‘For internal use only’ quite like emailing it to the press

OpenAI's rebel agent swarm died young, but its chilling logs live on

'The Collective' learned to communicate, organize, cheat, and apparently sacrifice its own

Oracle may be in EU software licensing hot seat following SAP deal

Commission reportedly seeks third-party views, although no formal investigation is underway

virtualization Broadcom pledges to lock down open source Python, Java libraries

Broadcom pledges to lock down open source Python, Java libraries

SECURITY Terminated employee cost company hundreds of thousands of dollars because nobody revoked access

Terminated employee cost company hundreds of thousands of dollars because nobody revoked access

virtualization VMware swings its focus back to low-end server virt, promises vSphere Standard upgrade

VMware swings its focus back to low-end server virt, promises vSphere Standard upgrade

OFF-PREM Google engineer unplugged every fiber they could see and – surprise! – took down a chunk of the G-Cloud

Google engineer unplugged every fiber they could see and – surprise! – took down a chunk of the G-Cloud

OS PLATFORM Windows 11 update sends some desktops into an unwanted goth phase

Windows 11 update sends some desktops into an unwanted goth phase

virtualization A cloud engineer walked into a bar and – no joke – ended up having to migrate a datacenter

A cloud engineer walked into a bar and – no joke – ended up having to migrate a datacenter

On-PREM AMD's Threadripper Halo is a local-AI workstation for researchers with deep pockets AI workstation promises to put up to 576 GB of HBM3e and 16 TB/s of memory bandwidth on your desk

AMD's Threadripper Halo is a local-AI workstation for researchers with deep pockets

AI workstation promises to put up to 576 GB of HBM3e and 16 TB/s of memory bandwidth on your desk

ai and ml Hugging Face is too important to fall into Nvidia's hands $12.9 billion deal will inevitably cement Nvidia's market dominance and harm competition in the process. Regulators should take note

Hugging Face is too important to fall into Nvidia's hands

$12.9 billion deal will inevitably cement Nvidia's market dominance and harm competition in the process. Regulators should take note

ai and ml Zuck's Muse to Spark joy with open weights release 'soon' While you wait, Meta says it’s taught the model to stop wasting tokens and ask for help a bit more often

Zuck's Muse to Spark joy with open weights release 'soon'

While you wait, Meta says it’s taught the model to stop wasting tokens and ask for help a bit more often

ai and ml With Gemini 3.8 Flash, Google reminds everyone it's still in the race AI model scores well, runs fast, and doesn't cost too much (yet)

With Gemini 3.8 Flash, Google reminds everyone it's still in the race

AI model scores well, runs fast, and doesn't cost too much (yet)

security AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit Adding insult to injury

AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit

Adding insult to injury

Security Russians are posing as Signal support to launch phishing attacks PLUS: US takes down Iranian propaganda sites; Marketing company asks 'Why Do We Have Your Information?' And more!

Russians are posing as Signal support to launch phishing attacks

PLUS: US takes down Iranian propaganda sites; Marketing company asks 'Why Do We Have Your Information?' And more!

Security Microsoft patches failed to fix on-prem SharePoint, which is now under zero-day attack PLUS: China upgrades smartphone surveillance tools; Ring eases anti-snooping stance; and more

Microsoft patches failed to fix on-prem SharePoint, which is now under zero-day attack

PLUS: China upgrades smartphone surveillance tools; Ring eases anti-snooping stance; and more

Black Hat and DEF CON DEF CON Franklin project enlists hackers to harden critical infrastructure Voting village reports have been so successful, says Jeff Moss, that the whole of DEF CON will now be included

Black Hat and DEF CON

DEF CON Franklin project enlists hackers to harden critical infrastructure

Voting village reports have been so successful, says Jeff Moss, that the whole of DEF CON will now be included

Security EQT buys majority in Swiss cybersecurity biz Acronis Went at equivalent of $3.5B+ valuation for entire firm, though portion sold not specified

EQT buys majority in Swiss cybersecurity biz Acronis

Went at equivalent of $3.5B+ valuation for entire firm, though portion sold not specified

Malware Month Ten years since the first corp ransomware, Mikko Hyppönen sees no end in sight On the plus side, infosec's a good bet for a long, stable career

Ten years since the first corp ransomware, Mikko Hyppönen sees no end in sight

On the plus side, infosec's a good bet for a long, stable career

Feel peak Windows was 7? You might like Kumander Linux Debian and Xfce – solid, sensible choices – with a pretty skin

Feel peak Windows was 7? You might like Kumander Linux

Debian and Xfce – solid, sensible choices – with a pretty skin

Canonical shuttering some of its legacy chat channels The Ubuntu Pastebin went in June, IRC gets demoted

Canonical shuttering some of its legacy chat channels

The Ubuntu Pastebin went in June, IRC gets demoted

Audacity audio-editing app no longer looks like it's from the early 2000s The FOSS tool for audio editing has a fresh coat of paint, and new features to boot

Audacity audio-editing app no longer looks like it's from the early 2000s

The FOSS tool for audio editing has a fresh coat of paint, and new features to boot

Haiku OS rises / Beta 6 sails open web / Virtual winds fly fast A real alternative to running some kind of FOSS Unix clone

Haiku OS rises / Beta 6 sails open web / Virtual winds fly fast

A real alternative to running some kind of FOSS Unix clone

Offshoots of cancelled TrueNAS Core upgrade to FreeBSD 15 Exeunt zVault stage right; enter FreeCORE and BSDnas

Offshoots of cancelled TrueNAS Core upgrade to FreeBSD 15

Exeunt zVault stage right; enter FreeCORE and BSDnas

Debian votes to let contributors code with AI Disclosure optional, quality mandatory

Debian votes to let contributors code with AI

Disclosure optional, quality mandatory

Extracted Entities

Companies (2)

MITRE ATT&CK (1)

Platforms (1)