Theregister Breach of France's Tchap Messaging Service Exposes Sensitive Data
Article Content
- •Tchap, the French government messaging platform, was breached via account hijacking.
- •The attacker claims to have accessed data from 73,000 accounts and 643,000 messages.
- •DINUM insists that private conversations remain secure, but the attacker disputes this.
On June 7, 2026, the French government's encrypted messaging platform Tchap was breached due to an account hijacking. The attack was executed through social engineering, compromising a user account linked to Tchap's education environment. The attacker claims to have accessed data from approximately 73,000 state agents, including 643,000 messages and nearly 60,000 files, totaling about 13.5 GB of data. French authorities, including the National Cybersecurity Agency (ANSSI) and the Digital Affairs Directorate (DINUM), are investigating the incident and have blocked the compromised account. While DINUM asserts that private conversations remain secure due to encryption, the attacker claims broader access, raising concerns about the true extent of the breach. The incident has been reported to France's data protection authority, CNIL, due to potential exposure of personal data. Investigations are ongoing to ascertain the full impact and nature of the data accessed.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (17)
Following this threat?
Track Anssi in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
Critical GitLab Vulnerabilities Exploited Soon After Patch Release On September 10, 2026, GitLab released versions 19.3.2, 19.2.6, and 19.1.8 to address critical vulnerabilities, including CVE-2026-85706, a path traversal flaw with a CVSS score of 10.0, allowing unauthenticated users to read arbitrary files from the server. Within hours of the patch, active exploitation attempts were…