Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      Sunshine And March Vibes (2025 Wallpapers Edition)

      June 3, 2025

      The Case For Minimal WordPress Setups: A Contrarian View On Theme Frameworks

      June 3, 2025

      How To Fix Largest Contentful Paint Issues With Subpart Analysis

      June 3, 2025

      How To Prevent WordPress SQL Injection Attacks

      June 3, 2025

      SteelSeries reveals new Arctis Nova 3 Wireless headset series for Xbox, PlayStation, Nintendo Switch, and PC

      June 3, 2025

      The Witcher 4 looks absolutely amazing in UE5 technical presentation at State of Unreal 2025

      June 3, 2025

      Razer’s having another go at making it so you never have to charge your wireless gaming mouse, and this time it might have nailed it

      June 3, 2025

      Alienware’s rumored laptop could be the first to feature NVIDIA’s revolutionary Arm-based APU

      June 3, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      easy-live2d – About Make your Live2D as easy to control as a pixi sprite! Live2D Web SDK based on Pixi.js.

      June 3, 2025
      Recent

      easy-live2d – About Make your Live2D as easy to control as a pixi sprite! Live2D Web SDK based on Pixi.js.

      June 3, 2025

      From Kitchen To Conversion

      June 3, 2025

      Perficient Included in Forrester’s AI Technical Services Landscape, Q2 2025

      June 3, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      SteelSeries reveals new Arctis Nova 3 Wireless headset series for Xbox, PlayStation, Nintendo Switch, and PC

      June 3, 2025
      Recent

      SteelSeries reveals new Arctis Nova 3 Wireless headset series for Xbox, PlayStation, Nintendo Switch, and PC

      June 3, 2025

      The Witcher 4 looks absolutely amazing in UE5 technical presentation at State of Unreal 2025

      June 3, 2025

      Razer’s having another go at making it so you never have to charge your wireless gaming mouse, and this time it might have nailed it

      June 3, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Development»Victoria’s Secret Website Down After Security Incident

    Victoria’s Secret Website Down After Security Incident

    May 29, 2025

    Victoria's Secret website down

    The U.S. website of Victoria’s Secret is down after an unspecified security incident, the latest in a series of cyber incidents hitting retailers.

    A status message on the Victoria’s Secret website says the company “identified and are taking steps to address a security incident. We have taken down our website and some in store services as a precaution. Our team is working around the clock to fully restore operations.”

    Victoria’s Secret and PINK stores remain open, the status message reads.

    It is not clear what type of security incident was involved or whether customer data was affected. In a statement to The Cyber Express, a Victoria’s Secret spokesperson said the company “immediately enacted our response protocols” and engaged “third-party experts” for assistance.

    “We are working to quickly and securely restore operations,” the spokesperson added.

    Victoria’s Secret Latest Retail Cyber Incident

    The Victoria’s Secret website incident is the latest in a string of cyber incidents hitting retailers in recent weeks.

    Hostinger

    The cyber spree targeting retailers began in late April, when three UK retailers were hit in a matter of days. Those attacks have been attributed to the Scattered Spider threat group and reportedly involved the deployment of DragonForce ransomware.

    Other recent cybersecurity incidents have affected Dior and Adidas, and Google warned in mid-May that Scattered Spider was apparently targeting U.S. retailers.

    Victoria’s Secret, which has generated more than $6 billion in sales in the last year, saw its shares (NYSE:VSCO) fall more than 10% since news of the security incident broke on Wednesday. Bloomberg reported that an internal company communication said recovery from the security incident could take “awhile.”

    Defending Against Scattered Spider

    After the UK retail incidents, the UK’s National Cyber Security Centre issued guidance for retailers to protect their operations from cyberattacks. Those steps include:

    • Using multi-factor authentication
    • Monitoring for signs of account misuse, such as “risky logins” within Microsoft Entra ID Protection
    • Monitoring Domain Admin, Enterprise Admin, and Cloud Admin accounts and making sure that any access is legitimate
    • Review helpdesk password reset processes, including procedures for authenticating staff credentials before resetting passwords
    • Making sure that security operation centers can identify suspicious logins, such as from VPN services in residential ranges
    • Following tactics, techniques, and procedures sourced from threat intelligence “whilst being able to respond accordingly.”

    Google has also issued recent guidance for defending against Scattered Spider attacks.

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleEcosystem Partnerships: Driving Mainframe Innovation and Future-Ready Solutions
    Next Article Cybercriminals Target AI Users with Malware-Loaded Installers Posing as Popular Tools

    Related Posts

    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-5542 – TOTOLINK X2000R Cross-Site Scripting Vulnerability in Virtual Server Page

    June 3, 2025
    Common Vulnerabilities and Exposures (CVEs)

    CVE-2025-24015 – Deno AES-GCM Authentication Tag Validation Bypass

    June 3, 2025
    Leave A Reply Cancel Reply

    Hostinger

    Continue Reading

    Sonatype reveals 18,000 malicious open source packages in its Q1 Open Source Malware Index

    Tech & Work

    New Atlas Administrator Learning Path and Certification

    Databases

    April 2025 Baseline monthly digest

    Development

    Patch Now! Center for Cybersecurity Belgium Warns About Critical Vulnerabilities in Telerik Report Server

    Development
    Hostinger

    Highlights

    CVE-2025-45841 – TOTOLINK NR1800X Remote Stack Overflow Vulnerability

    May 8, 2025

    CVE ID : CVE-2025-45841

    Published : May 8, 2025, 4:15 p.m. | 3 hours, 22 minutes ago

    Description : TOTOLINK NR1800X V9.1.0u.6681_B20230703 was discovered to contain an authenticated stack overflow via the text parameter in the setSmsCfg function.

    Severity: 0.0 | NA

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    Modeling Extremely Large Images with xT

    March 27, 2025

    One of the best Xbox Cloud Gaming mobile controllers with hall-effect sticks and triggers is on a limited-time sale for less than $80

    May 30, 2025

    Apple to finally pay off qualifying MacBook owners as part of its class action settlement

    July 3, 2024
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.