Victoria's Secret shuts down systems and website during a cybersecurity incident
Victoria's Secret reported an incident that led to the disconnection of corporate systems and the temporary suspension of its website.

News summary
Victoria's Secret reported an incident that led to the disconnection of corporate systems and the temporary suspension of its website. The recovery of internal systems also affected corporate processes.
A sound response may require shutting down services despite the commercial cost. Inventory, recovery priorities, independent backups, and executive communication allow this decision to be made with less improvisation.
Source: Reuters — 3 June 2025
What happened
In early June 2025 Victoria's Secret disclosed a cybersecurity incident that led it to take corporate systems offline and temporarily suspend its website. The company activated internal response protocols and worked with outside specialists to investigate the scope of the incident.
The disruption went beyond the online storefront: restoring internal systems also affected corporate processes, delaying management tasks while services were progressively brought back online.
What it means for a mid-sized business
The case shows that shutting down services, despite an immediate commercial cost, can be the right call when active compromise is suspected. An online store down for hours is preferable to a customer database exposed without control.
For a business selling online in Spain or Catalonia, the practical lesson is that this decision must be made quickly and without improvising, which requires knowing in advance which systems can be isolated without blocking the rest of the business.
What to review
Points that support an orderly response to a similar incident:
- An up-to-date inventory of systems and dependencies between the online store, ERP and logistics.
- Recovery priorities agreed in advance: what is restored first and why.
- Backup copies independent of the main environment, verified with restore tests.
- An executive and customer communication protocol for temporary service suspensions.
Frequently Asked Questions
- Was customer data theft confirmed?
- The company disclosed the incident and the systems shutdown; no final breakdown of affected data has been made public.
- Why take the website offline instead of keeping it running?
- When active compromise is suspected, isolating systems reduces the risk of the attacker continuing to move or extract data during the investigation.
- What lesson applies to a small online retailer?
- Know which systems can be switched off without paralysing the whole business, and keep backups that allow the catalogue and orders to be restored without relying on the compromised system.
Concepts mentioned in this article: Backup · Cybersecurity
At Seintec, we can help you review how a similar scenario would affect your business and define the most appropriate technical measures. Contact us and an expert will study your case.
Contact SeintecRelated service
Cybersecurity
We shield your business so it never stops.