• Latest
  • Trending
Ceva Logistics faces lawsuit over theft of employee data in cyberattack

Ceva Logistics faces lawsuit over theft of employee data in cyberattack

September 2, 2026
Manitoba Unveils More Than $100 Million in Tariff Relief for Businesses

Manitoba Unveils More Than $100 Million in Tariff Relief for Businesses

September 2, 2026
Carney: U.S. sought to turn Canadian industries into subsidiaries or wipe them out

Carney: U.S. sought to turn Canadian industries into subsidiaries or wipe them out

September 2, 2026
ADVERTISEMENT
Taking AI Underground to Build a Clearer Picture of Major Projects

Taking AI Underground to Build a Clearer Picture of Major Projects

September 2, 2026
MIT turns a century-old warehouse into a new hub for architecture and design

MIT turns a century-old warehouse into a new hub for architecture and design

September 2, 2026
Frankfurt Air Cargo Community Brings Industry Together for 11th Air Cargo Conference

Frankfurt Air Cargo Community Brings Industry Together for 11th Air Cargo Conference

September 2, 2026
FIATA and WiseTech Global extend partnership for another three years

FIATA and WiseTech Global extend partnership for another three years

September 2, 2026
Transense and Unison advance torque-sensing technology for next-generation hybrid-electric flight

Transense and Unison advance torque-sensing technology for next-generation hybrid-electric flight

September 2, 2026
DHL appointed by SAS Scandinavian Airlines for three-year ground handling partnership at Manchester Airport

DHL appointed by SAS Scandinavian Airlines for three-year ground handling partnership at Manchester Airport

September 2, 2026
TruckSmarter to shut down as Dispatch app goes offline Friday

TruckSmarter to shut down as Dispatch app goes offline Friday

September 2, 2026
Motive Targets Fleet Repair Costs With AI-Powered Maintenance

Motive Targets Fleet Repair Costs With AI-Powered Maintenance

September 2, 2026
One Complaint Uncovered an $800K Texas Grain Theft Operation Across 176 Loads

One Complaint Uncovered an $800K Texas Grain Theft Operation Across 176 Loads

September 2, 2026
Yellow Corp. settles remaining pension claims in deal worth up to $526M

Yellow Corp. settles remaining pension claims in deal worth up to $526M

September 2, 2026
  • Home
  • About Us
  • Press Room
  • Podcasts
  • Media Kit
  • Contact Us
  • Careers
Wednesday, September 2, 2026
  • Login
  • Register
The Logistic News
  • Logistic
  • Air
  • Maritime
  • Land
  • World
  • Business
  • Tech
  • Events
  • Advertise
No Result
View All Result
  • Logistic
  • Air
  • Maritime
  • Land
  • World
  • Business
  • Tech
  • Events
  • Advertise
No Result
View All Result
The Logistic News
No Result
View All Result
Home Business

Ceva Logistics faces lawsuit over theft of employee data in cyberattack

Former worker alleges sensitive employee records were stolen during breach affecting European warehouse operations

The Logistic News by The Logistic News
September 2, 2026
in Business, Logistic, Tech, World
Reading Time: 3 mins read
0
Ceva Logistics faces lawsuit over theft of employee data in cyberattack
ADVERTISEMENT

Ceva Logistics, a global freight and logistics company, is facing a proposed class action from a former employee who alleges the company failed to properly protect sensitive personal information that was allegedly stolen during a cyberattack that disrupted operations at several European warehouses.

Hackers breached Ceva Logistics’ systems and data in a late July attack that disrupted operations at eight warehouses that replenish stores and fulfilll e-commerce orders for retailers in the Netherlands and other European countries, FreightWaves previously reported. The lawsuit suggests the breach could have had ripple effects beyond the retailers and customers served by those facilities.

Why it matters: Ceva Logistics, a France-based company, is one of the world’s largest third-party logistics providers, with more than 1,000 warehouses worldwide. The company had $18.3 billion in revenue last year.

ADVERTISEMENT

The lawsuit was filed last month in Houston federal court, where Ceva has its U.S. headquarters, by former employee Kevin Krupa.

Hackers stole employees’ personal information, including bank account information and Social Security numbers, the complaint said. Krupa alleges the breach could have been avoided had Ceva adopted proper security precautions following a similar incident nearly a year earlier.

In September 2025, the CoinbaseCartel hit Ceva Logistics with ransomware, according to the cyber intelligence platform SOCRadar. Ceva did not publicly comment on the incident.

The company also made changes among senior technology executives after the earlier attack. In November, Ceva’s VP of IT infrastructure for the Americas, Bryant Duke, announced his departure on LinkedIn. In March, the company’s global chief information officer Susanne Shustein announced on the social media platform that she had left Ceva. It is unusual to see two senior IT executives depart in such a short space of time.

During the summer, the CMA CGM Group, which owns Ceva, also moved Mathieu Friedberg from being CEO of Ceva to executive vise president of transformation and cyber at CMA CGM.

The appointment, which puts Friedberg in charge of cybersecurity at the parent company, suggests CMA CGM might see the cyber threat as a more enterprise-wide issue rather than one limited to Ceva Logistics, a source familiar with the company’s operations said on condition of anonymity because of concerns about retaliation.

