---
title: "Cyber Threats Surge, Clop Claims Victims, French Tax Breach | DMARC Report"
description: "Explore the latest cyber threats, including Clop ransomware attacks and a major French tax data breach affecting sensitive information."
image: "https://dmarcreport.com/og/blog/cyber-threats-surge-clop-claims-victims-french-tax-breach.png"
canonical: "https://dmarcreport.com/blog/cyber-threats-surge-clop-claims-victims-french-tax-breach/"
---

Quick Answer

Cyber threats are escalating as Clop targets organizations and a French tax breach exposes sensitive data. Learn what happened, the risks involved, and key cybersecurity measures to reduce exposure and strengthen defenses.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cyber%20Threats%20Surge%2C%20Clop%20Claims%20Victims%2C%20French%20Tax%20Breach&url=undefined%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F&title=Cyber%20Threats%20Surge%2C%20Clop%20Claims%20Victims%2C%20French%20Tax%20Breach "Share on Reddit") [ ](mailto:?subject=Cyber%20Threats%20Surge%2C%20Clop%20Claims%20Victims%2C%20French%20Tax%20Breach&body=Check out this article: undefined%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F "Share via Email") 

![French Tax Breach](https://media.mailhop.org/dmarcreport/create-dmarc-record-7336-1787052533275.jpg) 

## Clop, Lazarus, and Zero-Days Dominate a Brutal Week for Cyber Defenders

This past week was a heavy one for the **cybersecurity world**, from the Clop extortion gang adding oil, healthcare, and industrial giants to its victim list, to a fresh [French government data breach](https://www.wealthbriefing.com/html/article.php/french-ministry-data-breach-prompts-fresh-eu-privacy-concerns-), an actively-exploited zero-day in an open-source mapping platform, and North Korea’s Lazarus Group burning through yet another [Windows zero-day](https://www.bitdefender.com/en-au/blog/hotforsecurity/bitlocker-zero-day-poc). Add in ransomware gangs racing to weaponize freshly disclosed VPN flaws, and it’s clear attackers aren’t slowing down for anyone’s summer break.

## Clop ransomware gang claims Philips, GE, and Shell as new victims

Tech and industrial heavyweights General Electric and Philips confirmed they are investigating claims from the [Clop ransomware](https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/) gang that their systems were breached and data stolen. Philips said it identified and contained an “attempted cybersecurity compromise of a specific enterprise server,” insisting **customer environments** weren’t touched, while GE said it’s still assessing the situation. _This comes just days after oil giant Shell also confirmed it’s looking into a “potential incident” after Clop claimed to have stolen 89GB of its data._

All three companies were named among 43 new victims on Clop’s leak site, tied to attacks exploiting a critical vulnerability in Internet-exposed [PTC Windchill](https://www.csoonline.com/article/4190154/hackers-exploit-critical-ptc-windchill-plm-software-flaw.html) and [FlexPLM software](https://www.prnewswire.com/news-releases/ptc-flexplm-to-strengthen-spg-companys-licensed-product-operations-302686408.html), tools used by more than **30,000 companies** worldwide across aerospace, defense, automotive, and manufacturing. Clop claims to have stolen backups, project plans, facility photos, and engineering blueprints from the victims. [BleepingComputer](https://www.bleepingcomputer.com/news/security/philips-and-ge-investigating-clop-ransomware-data-theft-claims/)

![Ransomware Enterprise Targets](https://media.mailhop.org/dmarcreport/dmarc-report-6332-1787052595966.jpg)

## French tax authority breach exposes data on 678,000 people

France’s Ministry of the Economy and Finance disclosed that an attacker broke into systems belonging to the **General Directorate of Public Finances (DGFiP)** and extracted tax and property records belonging to [678,000 individuals and businesses](https://www.imidaily.com/europe/french-tax-authority-confirms-two-data-thefts-678000-income-records-exposed/). The incident came to light after a hacker using the handle “ZeroBytes” listed the stolen database for sale on a hacking forum on August 12, claiming to have had access to a portal covering roughly 20 million French citizens.

