French Authorities Detain Four Hackers Linked to Infamous BreachForums

Published:

spot_img

Arrests of Four Hackers Linked to BreachForums in France

On June 23, authorities in France apprehended four individuals in their twenties for their suspected roles in the infamous dark web forum, BreachForums. This operation was carried out by the Paris Police Prefecture’s Cybercrime Unit, known as the Brigade de lutte contre la cybercriminalité (BL2C). The arrests mark a significant development in the ongoing fight against cybercrime within France and beyond.

Details of the Arrest

Laure Beccuau, a State Prosecutor, announced the arrests, emphasizing the collaborative efforts with international partners, particularly the United States. The suspects, identified by their online handles—ShinyHunters, Hollow, Noct, and Depressed—were apprehended in various locations, including suburban Paris, Normandy, and La Réunion, a French overseas territory. These arrests are part of a broader investigation into a series of high-profile cyber-attacks that have targeted numerous victims both in France and overseas.

The Impacts of Their Alleged Activities

The group, commonly known as ShinyHunters, is not only associated with managing BreachForums but is also believed to be behind several sophisticated cyber-attacks. These incidents reportedly affected well-known entities, including electronics retailer Boulanger, telecommunications giant SFR, France Travail (the national job agency), and the French Football Federation (FFF). The scale and complexity of these attacks underline the significant threat posed by such organized cybercrime.

International Cooperation

In her official statement, Beccuau expressed gratitude for the valuable intelligence shared by international law enforcement agencies, particularly the FBI and the U.S. Department of Justice. She noted the importance of these collaborations in identifying and apprehending the suspects. The exchange of information and mutual trust between these agencies played a crucial role in the investigation, demonstrating how global cooperation is essential in combating cybercrime.

An investigating judge will now delve deeper into the case, determining whether there is sufficient evidence to indict the suspects and proceed to trial.

The Evolution of BreachForums

BreachForums emerged as a significant global cybercrime marketplace in 2022, primarily serving English-speaking users and operating on the clear web. However, its rise drew the attention of law enforcement agencies, leading to multiple operations targeting the forum in recent years. The landscape of BreachForums has seen notable changes since its inception.

Key Developments and Arrests

The FBI made a substantial impact in March 2023 with the arrest of Conor Brian Fitzpatrick, known online as "Pompompurin." Fitzpatrick was believed to be the main administrator of BreachForums. Following his arrest, the forum experienced a temporary shutdown but managed to re-establish itself with a different administrative team.

In February 2025, another significant arrest occurred when Kai West, a British national known as IntelBroker, was detained in France. West was reportedly a temporary administrator of the forum and linked to multiple cyber-attacks. Consequently, in June 2025, the U.S. Attorney’s Office for the Southern District of New York charged him with facilitating illicit transactions and orchestrating cyber-attacks that caused approximately $25 million in damages, leading to his pre-trial detention.

The Forum’s Uncertain Future

Despite these setbacks, BreachForums has shown resilience. In April 2025, it was taken down amid rumors that the FBI had seized critical infrastructure, only to resurface shortly thereafter under a new domain. The current situation surrounding BreachForums remains precarious.

With the recent arrests of the alleged administrators, questions arise regarding the long-term viability of the forum. Will these developments prove to be a critical blow to the operations of BreachForums, or will it adapt and continue its activities? The unfolding events will determine its fate in the ever-evolving landscape of cybercrime.

spot_img

Related articles

Recent articles

CVE-2026-18577: N-able Urges Immediate Remediation for Authentication Bypass Vulnerability

CVE-2026-18577 is an authentication bypass vulnerability that has been identified in N-central, a widely used Remote Monitoring and Management (RMM) platform by N-able. This...

IBM Study: Average data breach cost in Saudi Arabia projected at SAR 27 million by 2026

IBM Study: Average data breach cost in Saudi Arabia projected at SAR 27 million by 2026. A recent report from IBM reveals that organizations...

CVE-2026-63077: JetBrains Releases Urgent Update for TeamCity On-Premises Vulnerability

CVE-2026-63077 is a critical vulnerability that has been identified in JetBrains TeamCity On-Premises, as detailed in a security advisory published by JetBrains on July...

CISA: Significant increase in cyberattacks targeting water utilities reported

CISA: Significant increase in cyberattacks targeting water utilities reported. The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding a notable rise...