Free, France’s second largest ISP, confirms data breach after leak

Free

Free, a major internet service provider (ISP) in France, confirmed over the weekend that hackers breached its systems and stole customer personal information.

The company, which says it had over 22.9 million mobile and fixed subscribers at the end of June, is the second-largest telecommunications company in France and a subsidiary of the Iliad Group, Europe’s sixth-largest mobile operator by number of subscribers.

Free has since filed a criminal complaint with the public prosecutor and notified the French National Commission for Information Technology and Civil Liberties (CNIL) and the National Agency for the Security of Information Systems (ANSSI) of the incident.

“The affected subscribers have been or will be informed by email shortly,” a Free spokesperson told BleepingComputer, adding that “no operational impact was observed on our activities and services” and “all necessary measures were taken immediately to put an end to this attack and strengthen the protection of our information systems.”

Free added that the attack targeted a management tool that exposed subscribers’ data. However, the attackers failed to access customer passwords, bank card information, and communications content (including “emails, SMS, voice messages, etc.”).

The data stolen in the attack is now being auctioned on BreachForums to the highest bidder, with the threat actor—known as “drussellx”—claiming that the breach impacts almost a third of France’s population.

Allegedly stolen Free data up for sale
Allegedly stolen data up for sale (BleepingComputer)

“The data breach affects 19.2 million customers and contains over 5.11 million IBAN numbers. It affects all Free Mobile and Freebox customers, and includes the IBANs of all 5.11 million Freebox subscribers,” the threat actor says.

They also provided an archive containing some of the allegedly stolen data, screenshots, and database headers as proof that the data being auctioned is legitimate.

As further proof, the threat actor said they’re also willing to let potential customers search the stolen database to ensure that “the entire database that has been recovered” is for sale.

Regarding the stolen IBANs (International Bank Account Numbers), Free says the attackers could only steal those of certain fixed subscribers and that they’re “not enough to make a direct debit from a bank.”

“If subscribers nevertheless notice an unusual direct debit, not corresponding to any date and no known invoice amount, their bank is obliged to reimburse them. They have 13 months to report the fraudulent direct debit,” Free said,

“We also invite them to be vigilant against phishing attempts. Never communicate your access codes or bank card whether by email, SMS or during a call.”

A Free spokesperson has yet to provide more information about when the incident was detected and how many customers were impacted by the breach after being contacted by BleepingComputer for more details earlier today.

Note: This article have been indexed to our site. We do not claim legitimacy, ownership or copyright of any of the content above. To see the article at original source Click Here

Related Posts
Acer Nitro 17 AN17-41-R9LN thumbnail

Acer Nitro 17 AN17-41-R9LN

SpecificationsDisplay17.30 inch 16:9, 2560 x 1440 pixel 170 PPI, IPS, glossy: no, 165 HzConnections1 USB 2.0, 2 USB 3.1 Gen2, 2 USB 4.0 40 Gbps, USB-C Power Delivery (PD), 1 HDMI, Audio Connections: 3.5mm, Card Reader: microSDNetworking10/100/1000 LAN Card (10/100/1000MBit/s), 802.11 a/b/g/n/ac/ax (a/b/g/n = Wi-Fi 4/ac = Wi-Fi 5/ax = Wi-Fi 6/), Bluetooth 5.2Sizeheight x width x depth (in mm):
Read More
Man arrested for ‘secretly filming female students for TikTok’ thumbnail

Man arrested for ‘secretly filming female students for TikTok’

LARKANA: Police officials claimed to have arrested a man for filming female students of colleges and schools in Sindh’s Ratodero taluka for uploading it on TikTok, ARY News reported on Thursday. The police department has taken action against a man who was allegedly involved in secretly recording videos of female students going to their schools…
Read More
É oficial! Esta série da Netflix vai receber 4ª temporada! thumbnail

É oficial! Esta série da Netflix vai receber 4ª temporada!

A Netflix tem neste momento montes de séries verdadeiramente brutais na sua plataforma. No entanto, na corrida à lucratividade, que claro, anda de mãos dadas com a popularidade que cada projeto tem no mundo do streaming, faz com que muitos destes projetos, mesmo que muito potencial envolvido, acabem por ficar no caminho. Ainda assim, o…
Read More
Samsung Galaxy Z Fold5: what we know so far thumbnail

Samsung Galaxy Z Fold5: what we know so far

The Samsung Galaxy Z Fold5 is coming in late July according to latest reports and there's already a good amount of information about it, so we decided to organize it here. Some things about the Galaxy Z Fold5 are a given at this point. It's going to be a book-style foldable with two 120Hz-capable displays
Read More
Amazon is taking a measured yet confident approach to Matter thumbnail

Amazon is taking a measured yet confident approach to Matter

Home News Smart Home (Image credit: Amazon) How many times in history can you remember a room full of competitive tech companies all in the same room with one shared goal – not to compete, but to work together for something better? Imagine now that among these companies are megalithic lumbering giants among men, and
Read More
Index Of News
Total
0
Share