[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3m30tupn7krsk":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":9,"domain":10,"breachDate":11,"addedDate":12,"publishedAt":13,"modifiedDate":12,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":19,"affectedCount":19,"affectedCountStatus":20,"affectedCountLowerBound":13,"affectedCountUnit":21,"hasEnglishDescription":4,"contentLocale":22,"availableLocales":23,"translations":25,"severity":28,"dataClasses":29,"description":34,"seoTitle":35,"seoDescription":36,"logoUrl":37,"isVerified":4,"isSensitive":38,"isSpamList":38,"isMalware":38,"company":39},"6aad1cb91c03e88f6fa1a6ca","Chronopost 2025","Chronopost Data Breach","chronopost-2025","chronopost.fr","2025-03-11T00:00:00.000Z","2026-09-18T11:12:56.807Z",null,"Chronopost parcel pickup database leak & threat intelligence","https:\u002F\u002Fwww.01net.com\u002Factualites\u002Fnouvelle-fuite-chez-chronopost-pirate-affirme-avoir-vole-donnees-860-000-francais.html",[15,17,18],"https:\u002F\u002Fsynscan.net\u002F","https:\u002F\u002Fransomlook.io\u002F",596001,"known","unknown","en",[22,24],"tr",{"en":26,"tr":27},{"slug":9},{"slug":9},"High",[30,31,32,33],"Email addresses","Names","Delivery details","Physical addresses","\u003Cp>\u003Cstrong>The March 2025 Chronopost data breach\u003C\u002Fstrong> occurred when unauthorized threat actors breached the shipping, parcel, and pickup locker systems of \u003Cstrong>Chronopost\u003C\u002Fstrong> (\u003Ccode>chronopost.fr\u003C\u002Fcode>), the premier express parcel delivery operator of France's La Poste group. The compromised records were subsequently published on BreachForums by the threat actor identified as \u003Cem>@Origo\u003C\u002Fem>.\u003C\u002Fp>\u003Ch2>What information was affected in the Chronopost incident?\u003C\u002Fh2>\u003Cp>The leaked shipping database (\u003Ccode>parcel_data.json\u003C\u002Fcode>) contains comprehensive package dispatch, drop-off, and pickup telemetry. The exposure compromised records associated with \u003Cstrong>596,001 unique verified email addresses\u003C\u002Fstrong>, impacting the following data categories:\u003C\u002Fp>\u003Cul>\u003Cli>\u003Cstrong>Contact Details:\u003C\u002Fstrong> Verified sender and recipient email addresses (drop-off and pickup contacts).\u003C\u002Fli>\u003Cli>\u003Cstrong>Personal Identifiers:\u003C\u002Fstrong> Customer full names.\u003C\u002Fli>\u003Cli>\u003Cstrong>Shipment &amp; Logistics Metadata:\u003C\u002Fstrong> Parcel tracking numbers, reference codes, barcodes, package dimensions, and shipment status flags.\u003C\u002Fli>\u003Cli>\u003Cstrong>Location &amp; Locker Data:\u003C\u002Fstrong> Designated automated pickup locker locations (Intermarché lockers, relays), timestamps, and locker state codes.\u003C\u002Fli>\u003C\u002Ful>\u003Ch2>How many accounts were affected?\u003C\u002Fh2>\u003Cp>Strict RFC canonical validation and deduplication confirmed \u003Cstrong>596,001 unique valid email addresses\u003C\u002Fstrong> across more than 861,000 shipment transaction records.\u003C\u002Fp>\u003Ch2>Technical analysis and security risks\u003C\u002Fh2>\u003Cp>The breached dataset exposes real, operational parcel transaction logs. The combination of recipient names, verified email addresses, locker locations, and tracking numbers arms cybercriminals with ideal pretexts for highly convincing parcel delivery phishing (smishing\u002Fphishing) scams, coercing victims into paying fictitious customs clearance or redelivery fees.\u003C\u002Fp>\u003Ch2>Recommended actions for affected users\u003C\u002Fh2>\u003Cp>Users who sent or received shipments via Chronopost should:\u003C\u002Fp>\u003Cul>\u003Cli>Remain vigilant against unsolicited emails or SMS messages alleging failed delivery, address corrections, or unpaid fees regarding parcels.\u003C\u002Fli>\u003Cli>Directly verify tracking numbers through the official Chronopost website or mobile application rather than clicking links inside messages.\u003C\u002Fli>\u003Cli>Ensure multi-factor authentication (MFA) is enabled on all primary email accounts to mitigate unauthorized account takeover attempts.\u003C\u002Fli>\u003C\u002Ful>","Chronopost Data Breach (596 Thousand Reported Records)","Chronopost Data Breach. 596 Thousand reported records are reported. Reported data: Email addresses, Names, Delivery details. Review the scope, risks, and…","\u002Fuploads\u002Flogo\u002Fchronopost.webp",false,{"name":8,"sector":40,"country":41,"website":41,"websiteArchiveUrl":41,"websiteStatus":41,"websiteCheckedAt":13},"Unknown",""]