The CEVA Logistics data breach is having major knock-on effects across Europe - here's what we know
Date:
Tue, 11 Aug 2026 11:35:00 +0000
Description:
Shipping and logistics powerhouse suffers a cyberattack, affecting almost a dozen of its clients - we take a look at the details.
FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter CEVA Logistics hack disrupted European warehouses and exposed some customer data Retailers and Valve reported compromised delivery information and service delays Clients warned
of targeted scams while awaiting fuller incident details from CEVA CEVA Logistics, one of the biggest shipping and logistics companies in the world, has suffered a major cyberattack, the effects of which are trickling down to many of its clients.
The details of the hack itself, however, are not yet publicly available and what little information is out there came from the affected clients themselves. CEVA has not yet issued an official statement, or filed a report with the regulators, but confirmed to TechCrunch that the attack most likely started on July 29, 2026, and affected at least eight warehouses across Europe. Latest Videos From TechRadar Watch full video here: Technical details missing, affected customers step forward CEVA Logistics is a global logistics and supply-chain company and a wholly owned subsidiary of CMA CGM, a French shipping giant. It provides freight forwarding, contract logistics, warehousing and transportation services to thousands of customers, including major companies in the consumer and retail, automotive, industrial and aerospace sectors.
The company operates in more than 170 countries around the world and last
year it generated $18.3 billion in gross revenue, so it is a major player and a key target for attackers. You may like Lidl customers across Europe hit in suspected data breach - here's what we know Carnival cruise operator confirms nearly 6 million people affected in data breach Levi's reveals security tear may have let hackers steal important corporate data
The details about the incident itself are scarce right now. We dont know how the crooks broke in (via a successful social engineering attack, or by
abusing a software vulnerability, for example), how much data they stole, or if they demanded a ransom payment in exchange for deleting the stolen goods. From one of the victims, though, we have learned that some data was most likely compromised.
When the effects of a cyberattack spill into the physical realm (as is the case here with eight affected warehouses) we can speculate the attack was either ransomware , or disruptive malware . Companies shut down parts of
their IT infrastructure only when there is no other way to clear an infection or remove malicious outsiders. Are you a pro? Subscribe to our newsletter
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me with news
and offers from other Future brands Receive email from us on behalf of our trusted partners or sponsors By submitting your information you agree to the Terms & Conditions and Privacy Policy and are aged 16 or over.
In the meantime, a small number of CEVAs customers confirmed suffering an attack and losing sensitive data.
Among them is Bol, a Dutch online retail company, which said the incident affected two systems used for processing orders from one of its fulfillment
No bol systems were affected, it said. However, data of customers whose
orders were processed via this location may have been viewed or copied. What to read next The Vimeo breach and the dangers of delegated trust 7-Eleven confirms cyberattack, says 'personal information' may have been hit Rental giant Carla leaks user names, emails, and phone numbers ahead of summer holiday break
Bol also said restoring operations at one of CEVAs locations was taking
longer than anticipated. As a result, the assortment stored at the affected location was taken offline, and the products were unavailable for sale. Also, Bol is currently unable to receive goods from suppliers and sales partners at that location.
A similar announcement was given by De Bijenkorf, another Dutch luxury retailer, who said that order processing, returns, and refunds, might take longer, but stressed that its stores remained open. It also said that some customer data may have been compromised, including names, contact details, online orders data and, in some cases, VAT numbers. Payment information, bank account numbers (IBANs), credit card information, usernames, or passwords, were not compromised, it was confirmed. Valve steps forward Retail giants aside, PC gaming powerhouse Valve also notified its customers about the incident. It said CEVA ships Steam hardware to its European customers and as such, receives specific delivery-related information from Steam.
This information, which CEVA retains for up to 90 days after the order, was most likely compromised. It includes names, street addresses, phone numbers, email addresses, and the type and price of ordered products.
Valve warned its customers to expect fake messages, either via email, SMS, or phone, that might mention recent hardware orders.
They may quote your address back to you to prove they're genuine. They may
ask you to confirm a delivery, pay a small customs or redelivery fee, or sign in somewhere to verify your order. Treat all of them as fake, Valve warned. The company also stressed that customer accounts are safe and that users need not do anything to secure them.
Other details are missing, not just for the general public, but for the affected CEVA clients, as well. Valve said it was pressing the company for
the full scope of what was taken and how, and added that it is notifying the relevant authorities, as well.
A spokesperson of the Dutch data protection authority, Mark Schenkel, told TechCrunch the agency so far received 10 incident reports. Given the size of CEVA, its safe to assume there will be others. The best antivirus for all budgets Our top picks, based on real-world testing and comparisons
Read our full guide to the best antivirus 1. Best overall: Bitdefender Total Security 2. Best for families: Norton 360 with LifeLock 3. Best for mobile: McAfee Mobile Security Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.
======================================================================
Link to news story:
https://www.techradar.com/pro/security/the-ceva-logistics-data-breach-is-havin g-major-knock-on-effects-across-europe-heres-what-we-know
--- Mystic BBS v1.12 A49 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)