Bonum Certa Men Certa

Sainsbury’s Epic Downtime Seems to be Microsoft's Fault and Might Even Constitute a Data Breach (Legal Liability)

posted by Roy Schestowitz on Mar 18, 2024,
updated Mar 18, 2024

Sainsburys logo

NEED we explore Windows Total Cost of Ownership (TCO) stories for Sainsbury’s, one of Britain's largest groceries (and far beyond) chains? Yes. Because it keeps happening and Sainsbury’s isn't learning a much-needed lesson. Sainsbury’s must dump Microsoft or risk reputation issues, if not legal issues too. Sainsbury’s has a lot of data about things that I bought almost as far back as the 1990s. It has similar data about millions of Brits. They have a considerable stake in what's happening.

Today we deal with this latest incident which shut down the online store of Sainsbury’s over the weekend. What exactly happened? It's not clear, but later I'll show the face-saving nonsense that the CEO sent everybody in their database, myself included..

A friend told me there will probably more information later, but I doubt it. They want people to forget and "move on" as soon as possible.

Looking at Sainsbury’s addresses like these, we find: "To access the site, please log in using your Sainsbury's or Sainsbury's Bank email address. Unable to access your account? Please click here. 2013 Microsoft."

Yes, notice Microsoft at bottom:

To access the site, please log in using your Sainsbury's or Sainsbury's Bank email address. Unable to access your account? Please click here. 2013 Microsoft.

Yes, in 2024 it says "2013 Microsoft." Sounds reassuring, right.

Digging a little deeper, we find pages like these about the love-fest of Microsoft and Sainsbury's. "No info about what is hosting their web app," an associate said, but it's revealing that they're deeply connected to Microsoft and maybe outsource a lot of their operations as well. They use Microsoft Teams and have in essence outsourced their communications to Microsoft/NSA/USA. Stay classy. They clearly don't grasp security and sovereignty. Look who's running the company.

However, in relation to the above (latest) incident, it should be noted that sainsburystoyou is another site and I used to use that ages ago, as far back as 20+ years ago (first time was around 2003 because they had sent out vouchers for early adoption). It was always very Microsoft-centric, but Microsoft is hiding behind proxies (Tata is Microsoft) and buzzwords like "modernization" (that's how they frame outsourcing to another country). In the "partnerplatform" subsite, the ai_session is rather telling. "This cookie name is associated with the Microsoft Application Insights software, which c ollects statistical usage and telemetry information for apps built on the Azure cloud platform. This is a unique anonymous session identifier cookie."

Conclusion: almost certainly Windows all over the place, hence Microsoft TCO. Other large chains such as Asda and Tesco are the same, but that is perhaps a subject for another day. The UK has a Microsoft infestation crisis. It weakens us as a nation and it impedes technical literacy.

So no, it is now Russia's fault, it's not some networking issues, it seems to be Microsoft slopware breaking down yet again. Yet again.

Wait, again?

Yes, because it happened before and it was reported as a Windows data breach. As associate says that Sainsbury's is at fault here because it chose Microsoft. Being cynical, the associate said it obviously can't be the fault of Microsoft for decades of shoddy design and workmanship, nor the fault of the Microsofters shoehorning Microsoft products into production environments.

Let's just always blame "Russia" and "Putin". Just before a long weekend, preferably. So that journalists will not be around, hence nobody will fact-check the claims from Microsoft.

So has Sainsbury's blamed "Russia" yet? Has Microsoft? "They can't find any other topics to criticise Russia over," the associate joked, in reference to all sorts of things which distract from war crimes...

The downtime wasn't ignored or overlooked; it's in the media right now and it was in the media over the weekend, as early as Saturday (my wife had seen reports about this in BBC; of course they didn't investigate the actual cause and just relayed corporate statements instead; they simply believe whatever the nontechnical 'suits' at Sainsbury's tell them).

Yesterday (Sunday) Simon Roberts (CEO, Sainsbury's) mass-mailed everybody, including me:

Dear Roy,

I’m writing to update you on the technical issue that has affected our Groceries Online deliveries and some services in our stores this weekend.

