The Créteil academy has confirmed that it was a victim of a cyberattack at the end of July, which led to the unauthorized extraction of personal data related to students, their legal representatives, and staff. The breach was officially announced on September 21, and it involves data from student records and staff directories covering the academic years 2025–2026 and 2026–2027. The affected data includes names, birth dates, national student identifiers (INE), email addresses, phone numbers, postal addresses, qualitative evaluations, and grades. The academy described the incident as a "serious breach of personal data confidentiality" and warned that the stolen information could be used for phishing attacks or identity theft. It emphasized that the National Education services never request login credentials, passwords, or banking details through email, phone, or messaging, and urged affected individuals to avoid responding to suspicious messages or clicking on links. A dedicated email address, ce.dpd@ac-creteil.fr, has been provided for any inquiries related to the breach. The French data protection authority, CNIL, has been informed, and a judicial investigation is currently underway. This breach is part of a broader incident that affects multiple institutions beyond the Créteil area. The French Ministry of Education confirmed the intrusion on July 31, and a hacker using the pseudonym ZeroBytes claimed responsibility on August 17. The same hacker had previously targeted the French tax administration (DGFiP). According to the hacker's claims, which were reported by specialized cybersecurity websites, the breach involves data from several French academies, including systems used for primary education (BE1D), secondary education (SCONET), a federated directory (SCHAFA), and staff management (I-Prof). Some of the stolen data is said to cover 33 academies, with a total of nearly 43 gigabytes of data across 2,500 files, or approximately 346 million lines of raw data. The hacker also claimed that the data includes cryptographic password fingerprints from directories in Créteil and Versailles, which, if confirmed, could pose a major security risk for the affected accounts. The French Ministry of Education has confirmed that it has individually informed potentially affected staff members, while continuing to investigate the full scope of the student data that was accessed. The breach has raised concerns about the security of personal data in the education sector and the potential for wider exploitation of the stolen information. The ministry is working to understand the extent of the data exfiltration and to take appropriate measures to protect affected individuals. The incident underscores the growing threat of cyberattacks targeting public institutions and highlights the need for stronger data protection measures. The hacker, ZeroBytes, has not provided details about the methods used to carry out the breach or the motivations behind the attack. However, the scale of the data leak suggests a sophisticated cyberattack that may have exploited vulnerabilities in the education sector's digital infrastructure. As the investigation continues, authorities are urging individuals to remain vigilant and to report any suspicious activity. The situation remains under close scrutiny, with the potential for further developments as the judicial and cybersecurity teams work to uncover the full implications of the breach.