ctipilot.ch

Tchap messenger breach

incident · incident:tchap-french-government-messenger-breach

The French government's Tchap Matrix messenger breached via account takeover; 73,467 civil servants' metadata exposed; CNIL notified.

Coverage timeline
1
first 2026-06-10 → last 2026-06-14
Peak priority
notable
1 notable
Sources cited
2
2 hosts
Sections touched
1
weekly-sector-patterns
Co-occurring entities
0
no co-occurrence
ATT&CK techniques
0
no mapped behavior yet

Story timeline

  1. 2026-06-14Public administration — the week's centre of gravity
    weekly-sector-patterns

Where this entity is cited

  • weekly-sector-patterns1

Source distribution

  • enisa.europa.eu1 (50%)
  • ncsc.admin.ch1 (50%)

explore in graph

Entries about Tchap messenger breach (1)

2026-06-14 · view entry permalink →

NOTABLE

Public administration — the week's centre of gravity

The public sector again carried the highest concentration of operationally severe items. France's sovereign Tchap messenger breach (§ 5) struck the French civil service directly; NCSC-CH's Week 23 report documented a coordinated surge in job-seeker targeting against Swiss residents — fake interviews, reshipping identity theft, and LinkedIn-to-GitHub infostealer delivery (NCSC-CH; daily 06-10); and ENISA ran its biennial Cyber Europe 2026 exercise (10–11 June), testing the revised EU Cyber Blueprint and triggering the first live activation of the EU Cybersecurity Reserve (ENISA; daily 06-14). The pattern for a Swiss/EU public-sector SOC: the threats are arriving through identity and through suppliers, and the EU's collective-response machinery is being stress-tested precisely because that is where the pressure is.

synthesis14 Jun 23:57Zmulti-sourceOpen finding ↗