A cyberattack affecting one of De Bijenkorf has disrupted order processing, returns and refunds, and raised concerns about the potential exposure of customer data. The Dutch luxury department store chain said the security incident occurred on the systems of a third-party accounting support provider, adding that there is no indication that its own infrastructure has been compromised.
See also: POLSA: Polish Space Agency hit by cyberattack

The Amsterdam-based company confirmed that customers can continue to place orders online and stores remain open. However, deliveries, returns and refunds are expected to take longer than usual as the investigation continues.
According to De Bijenkorf, unauthorized individuals gained access to part of its accounting partner's systems. The accounting support provider reacted immediately by blocking unauthorized access and implementing additional security measures. An external investigation is now underway to determine the cause of the incident, its extent and whether customer information was affected.
As a precautionary measure, De Bijenkorf has informed customers about the incident and has filed a report with the Dutch Data Protection Authority, while awaiting the results of the investigation.
The company said investigators are still determining whether any personal information was compromised. Based on the information available so far, the data that may have been involved includes:
- – Customer names and contact information, such as email addresses, mailing addresses, and phone numbers.
- – Information related to online purchases, such as products ordered, prices, discounts, delivery details and the payment method used.
- – For business customers, company names and VAT numbers stored in My Account may also be involved.
De Bijenkorf stressed that sensitive financial information was not part of the incident. The company said that payment details, bank account numbers, credit card information, usernames and passwords were not accessed.
The company said it is still investigating whether individual customers have been affected. Customers whose information is confirmed to be involved will be contacted directly via email from info@debijenkorf.nl.
See also: Serious vulnerability identified in Hitachi applications

For those who have not yet received notification, the company said it cannot currently rule out the possibility that their information is included in the incident until the investigation is complete.
De Bijenkorf also stressed that no login credentials were compromised, meaning that unauthorized individuals cannot gain access to customer accounts using stolen usernames or passwords.
Although the investigation is still ongoing, De Bijenkorf warned customers to remain vigilant for the potential risk of phishing if it is ultimately determined that personal information has been exposed. The company advised customers not to click on suspicious links or open unexpected attachments. It also reminded customers to never share passwords, payment information or personal information via email or phone calls.
The company said it would never ask for credit card details, gift card information, or other sensitive information via email.
The incident adds to a growing list of attacks targeting organizations that support retail businesses rather than retailers themselves. A cyberattack on the supply chain can disrupt deliveries, returns and customer service, even when the affected retailer’s systems remain operational.
In July 2026, a ransomware attack on Japan's largest refrigerated logistics company disrupted food deliveries across the country, causing supply shortages for restaurant chains including Kentucky Fried Chicken. The incident demonstrated how cyberattacks on logistics providers can quickly impact retail businesses and customer service.
🔒 Protect your privacy with Proton VPN
Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.
- ✔ No-logs, based in Switzerland (except 14-Eyes)
- ✔ NetShield: blocks ads, trackers & malicious domains
- ✔ Covers all devices — free version available
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
See also: Cyberattack on White Lake Township Hall

For now, De Bijenkorf said its stores remain open, online orders continue to function and there is no indication that its own systems have been compromised. The company said it will provide further updates as the external investigation determines whether customer data was affected and the full extent of the incident.