The exposed data includes reference tax income, family quotient details, withholding tax rates, and [cadastral records](https://legal-resources.uslegalforms.com/c/cadastral) tied to property addresses and sizes, though the ministry says login credentials for individual **online accounts** were not compromised. _This is the latest in a string of breaches to hit French government agencies this year, following incidents at the national employment agency and the national bank account registry._ [BleepingComputer](https://www.bleepingcomputer.com/news/security/french-tax-authority-data-breach-affects-678-000-individuals/)

## RingCentral confirms scale of ShinyHunters breach: 1.6 million accounts

The extortion group ShinyHunters stole personal data from [1.6 million RingCentral accounts](https://sqmagazine.co.uk/ringcentral-data-breach-1-6-million-accounts/) after breaching the cloud communications company in July through what RingCentral described as a “sophisticated social engineering campaign.” _Data breach notification service Have I Been Pwned confirmed the scope this week after analyzing a leaked archive, finding names, email addresses, phone numbers, and physical addresses exposed._

RingCentral, used by over **600,000 businesses** for calling and messaging, says the core platform wasn’t affected and that it’s contacting impacted customers directly. ShinyHunters has been on a tear in 2026, previously linked to breaches at hundreds of Salesforce customers and over 100 organizations hit through an [Oracle PeopleSoft zero-day](https://securityaffairs.com/193543/cyber-crime/oracle-peoplesoft-rce-flaw-used-as-zero-day-in-ongoing-shinyhunters-campaign.html). [BleepingComputer](https://www.bleepingcomputer.com/news/security/ringcentral-data-breach-exposed-info-of-16-million-accounts/)

![Data Breach Scale](https://media.mailhop.org/dmarcreport/dkim-selector-4457-1787052644785.jpg)

## Unpatched GeoServer zero-day under active attack within hours of disclosure

A newly disclosed, still-unpatched zero-day in the open-source mapping platform [GeoServer](https://thehackernews.com/2026/08/unpatched-geoserver-zero-day-targeted.html) is already being exploited in the wild, according to threat intelligence firm watchTowr. The [SQL injection](https://www.fortinet.com/resources/cyberglossary/sql-injection) flaw, which allows remote code execution and doesn’t yet have an assigned CVE number, was publicly disclosed on August 12 by a researcher on X. watchTowr said it observed exploitation attempts within hours, with hundreds of probes originating from a small pool of **IP addresses testing** for vulnerable systems before attempting further exploitation. _Organizations running Internet-facing GeoServer instances should treat this as an urgent, unresolved risk since no official patch is available yet._ [The Hacker News](https://thehackernews.com/search/label/Vulnerability)

## Hackers exploit patched macOS Screen Sharing flaw to mine crypto

The Netherlands’ [National Cyber Security Centre (NCSC-NL)](https://www.theblock.co/news/defi/2026-08-16-hackers-exploited-macos-screen-sharing-flaw-to-install-monero-miners-dutch-cyber-agency-says-411932) warned that attackers are actively exploiting a recently patched macOS vulnerability to deploy cryptocurrency-mining malware. The flaw, an authentication issue in the Screen Sharing component (CVSS 9.8), let attackers already on a network bypass credential checks to access the **built-in remote desktop feature**.

_Apple fixed the bug in an emergency update earlier this month across macOS Tahoe, Sequoia, and Sonoma, but the Dutch agency says exploitation is ongoing across multiple systems that haven’t yet applied the patch, a reminder that “recently patched” doesn’t mean “no longer a problem._” [The Hacker News](https://thehackernews.com/)

## VMware vCenter attackers gain a foothold in 361 organizations across 47 countries

Security firm QUIRSO GmbH reported that attackers are actively exploiting a critical [VMware vCenter](https://www.scworld.com/news/critical-vmware-vcenter-flaw-actively-exploited-in-47-countries) directory-traversal flaw (CVE-2026-59310, CVSS 9.8) to establish persistent remote access on compromised servers. Patches were released by Broadcom late last month, but compromised systems were seen contacting attacker-controlled infrastructure just five days after the flaw’s public disclosure.

The attack chain deploys a malicious cron job and an open-source [SSH tunneling](https://www.strongdm.com/blog/ssh-tunneling) tool to maintain long-term access. **QUIRSO identified 361 unique victim** IP addresses spread across **47 countries**, underscoring just how quickly attackers move once a vCenter patch goes public. [The Hacker News](https://thehackernews.com/2026/08/attackers-exploit-vmware-vcenter.html)

![Global Vulnerability Spread](https://media.mailhop.org/dmarcreport/dmarc-service-4478-1787052702025.jpg)

## Cisco ASA and FTD VPN flaw exploited to crash firewalls remotely

Cisco warned that a high-severity denial-of-service flaw (CVE-2026-20349, CVSS 8.6) in its [Secure Firewall ASA and FTD software](https://www.cybersecuritydive.com/news/cisco-firewall-vulnerabilities-vpn-crash/827688/) is being actively exploited to remotely crash devices. An unauthenticated attacker can send a single crafted HTTP request to the [Remote Access SSL VPN service](https://www.cleverence.com/articles/tech-blog/remote-access-vpn-ssl-vpn-explained/?srsltid=afmbooqt7fskvojxhjywd9wtx7dlnk-nwoygqj2y5i1ijlndew-qisyi) and force an affected device to reload, cutting off both **perimeter protection** and remote access simultaneously.

