Find notable cyber news and cases, enriched with sources, timelines, and signals.

Tchap public chat data leak

Data Leak
First reported
Last updated
Happening score
H score 52
1 unique sources, 1 articles

Summary

Hide ▲

The Tchap data leak exposed public-sector user information for 73,467 agents after a compromised user account was used to access non-encrypted public chat rooms. The exposed material included names, email addresses, organization details, and avatar images, while attackers also claimed to have taken messages and files. The leak increases the risk of impersonation, phishing, and credential abuse across French public-sector accounts.

Related Happenings

Tchap hit by cyberattack

Incident
H score48 First: 09.06.2026 13:53 Last: 09.06.2026 13:53 Sources 1

How related: a threat actor gained access to the Tchap platform using a compromised user account

About this happening: A compromised user account enabled an unauthorized breach of Tchap, putting the French government's encrypted messaging platform at risk of exposing conversations and pe...

Latest development: 12.06.2026 10:09

DINUM said a compromised user account accessed Tchap public chat rooms, exposing data shared by about 73,467 French public-sector agents, including names, email addresses, belonging entity and avatar images, while encrypted private conversations remained protected.

French Ministry of Finance hit by cyberattack

Incident
H score60 First: 20.02.2026 18:20 Last: 20.02.2026 18:20 Sources 1

About this happening: The French Ministry of Finance disclosed a cybersecurity incident involving FICOBA that affected data tied to 1.2 million accounts and disrupted registry operation...

Odido hit by network compromise

Incident
H score62 First: 12.02.2026 20:18 Last: 12.02.2026 20:18 Sources 1

About this happening: Odido said a February 7, 2026 cyberattack exposed personal data from its customer contact system, affecting 6.2 million customers after unauthorized access was det...

Latest development: 24.02.2026 13:40

ShinyHunters claimed responsibility for breaching Dutch telecommunications provider Odido, added the company to its dark web leak site, and said it had stolen nearly 21 million records. The gang also claimed the stolen material includes internal corporate data and plaintext passwords, while Odido denied that passwords, call details, social security numbers, or billing data are involved.

ShellForce-affiliated leak site publishes stolen identity, corporate, and résumé records

Data Leak
H score29 First: 09.02.2026 23:14 Last: 09.02.2026 23:14 Sources 1

About this happening: A ShellForce-affiliated leak site is publicly posting stolen identity records, corporate data, and résumé databases, turning intrusions into immediate exposure ris...

Timeline

  1. 12.06.2026 10:09 2 articles · 1mo ago

    Tchap breach exposes French public-sector account data

    Initial Disclosure

    DINUM said a threat actor used a compromised user account to access Tchap public chat rooms and notified CNIL about the potential exposure of personal data shared by users. The agency later said the account behind the malicious requests was identified and blocked, and that at least 73,467 agents were affected, with exposed data including last name, first name, email address, belonging entity and avatar while private conversations remained protected.

    Show sources