French govt messaging service breached in account hijacking attack

2026-06-09T13:23:30Z2544e505b5787d21823af2a23cb92518e4c25c69ebcdc60724b23cdf8ee42f9b
Android malwareCISACareerConnectCheck PointChromeFrench governmentGitHubGogs RCE zero-dayGoogle ChromeNFCShareOxford UniversityPyPIQilinShai-HuludSoFi Hong KongTchapVPNaccount hijackingdata breachin-the-wild exploitransomwaresupply chainthird-party vendortrojanzero-day

What happened

Multiple high-impact security incidents and patches reported: French government encrypted messaging platform Tchap was breached after an account hijack; CISA ordered federal agencies to patch a critical Check Point Remote Access/Mobile Access VPN zero-day actively exploited by Qilin ransomware affiliates; Google issued an emergency Chrome update for another in-the-wild zero-day. Additional notable events include NFCShare Android malware distributed via fake banking app updates on GitHub, a Shai-Hulud supply-chain campaign trojanizing 19 PyPI science packages, large-scale account takeovers (20k

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
2544e505b5787d21823af2a23cb92518e4c25c69ebcdc60724b23cdf8ee42f9b
Enrichment time
2026-06-09T13:23:30Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.