A new cyber attack has hit a logistics giant: Ceva Logistics suffered a cyber intrusion that compromised the systems of eight European warehouses. The attack, discovered on 29 July 2026 and continuing at least until 1 August, caused delays to shipments and led to the theft of personal data belonging to end customers of several companies that rely on Ceva for last-mile logistics. According to initial findings, names, addresses, telephone numbers, email addresses and, in some cases, VAT numbers were compromised, while payment data and login credentials do not appear to have been affected. The news became public only between 5 and 10 August, almost two weeks after the incident was discovered.
According to Ceva, the operational impact appears to be limited to the eight European warehouses involved without affecting the group’s other global operations or its air, sea, road or rail transport systems. The multinational has not specified which sites were affected, although the presence of Dutch companies among those hit suggests a concentration in the Netherlands. In addition to Ceva and its parent company Cma Cgm, the list of third parties that have confirmed they were involved includes operators in e-commerce, large-scale retail, banking and video games. The Autoriteit Persoonsgegevens (Dutch Data Protection Authority) is also involved in the investigation, together with other enforcement authorities in the countries affected. Responsibility has not yet been attributed to any specific group of attackers, nor is it clear whether ransomware was used or a ransom demanded.
Ceva said it had activated security protocols and launched an in-depth investigation as soon as the incident was detected, with the inquiry still ongoing at the time of the latest public statements. The company said some of the affected applications and services had been gradually restored, while cooperation with the relevant authorities continues over the management of the data breach. The incident confirms that an attack on a single logistics provider can quickly spread along the entire supply chain, affecting very different sectors such as retail, finance and gaming. This is not the first cybersecurity incident involving the Cma Cgm group: in March 2023, the parent company had already suffered an attack on peripheral servers, while on that occasion Ceva was deemed not to have been involved.








































