Firstly, I want to apologise to you and every customer that has been affected by the issue and to thank you for your patience and for bearing with us. I really understand how important it is for everyone to be able to shop with us conveniently and easily, whenever and however you want to, and I am sorry if you have not received your usual service from Sainsbury’s this weekend.

I am pleased to confirm that all the affected systems are now back online. Our stores continue to be open as usual and in-store payment services, including contactless, are fully operational.

Our online ordering system is still working as normal and any customers whose Groceries Online order was not delivered can place a new order now for a delivery any time from tomorrow. We will automatically add a voucher to your online wallet in the next few days to apologise for the inconvenience.

Our contact centre teams are working very hard to do everything they can to help customers who have been affected by the issue and need further assistance. Thank you for bearing with us while we work to answer any specific questions you may have as soon as possible.

I would also like to thank all our colleagues who have worked so hard to resolve this issue and support our customers. I’m proud of the way all our team have stepped up to manage the unexpected challenges that we know so many of our customers have experienced this weekend.

On behalf of everyone here at Sainsbury’s, thank you for your patience and understanding and, as always, thank you for choosing to shop with us.

Notice how, in so many paragraphs, he did nothing to assure customers there was no data breach. Why not add such an important, even critical, clarification? They got cracked perhaps? Spinning this as mere "downtime"? Such a communication strategy would not be unprecedented.

Let's dive a little deeper. What are the known facts? We know Sainsbury’s got cracked in 2021; it was Kronos malware, but "notice the omission of Windows in Wikipedia," an associate said, "though it is Windows malware."

This new report suggests Windows was involved, but it is still rather vague: "due to an error with an overnight software update." That was days after Patch Tuesday. This one calls it "major tech failure".

Not a Microsoft failure? Did you check? Or did you issue a generic statement, parroting Sainsbury’s/Microsoft? Well, "tech" does not just fail. There are causes and there are brands behind different "tech".

This year there is "no technical information to speak of," quoting the associate, "but, again, Windows malware is not unprecedented" a rival (Tesco) "was also hit."

So, to paraphrase, what legal obligations are on companies to notify of breaches and ransomware? I've sent Sainsbury’s an E-mail to ask if there was a data breach.

"They moved to Akamai the other day," our associate notes, "probably as the result of the trouble, but are under the commercial load balancers, hiding the real service."

Do note that Microsoft uses Sainsbury's as a case study without outright saying that it is afflicted with Windows and it is clear that they run 'Netskop' too [1, 2, 3].

Albeit only circumstantial, something used to be here and the smoking gun is here. "I did not keep the reference," the associate noted, "but one of Microsoft "STEM advocates" has two degrees, neither of which are STEM."

If there was a data breach at Sainsbury’s, then customers must know. Was there ransomware too? That would make things even worse. Customers can be blackmailed next, without even knowing who's to blame.

I am going to phone them to ask about my account when they open the lines in a few minutes and I suggest others who are Sainsbury’s customers do the same. Here is the number (below); they really go out of their way to make it hard to find routes to an actual person. I had to click about 10 times and move between several pages. It's like "dark patterns" to discourage any real help, leaving customers struggling to help themselves.

Sainsbury’s phone line

Other Recent Techrights' Posts

EPO People Power - Part VI - Criticism Not Permitted, Media Subjected to Contempt by Cocaine Addicts Who Manage the Press for the EPO
Why won't any large publisher in Europe cover this? What does that say about the state of journalism in Europe?
"Smart" or "Intelligent" Agents and "Vibe Coding" Deletes Everything You Have
A high price to pay, no?
 
