WEBA Hit by Cyberattack: Customer Data Stolen in Ransomware Incident
Belgian home furnishings retailer WEBA suffered a cyberattack on August 10, resulting in the theft of customer data and temporary operational disruptions. The attack, claimed by the Russian-speaking cybercriminal group Qilin, involved ransomware that partially crippled the company’s IT systems.
Hackers accessed personal information, including names, phone numbers, email and physical addresses, and order histories from both in-store and online purchases. However, WEBA confirmed that passwords and online account credentials remained secure. By August 12, the company restored its systems using backups, avoiding ransom payments after determining the attackers had failed to encrypt all critical data.
WEBA collaborated with IT partners and cybersecurity experts to investigate the breach, reinforce security measures, and resume normal operations. While no further disruptions are reported, customers remain at potential risk of phishing attempts.
The incident follows a recent wave of cyberattacks targeting retailers, including De Bijenkorf, Bol, Ace & Tate, and About You, after their logistics partner, Ceva Logistics, was compromised earlier in the month.
Source: https://www.retaildetail.eu/news/home/furniture-chain-weba-hit-by-a-cyberattack/
WEBA WORLD cybersecurity rating report: https://www.rankiteo.com/company/weba-world
BCP Banco de Crédito de Bolivia S.A. cybersecurity rating report: https://www.rankiteo.com/company/banco-de-credito-de-bolivia-s-a-
"id": "WEBBAN1787149850",
"linkid": "weba-world, banco-de-credito-de-bolivia-s-a-",
"type": "Ransomware",
"date": "8/2026",
"severity": "100",
"impact": "4",
"explanation": "Attack with significant impact with customers data leaks"
{'affected_entities': [{'customers_affected': 'Customers with in-store and '
'online purchases',
'industry': 'Home furnishings',
'location': 'Belgium',
'name': 'WEBA',
'type': 'Retailer'}],
'customer_advisories': 'Customers remain at potential risk of phishing '
'attempts',
'data_breach': {'data_encryption': 'No (attackers failed to encrypt all '
'critical data)',
'data_exfiltration': 'Yes',
'personally_identifiable_information': 'Yes',
'sensitivity_of_data': 'Personal information',
'type_of_data_compromised': ['Names',
'Phone numbers',
'Email addresses',
'Physical addresses',
'Order histories']},
'date_detected': '2023-08-10',
'date_resolved': '2023-08-12',
'description': 'Belgian home furnishings retailer WEBA suffered a cyberattack '
'on August 10, resulting in the theft of customer data and '
'temporary operational disruptions. The attack, claimed by the '
'Russian-speaking cybercriminal group Qilin, involved '
'ransomware that partially crippled the company’s IT systems. '
'Hackers accessed personal information, including names, phone '
'numbers, email and physical addresses, and order histories '
'from both in-store and online purchases. However, WEBA '
'confirmed that passwords and online account credentials '
'remained secure. By August 12, the company restored its '
'systems using backups, avoiding ransom payments after '
'determining the attackers had failed to encrypt all critical '
'data. WEBA collaborated with IT partners and cybersecurity '
'experts to investigate the breach, reinforce security '
'measures, and resume normal operations. While no further '
'disruptions are reported, customers remain at potential risk '
'of phishing attempts.',
'impact': {'data_compromised': 'Customer data (names, phone numbers, email '
'and physical addresses, order histories)',
'downtime': 'Temporary operational disruptions',
'identity_theft_risk': 'Potential risk of phishing attempts',
'operational_impact': 'Partial crippling of IT systems',
'systems_affected': 'IT systems'},
'investigation_status': 'Ongoing',
'post_incident_analysis': {'corrective_actions': 'Reinforced security '
'measures'},
'ransomware': {'data_encryption': 'Partial',
'data_exfiltration': 'Yes',
'ransom_paid': 'No',
'ransomware_strain': 'Qilin'},
'references': [{'source': 'Cyber incident report'}],
'response': {'recovery_measures': 'Resumed normal operations',
'remediation_measures': 'Restored systems using backups, '
'reinforced security measures',
'third_party_assistance': 'IT partners and cybersecurity '
'experts'},
'threat_actor': 'Qilin',
'title': 'WEBA Hit by Cyberattack: Customer Data Stolen in Ransomware '
'Incident',
'type': 'Ransomware'}