French government messaging platform breached through account hijacking

2026-06-09T14:51:48Z61d44d80dae00c04ce23ef57503a7870f005c613a030ca296ecbab6f006dcd22
CISACVE-2026-11645CVE-2026-42271ChromeLiteLLMMythosN-dayaccount-hijackingapplectemelasticfiligrangovernment-breachincident-responsekubernetesmatrixot-securitypasswordspatchingrockwelltchapzero-day

What happened

Multiple security developments: French government Matrix-based messaging platform Tchap was breached after an account hijack allowing access to public chat rooms; CISA added a command‑injection flaw in BerryAI’s LiteLLM (CVE-2026-42271) to its Known Exploited Vulnerabilities catalog as active exploitation continues; Google patched a high-severity Chrome zero-day (CVE-2026-11645) exploited in the wild; Anthropic’s Mythos Preview can rapidly weaponize N‑day vulnerabilities, increasing risk from disclosed but unpatched flaws. Other notable updates include Elastic’s AI-driven Kubernetes/observabil

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
61d44d80dae00c04ce23ef57503a7870f005c613a030ca296ecbab6f006dcd22
Enrichment time
2026-06-09T14:51:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.