DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

ShinyHunters and team members arrested in France (2)

Posted on June 25, 2025June 25, 2025 by Dissent

The following are machine-translated bits and pieces from a fuller news story by Jean-Michel Décugis and Damien Licata Caruso:

The FBI’s arrest of Conor Brian Fitzpatrick, aka “Pompompurin,” in March 2023 dealt a first blow to “Breached.” This American citizen was suspected of being the main manager of the platform, which had temporarily ceased operations. A new management team of five discreet Frenchmen took over, hidden behind screens and pseudonyms.

According to a source close to the investigation, the first hacker, “Intelbroker,” was arrested last February. The other administrators, fearing exposure, suspended the website, which was created in March 2022 to conceal databases siphoned off from companies, last April.

But the BL2C investigation continued, and specialist police officers made arrests earlier this week in Hauts-de-Seine, Seine-Maritime, and Réunion. “ShinyHunters,” “Hollow,” “Noct,” and “Depressed” are accused of harming numerous victims of high-profile data leaks, including Boulanger, SFR, France Travail , and the French Football Federation.

Read more at LeParisien.

Update 1: As expected, more details are emerging in other news outlets. One important detail is that ShinyHunters is suspected of being responsible for the attacks on LVMH, which is the high-end brand associated with Tiffany and Dior, who both reported breaches this year. Although there had been some speculation that Scattered Spider might be responsible for those breaches, it appears that they have been attributed now to ShinyHunters. They are also suspected of being responsible for attacks on the Ministry of National Education, SFR, the French Football Federation (FFF), Boulanger, Accor, France Travail, and Capgemini.

Update 2:  Press statement by the Paris Prosecutor’s Office in French and in English.

Related posts:

  • Exclusive: Has France thrown a French national to U.S. prosecutorial wolves? Pourquoi?
  • 34 Deputies call on France’s Minister of Justice to Request Extradition of Sebastien Raoult to France
  • Morocco court in favor of extraditing a French national alleged to be ShinyHunters member to US
  • Members of GnosticPlayers arrested and charged as members of ShinyHunters? (with Update1)
Category: HackOf Note

Post navigation

← Texas Enacts Liability Shield From Punitive Damages for Certain Small Businesses That Adopt Cybersecurity Programs
Patient death at London hospital linked to cyber attack on NHS →

3 thoughts on “ShinyHunters and team members arrested in France (2)”

  1. 6bd0c32 says:
    June 25, 2025 at 8:11 am

    What happened to IntelBroker? Wasn’t he arrested?

    1. Dissent says:
      June 25, 2025 at 8:39 am

      Reporting in multiple news reports states he was arrested in February, but they don’t say where he was arrested or whether he is a French national or not, and they don’t say what police force supposedly arrested him, so we’re missing a lot of confirming details as yet.

      1. Dissent says:
        June 25, 2025 at 4:19 pm

        Updating my own reply: He was arrested in France in February 2025 and detained pre-trial. See the prosecutor’s press release for more info on him and his arrest.

Comments are closed.

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Mississippi Law Firm Sues Cyber Insurer Over Coverage for Scam
  • Ukrainian Hackers Wipe 47TB of Data from Top Russian Military Drone Supplier
  • Computer Whiz Gets Suspended Sentence over 2019 Revenue Agency Data Breach
  • Ministry of Defence data breach timeline
  • Hackers Can Remotely Trigger the Brakes on American Trains and the Problem Has Been Ignored for Years
  • Ransomware in Italy, strike at the Diskstation gang: hacker group leader arrested in Milan
  • A year after cyber attack, Columbus could invest $23M in cybersecurity upgrades
  • Gravity Forms Breach Hits 1M WordPress Sites
  • Stormous claims to have protected health info on 600,000 patients of North Country Healthcare. The patient data appears fake. (2)
  • Back from the Brink: District Court Clears Air Regarding Individualized Damages Assessment in Data Breach Cases

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • The EU’s Plan To Ban Private Messaging Could Have a Global Impact (Plus: What To Do About It)
  • A Balancing Act: Privacy Issues And Responding to A Federal Subpoena Investigating Transgender Care
  • Here’s What a Reproductive Police State Looks Like
  • Meta investors, Zuckerberg to square off at $8 billion trial over alleged privacy violations
  • Australian law is now clearer about clinicians’ discretion to tell our patients’ relatives about their genetic risk
  • The ICO’s AI and biometrics strategy
  • Trump Border Czar Boasts ICE Can ‘Briefly Detain’ People Based On ‘Physical Appearance’

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.