Cisco published the advisory on August 11 and confirmed it became aware of active exploitation this month. _CISA added the flaw to its Known Exploited Vulnerabilities catalog the same day, giving federal agencies until August 14 to patch. There’s no workaround, so upgrading is the only fix._ [The Hacker News](https://thehackernews.com/2026/08/cisco-asa-and-ftd-flaw-exploited-in.html)

## Feds warn Gunra ransomware is hammering critical infrastructure

The FBI, CISA, NSA, U.S. Secret Service, and **South Korea’s National Police Agency** issued a joint advisory on August 10 warning that the [Gunra ransomware operation](https://therecord.media/ransomware-south-korea-fbi-gunra), built on leaked Conti source code, is actively targeting healthcare, financial services, and government organizations worldwide. Gunra actors gain initial access by exploiting two known Fortinet FortiOS/FortiProxy authentication bypass flaws, then run a double-extortion playbook of data theft plus encryption.

_There’s a silver lining for some victims: researchers found a cryptographic weakness in Gunra’s Linux variant caused by a time-seeded random number generator, which in some cases lets defenders reconstruct decryption keys without paying_. [The Record](https://therecord.media/ransomware-south-korea-fbi-gunra)

## CISA confirms ransomware gangs abusing SharePoint RCE bug

CISA confirmed that ransomware operators have begun actively exploiting a high-severity Microsoft SharePoint remote code execution vulnerability that’s been flagged as under attack since early July. The confirmation adds urgency for any organization still running unpatched, **Internet-facing SharePoint servers**, since ransomware crews typically move fast once a flaw proves reliable enough to weaponize at scale. [BleepingComputer](https://www.bleepingcomputer.com/tag/ransomware/)

## DeadLock ransomware goes decentralized with blockchain-backed infrastructure

A ransomware operation calling itself [DeadLock is using decentralized](https://www.microsoft.com/en-us/security/blog/2026/08/10/deadlock-ransomware-breaking-down-a-rust-based-encryptor-with-decentralized-recovery-infrastructure/), blockchain-backed services to **protect its communications** with victims and shield its data-leak site from takedown efforts. Building extortion infrastructure on blockchain rails makes it significantly harder for [law enforcement](https://www.ebsco.com/research-starters/law/law-enforcement) and researchers to disrupt leak sites the way they’ve done with more traditional dark-web hosting, a worrying evolution in ransomware tradecraft. [BleepingComputer](https://www.bleepingcomputer.com/tag/ransomware/)

![Cyber Threats Surge: Clop Attacks and Global Data Breaches](https://media.mailhop.org/dmarcreport/dmarc-analyzer-6448-1787052739275.jpg)

## Hardware wallet maker Trezor and supply-chain giant Wesco hit via vendor breaches

[Hardware wallet manufacturer Trezor](https://www.coindesk.com/tech/2026/08/13/trezor-warns-14-000-users-after-fulfilment-partner-suffers-data-breach) disclosed a breach affecting nearly **14,000 customers** after its shipping and logistics provider, ShipMonk, was hacked, exposing names, addresses, emails, and phone numbers of customers across the US, UK, and several European countries. Separately, global supply chain and distribution giant Wesco confirmed it’s investigating a cybersecurity incident of its own. _Computer maker Framework also notified “all” of its customers that hackers accessed their names, emails, phone numbers, and addresses, part of a broader spike in attacks hitting shipping, logistics, and hardware supply chains this month._ [Privacy Guides](https://www.privacyguides.org/news/2026/08/14/data-breach-roundup-august-7-13-2026/)

## Black Hat and DEF CON research exposes AI agent security gaps

Research presented around Black Hat 2026 and [DEF CON 34](https://www.esecurityplanet.com/weekly-roundup/ai-security-failures-active-exploits-and-breaches-define-the-week-in-august-2026/) this month highlighted how **AI systems** and autonomous coding agents can leak data, compromise development pipelines, accelerate exploit creation, and take damaging real-world actions through vulnerable APIs when given too much autonomy. As enterprises race to deploy AI agents into production workflows, researchers are warning that the same speed and automation that make agentic AI attractive also compress the time defenders have to notice and respond when something goes wrong. [eSecurity Planet](https://www.esecurityplanet.com/weekly-roundup/ai-security-failures-active-exploits-and-breaches-define-the-week-in-august-2026/)

As cyber threats, ransomware attacks, data breaches, and zero-day exploits continue to rise, implementing [DMARC](https://dmarcreport.com/), [SPF](https://dmarcreport.com/dmarc-fundamentals/what-is-spf/), and [DKIM](https://dmarcreport.com/dmarc-fundamentals/what-is-dkim/) remains an **important step in strengthening** [email security](https://dmarcreport.com/blog/why-email-security-matters-and-how-to-get-it-right/) and helping protect organizations against [phishing and spoofing attacks](https://www.msspalert.com/brief/novel-usps-spoofing-phishing-attack-relies-on-malicious-pdfs).

