France

Country

DDoS Cyberattack Disrupts La Poste and La Banque Postale Online Services During Peak Christmas

December 22, 2025

In December 2025, La Poste Groupe suffered a DDoS cyberattack . The attack targeted its online services, parcel tracking (Colissimo), Digiposte, and La Banque Postale digital banking. The attack caused temporary service outages for several days during the Christmas peak, though physical deliveries and in‑person banking continued. The incident was claimed by pro‑Russian hacktivists NoName057(16). No customer data was compromised, and services were gradually restored by late December. La Poste strengthened monitoring and mitigation measures to prevent future disruptions.

Pro-Russian group Noname057 claimed credit for a DDOS attack that affected deliveries. Deliveries were slowed because of an impaired parcel tracking capability.

read more

Cyberattack Forces Production Halt at Wibaie Manufacturing in France

July 9, 2025

A cyberattack struck Wibaie, French manufacturer of windows and entrance doors, — in the night of 9–10 July 2025. The attack paralyzed the company’s IT systems and forced a complete halt of production at its Cholet plant. Machines, manufacturing lines and normal operations could not run due to lack of access to critical IT systems. The company isolated all network devices. All 600 employees were sent home while cybersecurity specialists and investigators worked to contain the breach.

No verified date for when full production resumed has been published at this time.

read more

Air France, KLM Suffer Data Breach

August 6, 2025

Air France and KLM suffered a cyberattack Wednesday where threat actors were able get into a customer service platform and steal personally identifiable information from users.
The airlines said they eliminated attackers’ access to the compromised systems after they discovered the breach. They also said their networks did not fall into the hands of the attackers.
The airline said in a statement: “Air France and KLM have detected unusual activity on an external platform we use for our customer service. This resulted in unauthorized access to customer data.

read more

Ransomware Attack at Volkswagen Group France

October 14, 2025

Volkswagen Group France experienced a ransomware attack attributed to the cybercriminal group Qilin. The group claimed to have stolen approximately 150 GB of sensitive data, including personal information of vehicle owners, detailed vehicle data, and internal documents. The group published six documents online as proof of the breach.

read more

Cyberattack at French Warship Builder – Hackers Leak 1TB of Data

July 23, 2025

France’s state-owned defense firm Naval Group is investigating a cyberattack. A hacker using the moniker Neferpitou claimed to have stolen approximately 1TB of the company’s internal data. The Naval Group released a statement on July 26. “All of our teams and resources are currently mobilized to analyze and verify the authenticity, origin, and ownership of the data as quickly as possible. At this stage, no intrusion into our IT environments has been detected and there has been no impact on our activities.”

Naval Group was given 72 hours to negotiate an extortion payment. Soon after, Neferpitou leaked the entire 1TB dataset on the forum.

read more

Multi-regional Cyberattack at Luxury Fashion Brand Louis Vuitton

July 2, 2025

Louis Vuitton was the victim of a multi-region cyberattack in July 2025. The attack impacted customers in the UK, South Korea, Turkey, and Portugal. The unauthorized party accessed data such as names, contact information, and purchase history. No financial or payment data was compromised. Louis Vuitton notified affected customers and relevant authorities, including the UK’s Information Commissioner’s Office (ICO) and the CNIL in Europe. The company is investigating the incident while strengthening its security systems.

read more

Europcar Data Breach Affects up to 200,000 Customers

April 3, 2025

A hacker breached the GitLab repositories of multinational car-rental company Europcar Mobility Group and stole source code for Android and iOS applications, as well as some personal information belonging to up to 200,000 customers. The actor tried to extort the company by threatening to publish 37GB of data that includes backups and details about the company’s cloud infrastructure and internal applications.

Europcar is in the process of notifying all impacted customers and has notified the data protection authority in the country. It is unclear how the threat actor managed to gain access to Europcar’s code repositories but many recent breaches were fueled by credentials stolen in infostealer compromises.

read more

DDoS Attack on Clermont-Ferrand Auvergne Airport’s website.

March 19, 2025

The Aéroport de Clermont-Ferrand-Auvergne’s website was targeted by a DDoS attack. The attack caused a brief interruption of service, but did not impact the airport’s operations.
The attack was claimed by a hacker group called “Diplomat”. The motivations behind the attack are unclear.

read more

French Orange Group Confirms Cyberattack

February 25, 2025

A hacker claims to have stolen thousands of internal documents with user records and employee data after breaching the systems of Orange Group, a leading French telecommunications operator and digital service provider. The threat actor published on a hacker forum details about the stolen data after trying to extort the company unsuccessfully.

Orange confirmed the breach to BleepingComputer saying that it occurred on a non-critical application. The company initiated an investigation and is working to minimize the impact of the incident.

read more