Julian Assange on Fake Activists in Silicon Valley
Julian Assange on Fake Activists in Silicon Valley
"In a modern economy it is impossible to seal oneself off from injustice."
― Julian Assange
EPO People Power - Part VIII - The Chipmunk on Cocaine, Now Deleting Videos
video has been removed
What If the Economy Isn't "Down" But Mostly Diverted? (While "AI" Fills a Gap for Capital That No Longer Exists in Tech)
"AI" is an "Arms Race", because they need to be bailed out by taxpayers' money
Techrights Site Search Was a Success After All
A few hiccups dealt with, ironed out
Valve's SteamOS, Microsoft Canonical's Ubuntu, and Other Platforms That Only Leverage Free Software (But Won't Protect It)
Ubuntu "took off" not because it was very good or very easy. Ubuntu "took off" because of ShipIt, i.e. because of a multi-millionaire subsidising its mass distribution (at a personal cost).
The Free Software Foundation (FSF) Paid Respect to Its Founder This Year, Now It Wants You to Join
We're glad to see the FSF paying respect to its founder in its Web site
2026 Guaranteed to Give Us Compromised Media Funded by "AI" Boosters to Promote "AI" and Sometimes be Composed by "AI" (Chatbots)
follow the money of the Ponzi scheme
Under IBM, Things Culminate at "AI-Equipped Customer Experience Transformation" at Red Hat
Whatever that even means
Andy Farnell and Helen Plews Now at the Wheel in Cybershow
Cybershow (Cyber|Show) has very good blog posts and episodes
Microsoft Trims More Jobs
The worst layoff year in 20 years, by the numbers
EPO People Power - Part VII - The Corporate Media and the Reference Sites (e.g. Wikipedia) Are Already Compromised and Complicit
Looking back at the whole thing, it's clear to me that Europe does not really have free press
New Paper Shows That EPO "Growth" is Dictated From Above, Not Earned (More Monopolies Granted by Breaking Rules, Laws, Conventions)
"Targets for 2026 are currently being handed down to individuals."
EPO People Power - Part V - The European Media is Practically Dead When It Comes to Covering European Patent Office (EPO) Corruption
That sort of sums up where European media/press stands
Datacentre and Server Maintenance Next Week
The last time we rebooted into the latest stable kernel was 96 days ago
Afraid of Words, Not Afraid of Actions
Those corporations want us to bicker over words, not their actions
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, December 11, 2025
IRC logs for Thursday, December 11, 2025
IBM Workers Still Blast IBM Management for Firing Loads of Workers While Overpaying to Buy Useless Companies
IBM's CEO is killing the cow
LLM Slop About Linux Still Seems Scarce
LLMs aren't dead, but metrics published online say that their usage is fast declining
Links 12/12/2025: Oracle Shares Collapse After Slop Bubble Inflated (Circular Funding/Financing One's Own 'Clients'), "Trials by Jury" in UK Considered
Links for the day
Gemini Links 12/12/2025: 'Kinetic Energy' and Browsing Geminispace With a GUI, TUI, or CLI Client
Links for the day
Links 11/12/2025: Escalations Around Japan, Software Patents Found Invalid
Links for the day
Killing the IBM Cash Cow, Raising Massive Debt Instead
In a healthy company, the CEO and CFO would get sacked on the spot for doing so. But IBM is not a healthy company, it's just a sick cow being milked to death.
Links 11/12/2025: Dangerous Flukes by Slop and Bottled Water as 'Placebos'
Links for the day
Gemini Links 11/12/2025: Repairs, Wisdom of the Crowds, and AC Explorations
Links for the day
Those of Us Who Grew Up Playing Doom Must Remember What Microsoft Did to Its Creator
Doomed by Microsoft
We Need Your EPO Insider Stories
To date, the EPO and any other company/institution hasn't managed to remove even a single public page that we published
Yes, IBM is Also Laying Off Indians (Even in India)
that goes against the popular/hot narrative of "jobs moving to India"
At The Register MS, Fake 'Articles' Sponsored by WIntel (Windows+Intel)
We've meanwhile noticed that there's new sponsored spam in at The Register MS and it might be slop
Microsoft-Sponsored Wikipedia Spam About "AI", Added by Microsoft Operatives
When it comes to Wikipedia, follow the money (sponsors)
Keep on Pushing, EPO Management is in a State of Panic This Week
Contact your representatives today
In Addition to National Delegates, Contact the French or Portuguese Governments (Politicians) Regarding António Campinos
Someone needs to step into the EPO and open up all the closets
EPO People Power - Part IV - Sexism, Chauvinism, and Lines of Cocaine at Europe's Second-Largest Institution
