:

FRENCH GOVT MESSAGING PLATFORM TCHAP BREACHED

SECURITY DESK1 MIN READ
TUE, JUN 9, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

France's DINUM digital directorate reported a security breach of Tchap, the government's encrypted messaging service, after attackers hijacked a user account. The incident exposed the platform's vulnerability to account takeover attacks.

DINUM disclosed that unauthorized actors gained access to Tchap through a compromised user account, allowing them to infiltrate the encrypted messaging system used across French government agencies. Tchap was specifically designed to provide secure communications for government employees, offering end-to-end encryption and data sovereignty by keeping messages stored on French servers. The breach highlights a critical security gap: even encrypted platforms remain vulnerable when user credentials are compromised. Attackers who control legitimate accounts can bypass many security measures designed to protect data in transit or at rest. DINUM has not yet disclosed the scope of the breach, including how many accounts were affected or what data was accessed. The agency is investigating the incident and has begun notifying affected users. This incident underscores the ongoing challenge of securing government communications infrastructure, where credential theft remains one of the most effective attack vectors despite advanced encryption technologies.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A Windows version of the SprySOCKS Linux malware has been deployed in attacks against government organizations across at least four countries. The cross-platform threat represents an expansion of the malware's targeting capabilities.

JUST NOWDev Desk

Threat intelligence firm Defused reports that attackers are actively exploiting critical vulnerabilities in Fortinet's FortiSandbox threat detection platform. The flaws pose significant risk to organizations relying on the security tool.

JUST NOWSecurity Desk

Digital healthcare company iRhythm Holdings has disclosed a data breach in which hackers accessed patients' personal and health information stored on third-party-hosted business applications.

JUST NOWSecurity Desk

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a three-day deadline for federal agencies to patch an actively exploited vulnerability in the LiteSpeed cPanel user-end plugin (CVE-2026-54420).

JUST NOWSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.