Cybercrime

Cyberattack Disrupts France’s Postal Service and Banking During Christmas Rush

A cyberattack knocked France’s national postal service offline, blocking and delaying package deliveries and online payments.

France La Poste cyberattack

With just three days to go before Christmas, a cyberattack knocked France’s national postal service offline Monday, blocking and delaying package deliveries and online payments.

The timing was miserable for millions of people at the height of the Christmas season, as frazzled postal workers fended off frustrated customers.

No one immediately claimed responsibility, but suspicions abounded.

At a post office in southern Paris, usually bustling this time of year, workers questioned whether the attack could be linked to Russia. Or a disgruntled customer, or colleague.

Officials didn’t comment on the culprit. Paris prosecutors were examining the case.

What the postal service La Poste called a ‘’major network incident’’ remained unresolved by Monday evening, more than eight hours after it was first reported. For a company that delivered 2.6 billion packages last year and employs more than 200,000 people, that’s a big hit.

Advertisement. Scroll to continue reading.

La Poste said in a statement that a distributed denial of service incident, or DDoS, “rendered its online services inaccessible.” It said the incident had no impact on customer data, but disrupted package delivery.

Letters, including holiday greeting cards, could still be mailed and delivered. But transactions requiring tracking or access to the postal service internal computer systems were impossible.

The cyberattack also hurt online banking. Customers of the company’s banking arm, La Banque Postale, were blocked from using the application to approve payments or conduct other banking services. The bank redirected approvals to text messages instead.

“Our teams are mobilized to resolve the situation quickly,” the bank said in messages posted on social networks.

The disruption came a week after France’s government was targeted by a cyberattack that targeted the Interior Ministry, in charge of national security.

In that incident, a suspected hacker extracted a few dozen sensitive files and obtained access to data relating to police records and wanted persons, Interior Minister Laurent Nunez said on broadcaster France-Info. He blamed “imprudence” at the ministry for the incident. French media reported that a 22-year-old was detained.

Also last week, prosecutors said that France’s counterespionage agency is investigating a suspected cyberattack plot involving software that would have allowed remote users to control computer systems of an international passenger ferry. A Latvian crew member is in custody facing charges of having acted for an unidentified foreign power, officials said.

France and other European allies of Ukraine allege that Russia is waging “hybrid warfare” against them, using sabotage, assassinations, cyberattacks, disinformation and other hostile acts that are often hard to quickly trace back to Moscow.

Related: France Says Administrator of Cybercrime Forum XSS Arrested in Ukraine

Related: Data Stolen in Eurofiber France Hack

Related: France’s Antitrust Watchdog Fines Apple for Problems With App Tracking Transparency

Related Content

ICS/OT

The hackers changed equipment settings, disabled remote access and alarms, and altered pumping cycles, officials said. 

Cybercrime

Active since at least 2022, NightmareStresser was one of the longest-running DDoS-for-hire services in the world.

ICS/OT

The Coast Guard confirmed evidence of malicious cyber activity on the VL Prosperity, but has not attributed the attack to Iran.

Incident Response

The company has called in CrowdStrike and others to investigate the attack that caused global network disruption.

Cybercrime

The cybersecurity incident has disrupted Boston Scientific’s ability to process and ship customer orders.

Nation-State

The operation focused on a group named QTFY, which offers hacking services to the Chinese government and others.

ICS/OT

The attack caused real-world operational disruption and raised concerns about the resilience of Britain’s distributed energy infrastructure and the potential for repeatable attacks.

Data Breaches

Hackers used compromised credentials to access enterprise and personal tax-related data.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version