Theregister
Breach of France's Tchap Messaging Service Exposes Sensitive Data
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
On June 7, 2026, the French government's encrypted messaging platform Tchap was breached due to an account hijacking. The attack was executed through social engineering, compromising a user account linked to Tchap's education environment. The attacker claims to have accessed data from approximately 73,000 state agents, including 643,000 messages and nearly 60,000 files, totaling about 13.5 GB of data. French authorities, including the National Cybersecurity Agency (ANSSI) and the Digital Affairs Directorate (DINUM), are investigating the incident and have blocked the compromised account. While DINUM asserts that private conversations remain secure due to encryption, the attacker claims broader access, raising concerns about the true extent of the breach. The incident has been reported to France's data protection authority, CNIL, due to potential exposure of personal data. Investigations are ongoing to ascertain the full impact and nature of the data accessed.
Key Points: • Tchap, the French government messaging platform, was breached via account hijacking. • The attacker claims to have accessed data from 73,000 accounts and 643,000 messages. • DINUM insists that private conversations remain secure, but the attacker disputes this.