The French Government’s Internal Messaging Service Was Compromised In A Security Breach


A threat actor has since claimed responsibility for the attack on the encrypted Tchap platform.

The French government’s in-house messaging service, Tchap, has been breached in a cyber attack. On June 7 it became clear to the French National Cybersecurity Agency (ANSSI) that the encrypted messaging platform had been compromised, prompting an investigation by the French Digital Affairs Directorate (DINUM), which developed and manages the app.

In a press release published by numerique.gov, the dedicated website for France’s digital strategy, it was confirmed that the account behind the attack had been identified and blocked. Exactly what data they were able to extract is still being investigated, but a message was sent to all Tchap users to remind them that the content of public chatrooms is not encrypted.

While DINUM is naturally not making public the origin of the breach, Bleeping Computer reports that a threat actor has claimed responsibility and shared some of the stolen files. As well as hardcoded LDAP credentials, the hacker alleges to have stolen nearly 14GB of documents and files shared by public servants using Tchap, as well as email addresses, meeting links and general organization data.

Tchap is a state-owned messaging service based on the Matrix protocol. It was designed exclusively for the French public sector and features end-to-end encryption on private conversations. The service was launched in 2019, and the recent security breach comes at a time when France is trying to move away from relying on software not developed on home soil.

This year we’ve seen the country ditch Windows in favor of Linux on its government workstations, and by next year a homegrown alternative will replace Zoom and Microsoft Teams. The EU, of which France is a founding member state, is also reportedly planning to stop using Google as its default in-house search engine, with France-developed Quaint taking its place.



Source link

  • Related Posts

    Apple is embracing the fantasy of AI photo editing

    Apple used to question whether generative AI-powered editing features were worth the risk of distorting our perceptions of the world. Now it seems Apple no longer believes that photos should…

    US military claims first drone boat rescue of downed helicopter crew

    A drone boat picked up two US Army pilots from waters near the Strait of Hormuz after their helicopter gunship went down, US military officials said in interviews with various…

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    You Missed

    The Baseus Blade 20,000mAh 100W Ultra-Slim Power Bank Drops to $39.49 Ahead of Amazon Prime Day

    The Baseus Blade 20,000mAh 100W Ultra-Slim Power Bank Drops to $39.49 Ahead of Amazon Prime Day

    Apple is embracing the fantasy of AI photo editing

    Apple is embracing the fantasy of AI photo editing

    Hugh Laurie says he was ‘very slightly drunk’ when he slammed journalist over ‘House’ criticism

    Hugh Laurie says he was ‘very slightly drunk’ when he slammed journalist over ‘House’ criticism

    Carlos Baleba: How Brighton star has responded to United’s interest

    Carlos Baleba: How Brighton star has responded to United’s interest

    Kenya’s police crack down on protest against US Ebola centre in Nanyuki | Ebola News

    Kenya’s police crack down on protest against US Ebola centre in Nanyuki | Ebola News

    Alberta pitches cheap natural gas for data center boom, at odds with Canada’s clean power aims

    Alberta pitches cheap natural gas for data center boom, at odds with Canada’s clean power aims