Schneider Obtains ANSSI Certification, Global Breaches Strike Firewalls, and Five Eyes Warn of AI Cyber Risks

OT CYBERSECURITY : SCHNEIDER ELECTRIC CERTIFIED

Schneider Electric has just announced that it has obtained a “first-level security certification” (CSPN), issued by the French National Cybersecurity Agency (ANSSI), for several components of its Modicon M580 industrial automation range. These include the M580 ePAC CPUs, which execute commands to control industrial processes, and the BMENOC302 communication module, which handles data exchange with other systems in the plant.

This certification is based on an evaluation conducted by an accredited laboratory, combining document analysis, architecture study, and targeted vulnerability testing.

FRANCE : INRIA AND WALLIX HAND IN HAND

Wallix, the IAM leading expert, and the National Institute for Research in Digital Science and Technology are joining forces to develop AI technologies dedicated to cybersecurity. Their work will focus on behavioral identity analysis, data governance, securing non-human identities, and automated compliance, all within the context of digital sovereignty issues.

THOUSANDS OF FORTINET FIREWALLS COMPROMISED

According to researchers, thousands of FORTINET firewalls have been hacked across the world. The report quotes a credentials leak, having probably cumulatively progressed for years.

ANOTHER DATA LEAK ON A FRENCH PUBLIC SERVICE

JeVeuxAider, IWantToHelp, a French public platform launched during the COVID crisis, which gathers some 800 000 volunteers, 20 000 associations for a total of 5 M hours in 2025, had the same fate as so many public other services : some 500 000 accounts have been visited, apparently with a small impact as it is reported that no personal data have been exfiltrated.

AND ALSO ON A HEALTHCARE SERVICE

The MesVaccins.net platform, which enables individuals and healthcare professionals to manage an online vaccination record, has suffered a data breach. Its operator, Syadem, reports that an unauthorized third party obtained a copy of certain information, including vaccination data, contact details, and personal identification data.

Public services, as well as healthcare related platforms, are key targets for hackers, as they search fo identities and other personal data.

SIX CYBERSECURITY NATIONAL AGENCIES CO-SIGN A WARNING IN THE IMPACT OF AI

USA, UK, Canada, Australia and New-Zealand: their cybersecurity Agencies warn of AI dramatically decreasing time between when a vulnerability is discovered and when it’s exploited. They insist on controlling who or what (AI agents , for instance) is authorized to do what. Such a joint action takes place scarcely, a hint of the anxiety pressure.

The ECA is working with European vendors and AI systems designers to assess such issues and set up an European response. We will shortly report on this initiative. 

Share:

More Posts