Recently, one reader told us about Berenguer, who made the "mistake" of using cocaine in the open market
If You Want Freedom, Follow Richard M. Stallman (RMS)
To be clear, I like Linux, I like its founder
EPO People Power - Part III - Challenging Corruption
The media - as in the national press - isn't interested in writing about it
The Flawed Notion of Criticising for Criticism's Sake
People who are highly critical of things are not "toxic"
A Lot More Than Techrights
you probably also want to follow the RSS feed of the sister site
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, December 10, 2025
IRC logs for Wednesday, December 10, 2025
The Web Has Become Extremely Rude
If you cannot behave, go offline
Slopfarms Parrot Any Number That GAFAM Throws at Them, Even Totally Fictional Figures That Merit Fact-Checking
fake from Microsoft
Microsoft Lunduke Tailors His 'Content' for 4Chan
The latest from Lunduke "Journal"
Richard Stallman Was Also Right About Microsoft GitHub (It's Becoming a Botfarm)
trashing the platform
Democracy and Buzzwords
and hype
Five Years in Gemini Protocol
One might say we escaped to Geminispace 2 years before the deluge of slop on the Web
Keeping Up the Pressure on EPO Management
We want to thank our European readers who contacted their representatives
Like Clickfraud Spamnil (Swapnil Bhartiya) But for Hate Mongering: What Twitter Has Become
If you still waste time in Social Control Media, consider changing course
For New PCs and for Old (or Retro) PCs the Increased Cost of System Memory Benefits GNU/Linux and BSDs
GNU/Linux does not have this problem or barely has this problem
Gemini Links 10/12/2025: "Thousand Mile Journey" and The Art Of Chilling
Links for the day
Moving Away From Content Management Systems (CMSs) and Flocking to Static Site Generators (SSGs)
The SSG 'hype' is not based on marketing but a simple reality
IBM is Laying Off Workers in India (While Spending a Fortune Buying a Company for Buzzwords, a Box-Ticking Exercise)
So what is the overall strategy?
EPO People Power - Part II - Talking About Corruption
European media must "grow a pair" and start writing about EPO corruption
Just a Little Slop About "Linux"
Slop about Linux isn't that common anymore
Links 10/12/2025: McDonald’s Latest Slop Gaffe (After Dumping IBM's Slop) and "Scam Altman’s Panic Sweats"
Links for the day
Circular Funding
Passing around capital that does not exist (for PR's sake, but there are ramifications)
Links 10/12/2025: Ransomware (Windows TCO) Has Crippled Economies, Slop (Fake) "Videos Have Flooded Social (Control) Media"
Links for the day
Y Combinator (YC) Funds Scams, Run by Scammers
Including Scam Altman
EPO People Power - Part I - Identifying Corruption
The EPO, at this stage, is a boat full of holes
IBM Has Become a "Plantation"
IBM is basically being destroyed for some cash at this point
It's Not Too Late to Send an E-mail to Your European Representative Regarding European Patent Office Abuses
If you live in Europe and have not done so already, please contact your national delegates, whose job is (at least on paper) to represent you
Almost a Thousand EPO Workers Have Voted for Industrial Action
Mandate given to SUEPO for action plan to stop the salary erosion of EPO staff
Why So Many Software Projects Are Quitting Microsoft and GitHub
Be more like LibreWolf. Move away from Microsoft and GitHub.
Many of the Attacks on Us Apparently Boil Down to Jealousy
Envy is a negative trait that leads people to self harm
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, December 09, 2025
IRC logs for Tuesday, December 09, 2025
Valuing One's Work by the Effort or Budget Taken to Undermine It
As long as what we publish is factual, nothing prevents its publication
IBM Says It Buys Another Company for "AI", So Why Does IBM Fire Its Own "AI" Experts?
As people rightly point out, this has nothing to do with "AI"
The Boundaries of Criticism
The harder the EPO will push back, the better the job we must have done
New EPO Series: Mafia Culture, Mobbing, Nepotism, and Illegal Drugs
The series shall start later today
Richard Stallman Was Right About "AI"
"Considering Stallman worked in the MIT AI lab in the era of symbolic AI, and has written GCC (an optimizing compiler is a kind of symbolic reasoner imo), I think he has a deeper understanding of the question than most famous people in tech."
With 3 Weeks Left (Sans Extensions) the Free Software Foundation (FSF) Has Already Raised About Half of the Money Set as Fund-Raising Goal
“Idiots can be defeated but they never admit it.” — Richard Stallman
Gemini Links 10/12/2025: Cranberry Juice and Gramophones
Links for the day