Who is Le Figaro?

Le Figaro is the oldest daily newspaper in France, founded in Paris in 1826.

The online version of Le Figaro is one of the top 50 most visited websites in France.

What Was Been Leaked?

Since his death, his company, The Dassault Group, continues to own Le Figaro.

What Was Been Leaked?

For example, as our investigation started in late April 2020, records went back as far as February.

French Subscribers to Famous News Site at Risk

In the case of new users, the records included their login credentials and PII data.

For pre-existing users, their login credentials remained hidden, but their PII data was also exposed.

Anyone with the knowledge of the databases IP address could have gained access.

How We Confirmed Le Figaro was Leaking the Data

However, most of Le Figaros servers online use more popular and security-oriented hosting services, such as Akamai.

This process took a few days.

Several indications within the leaked database suggested a strong connection to Le Figaro, such as:

1.

Many indices names contained the text le Figaro in them in some way (e.g., logstash-app-

articles.lefigaro.fr).

Communication between servers where all hosts seem to be from subdomains of lefigaro.fr.

The leaked servers hostname included poneytelecom.eu, and was hosted by Dedibox.

To confirm our suspicions, we created a test user account on Le Figaro to see what would happen.

When the user account appeared on the exposed database, we had confirmed Le Figaro as the owner.

Many of these records included a users password.

Such emails could encourage victims to provide private, financial data to cybercriminals.

About Us

SafetyDetectives.com

is the worlds largest antivirus review website.

Published on: Apr 30, 2020