De Bijenkorf says cyberattack on logistics provider may have exposed customer order and contact data

Dutch luxury retailer De Bijenkorf says a cyberattack on an external logistics provider delayed deliveries, returns, and refunds and may have exposed customer data. De Bijenkorf says its own systems were not compromised, but the partner handled names, email and postal addresses, phone numbers, online purchase details, delivery information, payment method used, and some business customer VAT data. Payment card details, bank account numbers, and login credentials were reportedly not stored by the provider.
Why it matters: Customers may face privacy risks and possible follow-on phishing tied to their real orders, while the incident shows how attacks on service providers can disrupt retailers even when the retailer’s own network was not breached. Affected customers should watch for targeted scam messages, and retailers should review third-party logistics and data-sharing risk.

Sources

Cyberattack on logistics giant Ceva hits retailers and Steam customers across Europe
2026.08.11 93% relevant
This is the same underlying CEVA Logistics breach referenced in De Bijenkorf’s notice, and this source expands it with cross-victim reporting, likely impact on eight warehouses, and details on additional affected firms and Steam hardware shipments.
Dutch retailer De Bijenkorf warns customer data may be exposed after cyber incident
2026.08.05 100% relevant
This article establishes a distinct incident involving De Bijenkorf and an unnamed logistics provider, with operational disruption and possible customer-data exposure.
← Back to all stories