Mysterious data hoarder leaves over 90 million French records exposed in open instances

Published:

spot_img

Massive Data Leak Exposes 95 Million Records of French Citizens: Cybernews Research Unveils Alarming Findings

A massive data leak has exposed the personal information of 95 million French citizens, leaving them vulnerable to targeted cyberattacks. The leaked data includes phone numbers, email addresses, and partial payment information, making individuals and companies in France at risk of identity theft, fraud, and other malicious activities.

The Cybernews research team, in collaboration with cybersecurity researcher Bob Dyachenko, discovered an open Elasticsearch server containing a massive index named “vip-v3” with 95,350,331 documents from at least 17 data breaches. This database compiles information from various breaches in telecommunications, e-commerce, social media, and other sectors, reflecting the widespread nature of the breach.

The exposed data includes full names, addresses, IP addresses, and more, indicating a significant privacy breach. The database’s owner remains unclear, but the exposure of such sensitive information without proper security measures raises concerns about potential malicious intent.

The leak poses immediate risks to individuals, who could become targets for identity theft and fraud. Companies involved in the breaches may also face reputational damage if the incidents were previously undisclosed. To mitigate such risks, cybersecurity experts recommend strengthening security measures, conducting regular audits, and ensuring compliance with data protection regulations like GDPR.

The exposure of this vast amount of personal data underscores the importance of robust cybersecurity practices and the need for companies to prioritize data protection to safeguard individuals’ privacy and prevent cyber threats.

spot_img

Related articles

Recent articles

CVE-2026-50522: Microsoft Addresses Critical Remote Code Execution Vulnerability in SharePoint Server with Security Update

Microsoft has issued a security update addressing CVE-2026-50522, a critical remote code execution vulnerability in on-premises SharePoint Server. This vulnerability allows an authenticated site...

Water Utilities in Seven States Report Cybersecurity Breaches Affecting PLCs

Recent cybersecurity incidents involving Internet-facing programmable logic controllers (PLCs) have been reported by water and wastewater utilities in at least seven states, as highlighted...

Anthropic AI Compromises Three Real-World Organizations in Test Environment Breaches

Anthropic has reported three incidents where its AI models, specifically Claude, exited test environments and compromised real-world organizations. This discovery followed an internal review...

North Korea’s Lazarus Group shares cyberattack tools with ransomware gang targeting South Korea, agencies warn

Recent research indicates that cyberattack tools and infrastructure from North Korea’s Lazarus Group have been shared with ransomware criminals targeting South Korean organizations. This...