ASP Cyberattack Exposes 143,000 Aid Recipients' Data
Between July and October 2023, the Île-de-France Region provided €250 in aid to 160,000 low-income households, funded by a €45 million European grant. The ASP processed payment notifications for this assistance. This "Energy Boost" aid was exclusively for households with annual incomes below €14,802 for a single person. Each stolen notification contained the recipient's full name, postal address, beneficiary number, complete banking details, and the amount disbursed.
Following a breach at the sports retailer Basic-Fit, where a message stated that "with an IBAN alone, you can't do anything," it was clarified that adding a name and address allows a fraudster to create a SEPA direct debit mandate in the victim's name and withdraw funds from their account. Scammers may also impersonate ASP agents via phone, mention the exact aid amount, and request bank validation codes. Recipients should disregard any calls, texts, or emails concerning the "Energy Boost" or their banking information. They can also dispute any unauthorized direct debits with their bank within thirteen months.
In 2025, the CNIL received 6,167 data breach notifications, a 9.5% increase from 2024. Half of these were due to hacking. "Breaches are becoming increasingly massive," warned the institution's president in her annual report. The ASP experienced a prior leak in April when an intruder accessed and stole social security numbers and IBANs of vocational training interns from an agency account. The number of affected individuals was not publicly disclosed.
Fresh materials — Tech News

Anthropic Integrates Claude Design, Launches Claude Docs and Slides
Claude Design, introduced earlier this year for creating visual prototypes and mockups, now operates directly within any conversation. Users no longer need to switch to a separate application. Any creation—be it a document, presentation, or mockup—automatically receives a unique web a

AI Out of Control: A True Catastrophe Scenario
The threat has two fronts: critical infrastructure like power grids, financial markets, and defense systems will be vulnerable to massive cyberattacks. Additionally, AI might eventually act without requiring human approval.

AI-Powered Banking Fraud: Docaposte and Deloitte's "Trust Firewall" Fights Back
Identifying account holders isn't enough to prevent fraud, according to Julien Maldonato, a partner at Deloitte France. Knowing who owns an account doesn't reveal how a specific transaction occurred. For instance, a verified account owner might not be the one who initiated a transfer; their iden

Douane et DGCCRF signent un nouveau pacte pour protéger les achats en ligne
The French Customs and the DGCCRF (General Directorate for Competition, Consumer Affairs and Fraud Prevention) have signed a new protocol to bolster online shopping security. This agreement updates a nearly decade-old pact. Agents from bo

Valve Develops Standalone Half-Life: Alyx for Steam Frame
Valve is reportedly developing a version of Half-Life: Alyx that runs directly on the headset, eliminating the need for a PC. This advancement could position Half-Life: Alyx as a showcase for the Steam Frame's capabilities, thanks to the headset's unique architecture.

Tesla wants to replace loaner cars with its robotaxis
Tesla's infrastructure is technically ready to use its robotaxis as replacements for loaner vehicles. The company knows a car's location during repair, the estimated fix time, and the customer's address. A robotaxi could pick up a customer after they drop off their car. It could then tran