This document is a threat profile report for the retail sector in 2023. It outlines the significant risks and attack vectors that retail organizations face, primarily focusing on ransomware, stealware, and supply chain attacks. The report indicates that the retail sector is an attractive target for cybercriminals due to the sensitive data it holds. Throughout the first three quarters of 2023, the Quorum Cyber Threat Intelligence team identified ransomware-as-a-service models being exploited by various threat groups, including notable ransomware variants like Clop, LockBit, and ALPHV. Additionally, the report discusses the emergence of stealware as a method for data exfiltration, highlighting specific variants such as Raccoon Stealer and RedLine Stealer. It also addresses the increasing prevalence of supply chain attacks, emphasizing the need for robust security measures not only within organizations but also among their third-party suppliers. The document concludes with a historical timeline of notable cyber incidents affecting the retail sector.