Bonum Certa Men Certa

Sainsbury's to Techrights: Yes, Our Web Site Broke Down, But We Cannot Say Which Part or Why

posted by Roy Schestowitz on Mar 18, 2024

Windows TCO??? NDA to cover that up???

Photo of shopping carts

THIS morning, shortly after this 7AM article, I contacted Sainsbury's, including by telephone (as anticipated), and I've just listened again to the conversation I had. At 8:15AM they said someone higher up would phone me back, but it's past 2PM and I'm still waiting. Fair enough, I can wait, as I can imagine they're overwhelmed by media queries following the past weekend's incident.

Shall there be a useful and fruitful follow-up (rather than non-denying fluff), I will either update this post or add a new one. Someone has told me that maybe Sainsbury's etc. are having yet another AD or Sharepoint failure. They claim there was a failed software update, which they aren't specific about. They refuse to say what the actual culprit was.

In the call I presented myself not as a blogger or journalist but as a customer with technical background, who has just published a long article and expressed privacy concerns in case of a breach; I said that I continue to investigate it, as a technical person and as their client/customer, having received an E-mail from their CEO that didn't say much and didn't explain if there was or was no data breach, no ransomware etc. I explained that it's on the public record they suffered security breaches in recent years and, without saying it out loud, it was Windows (I tried not to give too much information but to pull new information).

Man Shopping

It has now been about 5 hours and I'm still waiting for the callback. My guess is, someone higher up will listen to the recording and write down talking points before he or she phones me. That's how the managers typically do this, in my experience. So maybe they're still trying to figure out what exactly to tell me. I'm still waiting.

It's rather tempting to deduce that someone from Microsoft (or "partner") or something like Windows Update broke their system and they had no immediate safety net, but evidence will be needed, even if only verbal. They want to keep quiet and they won't just give that away, the right questions need to be asked. So my strategy has been to ask which component was updated (i.e. got broken), as I need to know as a 1) customer 2) hobbyist reporter with a personal stake in the outcome (as per (1)). All customers need to know if not to deduce whether no data breach/es happened. They have a stake in this. If the issue was Windows (e.g. Patch Tuesday and updates applied over the weekend when it's quieter), then it is Microsoft TCO.

I am one of their very first customers (the online delivery system; I was an early adopter). They're aware of this now. My wife too has an account there, but they didn't send her an E-mail to notify her of anything. Weird. How selective are they?

For the time being, based on what I was told over the telephone (long call), it's clear something went wrong and they don't want to talk about it. They just repeat the same lines and don't want to talk about the details; there is even an automated message repeating the face-saving PR before being redirected to an actual human, probably in some remote call centre in Asia based on my experience. They insist there was no data breach, but they seem to have technical deficit, so in the future they will probably lose control of their data. The very choice of Microsoft for all their stacks suggests a lack of in-house computer skills.

I wish I could say more at this point, but it'll be better to wait until a manager phones to elucidate further, or to explain matters in clear words rather than a 'script'. After that I want to explore the complexity of the process wherein a customer makes a demand that they delete all personal (past) data, such as purchasing history, citing the relevant privacy laws in the UK. For sure they'll make this very hard if not nearly impossible.

Supermarket Shopping Carts

Other Recent Techrights' Posts

Over at Tux Machines...
GNU/Linux news for the past day
Microsoft Layoffs and Closures Now Reported in Africa
Microsoft Uninstalls Nigeria as it closes African Development Centre (ADC) in Lagos
 
