Dutch retailer Bol warned customers that some personal information may have been viewed or copied after unauthorized parties accessed systems at CEVA Logistics, a logistics partner that processes and delivers orders from one of Bol’s distribution centers. Bol said its own environment was not compromised, but customer data linked to the partner’s operations was affected, and reports indicated the stolen information was being offered for sale on the dark web.
The disclosure followed a similar warning from De Bijenkorf, which also linked its incident to a logistics partner and said the breach likely affected customer data. Reporting suggested the two cases are related, pointing to a broader third-party supply-chain compromise centered on CEVA Logistics, with De Bijenkorf also experiencing order-processing delays as the incident disrupted operations.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
Reporting indicated that data connected to the retailer breaches was being offered for sale on the dark web. The reporting linked the leaked data to the incidents affecting Bol and De Bijenkorf via a logistics partner.
Bol disclosed a data breach affecting customer information through logistics partner CEVA Logistics, saying unauthorized parties accessed the partner’s systems rather than Bol’s own environment. Bol said some customer information may have been viewed or copied.
De Bijenkorf reported a possible data breach involving a logistics partner. Reporting indicated the partner was likely CEVA Logistics, and the incident caused delays in processing customer orders.
A cyberattack struck eight European warehouses operated by CEVA Logistics, disrupting order processing and exposing customer data linked to Bol and De Bijenkorf. CEVA notified affected customers the same day, while broader transportation management operations were reportedly unaffected.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
teiss.co.uk
Open sourcemalware.news
Open sourcedatabreaches.net
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.