France confronts hourly data breaches as public sector leaks fuel sophisticated fraud
High-profile breaches at La Poste, France Travail and the ANTS have enabled cybercriminals to impersonate officials and execute complex scams, prompting a shift from reactive measures to urgent policy reform.

France is currently enduring a severe cybersecurity crisis characterised by a data breach occurring approximately every hour. This relentless pace of intrusion has significantly impacted major public sector entities, including La Poste, France Travail, and the ANTS, which manages the issuance of identity documents. The theft of 11.6 million items of administrative data from the ANTS alone has provided cybercriminals with the sensitive information required to execute sophisticated frauds.
Stolen personal data is being sold on online forums and purchased by actors who utilise it to impersonate bank managers and brokers. Victims are often unable to discern the deception until significant financial loss has occurred. In a specific instance detailed by authorities, a 28-year-old fitness coach lost €8,000 after a fraudster, possessing her personal details, convinced her that a fraudulent transaction had taken place and guided her through a series of operations that ultimately authorised the theft.
In response to this escalating threat, the government has announced a €200 million emergency plan to address cybersecurity vulnerabilities. However, officials, including Anne Le Hénanff, the minister for AI and digital affairs, caution that this funding may only allow them to play catch-up rather than secure the system proactively. The minister noted that the current digital revolution driven by artificial intelligence consumes vast amounts of data and could further accelerate these scams if sufficient funding is not allocated to raise the level of data protection.
The consequences of these digital intrusions are increasingly spilling over into the physical world, creating a dangerous link between data leaks and real-world violence. Jérôme Notin, president of the Cybermalveillance.gouv.fr platform, highlighted cases where fake police officers visited homes following a leak from the French shooting federation. Furthermore, data leaks linked to websites managing crypto assets have reportedly led to kidnappings, hostage-taking, and acts of violence against victims or their families.
Experts note that a significant portion of these attacks are being conducted by young French nationals, including teenagers who realise they can make money quickly and easily. Ethical hacker Clément Domingo observed that some of these individuals earn between €5,000 and €10,000 weekly from such activities. This demographic shift suggests that the motivation behind the attacks is increasingly driven by immediate financial gain rather than state-sponsored agendas.
Existing support platforms such as Cybermalveillance.gouv.fr are designed to raise awareness and facilitate the filing of complaints, yet they often fail to identify perpetrators or compensate victims. Security experts recommend adopting protective measures, such as using digital aliases, password managers, and avoiding unsolicited links, but the scale of the breach suggests that individual vigilance alone is insufficient to counter the institutional failures enabling these crimes.


