AI News Feed
Market watch
Cybersecurity

Pokémon Center UK data breach exposes customer information, forces order cancellations

Pokémon Center UK warned customers of a data breach after logistics provider CEVA Logistics was hit by a cyberattack on July 30, 2026, exposing names, addresses, email addresses, and order details. Some orders were cancelled.

In an email sent to customers and seen by BleepingComputer, Pokémon Center said the company had to “cancel your recent order due to an unforeseen fulfilment issue.” The company’s website also displayed a notice saying it was “currently experiencing delays affecting some orders for our UK customers” and that orders might take longer than usual to process, dispatch, and deliver.

Pokémon Center said CEVA Logistics, its vendor for shipping products from PokemonCenter.com to customers in the United Kingdom and Germany, informed the company that it was the victim of a cyberattack. CEVA is one of the largest shipping and logistics companies in the world. Last week, it disclosed an incident that forced it to shut down parts of its IT infrastructure and affected eight warehouses. At that time, a handful of its customers reported being affected, including Dutch retailers Bol and De Bijenkorf and gaming company Valve.

According to Pokémon Center, the data most likely exposed in the incident includes customers’ full names, mailing addresses, phone numbers, email addresses, and details about previous orders on the site. User accounts and payment details were not affected. Around a dozen organizations are confirmed to have been affected so far, and no threat actors have claimed responsibility for the attack.