Scammers Taking Advantage of Victims' Distress

The CNIL has issued a solemn warning to individuals who are victims of personal data breaches. According to the protection authority, malicious individuals are sending emails offering so-called help to remove their compromised information from online platforms, particularly dark web marketplaces where this data is circulated.

These messages are particularly deceptive because they come from organizations with reassuring names: "Data Protection Defense League," "Data Protection League," or "Data Protection Association." None of these organizations have any connection to the CNIL.

Real Data for Better Manipulation

What makes this scam particularly insidious is that the scammers use real personal data from stolen files. Recipients can thus find their true identity, postal address, or even their IBAN number in these emails. The fraudsters even go so far as to mention the official CNIL phone number to strengthen their credibility.

The fact that the scammers have real data is proof that they themselves have access to the databases resulting from the breach. They exploit the leak in two ways: first by stealing the data, and then by targeting the victims for an additional scam.

CNIL Recommendations

In the face of this type of approach, the authority reminds several simple rules:

  1. Do not respond to the sender and do not click on any links contained in the email.
  2. Do not provide any additional personal information, nor any proof of identity.
  3. Consult official resources:
    • CNIL's advice on how to protect yourself online
    • cybermalveillance.gouv.fr — the government platform for assisting victims of cyberattacks
    • service-public.gouv.fr to know your rights in case of a breach

A Context of Massive Breaches

This warning comes in a context where personal data breaches have reached record levels. In 2024, the CNIL recorded a high number of breach notifications, with significant sanctions imposed on operators such as Free Mobile (€42 million) or France Travail (€5 million) for failures in data protection.

Each massive breach creates a reservoir of data exploitable by cybercriminals, who can then orchestrate targeted phishing campaigns, identity theft, or, as is the case here, "accompaniment" scams exploiting victims' fear.

Stay Vigilant Against False GDPR Offers

The CNIL also reminds of the existence of many scams exploiting the GDPR: fake audits, false compliance, fake fines. The golden rule remains the same: the CNIL never solicits payment or personal data via unsolicited emails. In case of doubt, it is advisable to go directly to the official website cnil.fr rather than clicking on a link received by message.


Sources: CNIL — Victims of data breaches: stay vigilant against accompaniment offers | cybermalveillance.gouv.fr