Dutch luxury retailer De Bijenkorf says a cyberattack on an external logistics provider delayed deliveries, returns, and refunds and may have exposed customer data. De Bijenkorf says its own systems were not compromised, but the partner handled names, email and postal addresses, phone numbers, online purchase details, delivery information, payment method used, and some business customer VAT data. Payment card details, bank account numbers, and login credentials were reportedly not stored by the provider.
Why it matters: Customers may face privacy risks and possible follow-on phishing tied to their real orders, while the incident shows how attacks on service providers can disrupt retailers even when the retailer’s own network was not breached. Affected customers should watch for targeted scam messages, and retailers should review third-party logistics and data-sharing risk.
2026.08.11
93% relevant
This is the same underlying CEVA Logistics breach referenced in De Bijenkorf’s notice, and this source expands it with cross-victim reporting, likely impact on eight warehouses, and details on additional affected firms and Steam hardware shipments.
2026.08.05
100% relevant
This article establishes a distinct incident involving De Bijenkorf and an unnamed logistics provider, with operational disruption and possible customer-data exposure.
← Back to all stories