Dutch department store De Bijenkorf has warned customers about a potential data breach involving an external logistics partner.
An unauthorised party gained access to parts of the partner’s IT environment, which handled order-related customer information. The retailer said an external cybersecurity company is investigating the cause, scope, and impact of the incident.
De Bijenkorf said it has no indication that its own systems were affected. However, some customer information may have been exposed, so the company has urged customers to remain alert for phishing attempts and other scams.
Customer and order information may be affected
Initial findings suggest that attackers may have accessed personal data belonging to an undisclosed number of De Bijenkorf customers.
The potentially affected information includes:
- Names
- Physical addresses
- Email addresses
- Phone numbers
- Order histories
- Business customer names and VAT numbers
The company stressed that no payment card details, bank account numbers, usernames, or passwords were stolen.
That reduces the immediate risk of account takeovers and direct payment fraud. However, contact details and order information can still help scammers create convincing phishing messages.
Retailer warns of phishing risks
The De Bijenkorf data breach could give criminals enough personal information to impersonate the retailer, delivery companies, or customer support teams.
For example, attackers may send emails or call customers about a delayed parcel, refund, return, or account issue. A message that includes a customer’s name, address, or order-related details may appear more trustworthy than a typical phishing attempt.
De Bijenkorf advised customers not to share passwords, payment information, or other sensitive details through email or phone calls.
Customers should also be cautious about unexpected links, urgent requests for payment, and messages that ask them to confirm account details. When in doubt, they should contact the retailer through its official website or existing customer-service channels.
Logistics partner blocked access
According to De Bijenkorf, the affected logistics partner acted immediately after detecting the intrusion. It blocked access to its digital environment and introduced additional security measures to prevent further unauthorised activity.
The retailer has also filed a report with the Dutch Data Protection Authority as a precaution.
While the investigation continues, customers may experience longer processing times for orders, returns, and refunds. De Bijenkorf said its physical stores remain open and customers can still place orders online.
Third-party breaches remain a retail risk
The incident highlights the security risks that can emerge through third-party suppliers.
Retailers often rely on external companies for logistics, deliveries, payment processing, marketing, and customer support. Even when a retailer’s own network remains secure, a breach at one of those partners can still expose customer information.
For now, De Bijenkorf says it is closely monitoring the situation and will continue its investigation with the affected partner. Customers should remain vigilant, especially if they receive unexpected messages connected to recent orders or deliveries.


0 responses to “De Bijenkorf Warns Customers After Logistics Partner Cyberattack”