Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Join a running community – you won’t regret it | Running

    August 18, 2026

    Zambia’s president Hichilema wins re-election with big economic promises

    August 18, 2026

    ‘Unprecedented’ number of Apple users received recent spyware alert, say investigators

    August 18, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Join a running community – you won’t regret it | Running
    • Zambia’s president Hichilema wins re-election with big economic promises
    • ‘Unprecedented’ number of Apple users received recent spyware alert, say investigators
    • Nous Research Ships Bot Mode for Hermes Agent, Turning Agent Profiles Into a Roster of Named Bots
    • Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic
    • Minnesota Says xAI’s Grok Created ‘Marketplace for Digital Sexual Violence’
    • Hubble Solves Merger Mystery From Milky Way’s Early Years
    • Lake Powell hits record low, threatening key water and electricity supply for millions
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Tuesday, August 18
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Pokémon Center data breach exposes customer info, cancels some orders

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKAugust 18, 2026 Cybersecurity No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Pokémon Center is notifying customers in the United Kingdom and Germany that it suffered a third-party data breach after hackers stole customer personal and order information from third-party logistics provider CEVA Logistics.

    While CEVA’s systems were compromised in the cyberattack, the exposed records belonged to Pokémon Center customers who submitted orders on the site. The company then shared this information with the logistics provider to fulfill and ship PokemonCenter.com orders.

    CEVA Logistics is a subsidiary of the CMA CGM Group, the world’s third-largest shipping company. The logistics provider operates 1,000 warehouses, handled 15 million shipments last year, and reported $18.3 billion in revenue in 2025.

    image

    The company recently suffered a cyberattack in which attackers breached its servers between July 29 and August 1, affecting multiple retailers in Europe.

    The CEVA breach also affected Valve, which notified Steam hardware customers in Europe that their names, addresses, phone numbers, email addresses, and information about ordered products were stolen during the cyberattack.

    The Valve breach notification said CEVA said it retains delivery-related information for up to 90 days after an order. However, it is unclear whether the same retention period applies to Pokémon Center customer data.

    The attack also disrupted eight of its European warehouses, causing shipping delays for many customers.

    Pokémon Center orders canceled after breach

    In data breach notification emails seen by BleepingComputer, Pokémon Center says CEVA is the vendor it uses to ship PokemonCenter.com products to customers in the United Kingdom and Germany.

    “We’re sorry to inform you that we have had to cancel your recent order [order number] due to an unforeseen fulfilment issue,” reads the Pokémon Center data breach notification.

    “We are writing to let you know about a cyber incident affecting a Pokémon Center logistics provider that may affect some of your information. CEVA Logistics (“CEVA”), the vendor Pokémon Center utilizes to ship product from PokemonCenter.com for customers in the United Kingdom and Germany, has informed us that unfortunately they were a victim of a cyber attack commencing on 30 July, 2026.”

    Pokémon Center says unauthorized parties may have obtained customers’ full names, mailing addresses, phone numbers, email addresses, and details about the contents of their PokemonCenter.com orders.

    The company says other information related to customers and their orders was not impacted and that CEVA does not have access to customers’ payment card details.

    Pokémon Center is currently displaying a notice on its UK website warning that some orders are experiencing delays and may take longer than usual to process, dispatch, and deliver.

    Message to UK customers on the Pokémon Center website
    Message to UK customers on the Pokémon Center website
    Source: BleepingComputer

    However, customers are also reporting that the breach caused their orders to be canceled, although it is unclear why the cyberattack would require cancellations rather than simply delays.

    While initial reports warned of cancellations for the highly anticipated 30th anniversary collection products, a Reddit post shows that other merchandise, such as the Ghost Chateau Cyndaquil keyring, was affected.

    Another customer replied that they had also received the same cancellation email.

    BleepingComputer contacted Pokémon Center and Pokémon media contacts to learn more about the breach and why the incident caused customer orders to be canceled, but has not received a reply.


    article image

    Overall prevention scores can hide what happens after initial access. Once attackers are using valid credentials, prevention drops sharply.

    The Blue Report 2026 measures defenses technique by technique across 338 million simulations run in customer production environments.

    Get the report

    breach Cancels Center customer data exposes Info orders Pokémon
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic

    Hacker claims 3.6 million Azure account records stolen from major companies

    Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads

    Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection

    Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects

    Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Join a running community – you won’t regret it | Running

    August 18, 2026

    Zambia’s president Hichilema wins re-election with big economic promises

    August 18, 2026

    ‘Unprecedented’ number of Apple users received recent spyware alert, say investigators

    August 18, 2026

    Nous Research Ships Bot Mode for Hermes Agent, Turning Agent Profiles Into a Roster of Named Bots

    August 18, 2026
    Latest Posts

    Wisconsin’s Democratic primary for governor: a look at the 5 remaining

    July 27, 2026

    UK CO2 storage project that will reuse existing infrastructure secures lease

    July 27, 2026

    Bangladesh shipbreakers push back against stricter environmental standards

    July 27, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Join a running community – you won’t regret it | Running

    August 18, 2026

    Zambia’s president Hichilema wins re-election with big economic promises

    August 18, 2026

    ‘Unprecedented’ number of Apple users received recent spyware alert, say investigators

    August 18, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.