Software Enshittification or Freedom? It's not a hard choice!
Reprinted from Alexandre Oliva
Links 09/05/2024: More Microsoft Layoffs on the Way
Links for the day
Amid Microsoft Layoffs in Nigeria GNU/Linux Climbs Above 6% Market Share (Not Including ChromeOS)
Hundreds are being laid off by Microsoft in Nigeria, based on yesterday's reports
[Meme] Blame the Robots or the 'Hey Hi' (AI), It Always Works in Today's Media
Companies do not have financial troubles! They have "efficiencies"...
News Reports Say Many More Microsoft Layoffs on the Way, Rumours Say Red Hat Also Imminently a Target
Microsoft is slipping out of control
Links 09/05/2024: Diplomacy Efforts With China, AstraZeneca Stops Experimenting With COVID-19 Vaccines
Links for the day
IRC Proceedings: Wednesday, May 08, 2024
IRC logs for Wednesday, May 08, 2024
Gemini Links 09/05/2024: Registered Computer Professionals and TLS (The Long Slog)
Links for the day
Links 08/05/2024: Android Malware and "AI" Hype
Links for the day
[Meme] Technical Committee With People Who Are Not Technical
the computing/computer industry being occupied by people who lack suitable background
The Demise of Computer Science Education
Education is essential for the future; without it, whole nations will perish
[Video] Prisons for the Minds and for Tech Workers
Today's video talks about what happens to workforces (across disciplines) in recent years
[Meme] Struggling to Leave Its Nazi Past Behind
digital arson
Microsoft Declines to Talk About How Many People It Has Just Laid Off
Hours ago in IGN: "Microsoft did not say how many staff will lose their jobs, but significant layoffs are inevitable. IGN has asked Bethesda for comment. Microsoft declined to expand further when contacted by IGN."
Microsoft Windows in South America: From 99% to 87%
the latest from statCounter
It's Rather Obvious Why They Try to Silence Richard Stallman, Eben Moglen, and Daniel Pocock
Some of them already sent physically menacing messages to Daniel Pocock
IRC Network of Techrights Turns 3 (or 16 if We Count the Freenode Days)
In a few months IRC turns 36
Sedating Oneself (and Shareholders) With Fuzzy Buzzwords and Pointless Acquisitions
IBM trying to buy time
Clickfraud Spamnil Ran Out of Clickfraud Budget, Apparently
sooner or later charlatans and frauds run out of steam
Techrights Gets Under the Skin of Bad, Corrupt, Immoral People (That's a Good Thing)
Journalism is the lifeblood of democracy and free societies
Companies Do Not Shut Down Offices and Lay Off Staff en Masse (Morale and Reputation Issue) Unless They're in Deep Financial Trouble
Microsoft has been faking its financial performance for years
IRC Proceedings: Tuesday, May 07, 2024
IRC logs for Tuesday, May 07, 2024
Over at Tux Machines...
GNU/Linux news for the past day
[Video] Leaving Microsoft Behind for the Sake of National Security
Threats to "National Security" aren't some users with an Android phone but Microsoft at the root of things
GNU/Linux and ChromeOS Now at 6% in France, According to statCounter
numbers from statCounter
Gemini Links 07/05/2024: Music Spotlight and Network Knobs
Links for the day
Only Weeks After Microsoft Closed Offices and Studios It is Closing Several More (Many Layoffs, Still Deeply Debt-Saddled)
When the sad news writes itself
Bolivarian Republic Of Venezuela: GNU/Linux Reaches 9% (ChromeOS Included)
Venezuela must have lost interest in some American proprietary software when users were locked out of their own data (Adobe) and the costs could no longer be justified
[Video] Microsoft is Like Big Oil, Big Tobacco, and Other Perpetrators of Fear, Uncertainty, Doubt/Fear-mongering
openwashing, Microsoft lobbying, and Microsoft subsidies (e.g. bailouts in the form of 'defence' contracts)
Security & Debian: Urgent: New Feed URLs after another WIPO censorship
Reprinted with permission from Daniel Pocock
World Press Freedom Day: WIPO censors Debian suicide cluster
Reprinted with permission from Daniel Pocock
Gemini Links 07/05/2024: Smashing Windows (Moving to GNU/Linux) and Mastodon Time-wasting
Links for the day
Links 07/05/2024: Pulitzer for Supreme Court Expose, New Threats to Media Reported
Links for the day
Links 07/05/2024: Cheap EVs and Cloudflare Layoffs
Links for the day
Berlin police declined to investigate FSFE Nazi comparisons
Reprinted with permission from Daniel Pocock
[Meme] Communities Governed by Parasitic Elements and Girlfriends (Who Can't Understand Those Communities)
Karen Sandler and Molly de Blanc present at DebConf18
[Meme] You Can't Kill an Idea (or Facts)
Thankfully, in Western societies, there's still due process, rule of law etc. You don't just hire assassins or imprison critics
[Meme] Software in the Public Interest (SPI), Inc, Values Articles of Daniel Pocock at ~$5,000 Each (and Fails to Hide the Facts)
we are laughing, not grieving
IRC Proceedings: Monday, May 06, 2024
IRC logs for Monday, May 06, 2024
Over at Tux Machines...
GNU/Linux news for the past day
[Meme] About 2,564 Internet Sites Now at Risk of Hostile Takeover by Microsoft-Sponsored Software in the Public Interest (SPI)
WIPO censors Debian suicide cluster
Links 07/05/2024: Burning Plastic Waste, Facebook Censoring Politicians
Links for the day
Gemini Links 07/05/2024: Smashing Windows (Microsoft Losing Users to GNU/Linux), Sixty Years of BASIC
Links for the day