Krupa’s complaint claims that Ceva’s cybersecurity practices left employees particularly vulnerable.

“Defendant’s systems were hacked by cybercriminals because Defendant failed to properly train its employees on cybersecurity and failed to implement reasonable security safeguards or protocols to protect the Class’s private information,” the filing says, claiming the company’s practices made employees “easy targets.”

The suit also says that Ceva has not formally notified employees about the breach. “The failure to notify has deprived the affected workers the chance to take action to protect themselves and limit the chance that their personal information could be used for fraudulent purposes, Krupa said.

Krupa said he himself was a victim of fraudulent activity with his credit card and had to cancel it. He also said there has been an uptick in spam and scam phone calls since the incident.

The complaint seeks class action status, alleging at least 100 employees have already been injured and the number of people affected could eventually reach into the thousands.

The suit seeks at least $5 million in damages and compensation. It charges Ceva with negligence, breach of implied contract and unjust enrichment.

The lawsuit also claims that Ceva opted for cheaper, ineffective security measures rather than deploying proper security and data-retention policies that could have prevented the breach.

Instead of providing a reasonable level of security, or retention policies, that would have prevented the data breach, Defendant calculated to avoid its data security obligations at the expense of Plaintiff and Class Members by utilizing cheaper, ineffective security measures,” the filing states.

“Employees were harmed as a direct result of the company’s purported failure to adequately protect their personal information,” Krupa said.

Healthcare sector also targeted

The Ceva case comes as cyberattacks continue to affect major companies across the healthcare and pharmaceutical supply chain.

McKesson Corp., one of the largest pharmaceutical distribution companies, confirmed last week in a government filing that it had identified a cybersecurity incident affecting its information systems.

In a statement issued Friday, McKesson said hackers had gained access to third-party data servers and removed sensitive customer information from two business units. The company also warned that it expected “intermittent service degradation.” Employee data was also reportedly stolen.

Bleeping Computer reported that the ShinyHunters hacker group was demanding $55 million in ransom in exchange for not publicly releasing the stolen private information.

McKesson is the latest healthcare or medical-device company to be targeted this year by cybercriminals using data theft and extortion. The attacks typically threaten to expose stolen information unless the targeted company agrees to pay a ransom.

Last month, Boston Scientific was also hit by a cyberattack that left a significant portion of its network offline, further highlighting the growing cybersecurity risks facing companies responsible for critical healthcare and supply-chain operations.

Previous Post

TruckSmarter to shut down as Dispatch app goes offline Friday

Next Post

DHL appointed by SAS Scandinavian Airlines for three-year ground handling partnership at Manchester Airport

Next Post
DHL appointed by SAS Scandinavian Airlines for three-year ground handling partnership at Manchester Airport

DHL appointed by SAS Scandinavian Airlines for three-year ground handling partnership at Manchester Airport

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

A D V E R T I S E M E N T

Popular News

  • Drone Delivery Takes Flight: Amazon Partners with UPS for Trial Program

    Drone Delivery Takes Flight: Amazon Partners with UPS for Trial Program

    0 shares
    Share 0 Tweet 0
  • Rail Cargo Group Strengthens European Network with Captrain Netherlands Acquisition

    0 shares
    Share 0 Tweet 0
  • Automotive Inbound Logistics Market: Navigating Future Challenges

    0 shares
    Share 0 Tweet 0
  • Global Inflation Cools to Target After Three Years, Central Banks Face Policy Dilemma

    0 shares
    Share 0 Tweet 0
  • Dubai Mercantile Exchange Rebrands as Gulf Mercantile Exchange Following Saudi Tadawul Group Acquisition

    0 shares
    Share 0 Tweet 0

Recent News

Manitoba Unveils More Than $100 Million in Tariff Relief for Businesses

Manitoba Unveils More Than $100 Million in Tariff Relief for Businesses

September 2, 2026
Carney: U.S. sought to turn Canadian industries into subsidiaries or wipe them out

Carney: U.S. sought to turn Canadian industries into subsidiaries or wipe them out

September 2, 2026
Taking AI Underground to Build a Clearer Picture of Major Projects

Taking AI Underground to Build a Clearer Picture of Major Projects

September 2, 2026

Discover a new era of logistics reporting with The Logistic News, your go-to platform for breaking news, insightful features, and exclusive interviews shaping the global logistics and freight landscape. Trust us to deliver accurate, timely, and relevant information that empowers professionals and enthusiasts alike in navigating the intricacies of this vital sector.

Navigation

  • Home
  • About Us
  • Press Room
  • Podcasts
  • Media Kit
  • Contact Us
  • Careers
  • Privacy Policy
  • Terms of Use

© 2024 - thelogisticnews.com

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

SIgn Up Newsletter

This will close in 20 seconds

Manage Cookie Consent
We use technologies like cookies to store and/or access device information. We do this to improve browsing experience and to show (non-) personalized ads. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}
No Result
View All Result
  • Logistic
  • Air
  • Maritime
  • Land
  • World
  • Business
  • Tech
  • Events
  • Advertise

© 2024 - thelogisticnews.com