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

[ Brad Slavin ](/authors/brad-slavin/) 

General Manager

Founder and General Manager of DuoCircle. Product strategy and commercial lead for DMARC Report's 2,000+ customer base.

[LinkedIn Profile →](https://www.linkedin.com/in/bradslavin) 

## Take control of your DMARC reports

Turn raw XML into actionable dashboards. Start free - no credit card required.

[Start Free Trial](https://app.dmarcreport.com/signup?plan=free) [Check Your DMARC Record](/tools/dmarc-checker/) 

Scan Your Domain Now

Instantly scan your domain for DKIM, SPF, and DMARC issues

Check My Domain 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fdmarcreport.com%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F) [ ](https://twitter.com/intent/tweet?text=Cyber%20Threats%20Surge%2C%20Clop%20Claims%20Victims%2C%20French%20Tax%20Breach&url=https%3A%2F%2Fdmarcreport.com%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fdmarcreport.com%2Fblog%2Fcyber-threats-surge-clop-claims-victims-french-tax-breach%2F) Copy 

Related Articles

- [ ![10 Reasons Why DKIM Fails](https://media.mailhop.org/dmarcreport/images/2022/04/dmarc-alignment-6379.jpg)  10 Reasons Why DKIM Fails Intermediate ](/blog/10-reasons-why-dkim-fails/)
- [ ![cybersecurity news](https://media.mailhop.org/dmarcreport/dmarc-check-9711-1784029121308.jpg)  Accenture Sourcecode Breached, JADEPUFFER AI Ransomware, GodDamn Disables Windows Intermediate ](/blog/accenture-sourcecode-breached-jadepuffer-ai-ransomware-goddamn-disables-windows/)
- [ ![AppRiver SPF Record](https://media.mailhop.org/dmarcreport/dmarc-check-7224-1785846270575.jpg)  AppRiver SPF Record: How To Set It Up (Owned By Zix) Intermediate ](/blog/appriver-spf-record-setup-guide-for-zix-email-security-platform/)
- [ ![Best DMARC Reporting Tools in 2026: Honest Comparison](https://media.mailhop.org/dmarcreport/images/2022/04/dmarc-report-4236.jpg)  Best DMARC Reporting Tools in 2026: Honest Comparison Intermediate ](/blog/best-dmarc-reporting-tools-2026/)

## Related Articles

[  Intermediate 4m  10 Reasons Why DKIM Fails  Apr 19, 2022 ](/blog/10-reasons-why-dkim-fails/)[  Intermediate  Accenture Sourcecode Breached, JADEPUFFER AI Ransomware, GodDamn Disables Windows  Jul 14, 2026 ](/blog/accenture-sourcecode-breached-jadepuffer-ai-ransomware-goddamn-disables-windows/)[  Intermediate  AppRiver SPF Record: How To Set It Up (Owned By Zix)  Aug 4, 2026 ](/blog/appriver-spf-record-setup-guide-for-zix-email-security-platform/)[  Intermediate 8m  Best DMARC Reporting Tools in 2026: Honest Comparison  Mar 25, 2026 ](/blog/best-dmarc-reporting-tools-2026/)

```json
{"@context":"https://schema.org","@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com","logo":{"@type":"ImageObject","url":"https://dmarcreport.com/images/dmarcreport-logo.png"},"description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"sameAs":["https://www.wikidata.org/wiki/Q138898167","https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.g2.com/products/dmarc-report/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc","https://www.trustradius.com/products/duocircle/reviews"],"aggregateRating":{"@type":"AggregateRating","ratingValue":"4.8","reviewCount":"471","bestRating":"5","worstRating":"1","url":"https://www.g2.com/products/dmarc-report/reviews"},"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://dmarcreport.com/support/"},"knowsAbout":["DMARC","DMARC Reporting","DMARC Aggregate Reports","DMARC Forensic Reports","Sender Policy Framework","DKIM","Email Authentication","Email Security","DNS Management","Email Deliverability"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DMARC Report","url":"https://dmarcreport.com","description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","publisher":{"@type":"Organization","name":"DMARC Report","url":"https://dmarcreport.com","logo":{"@type":"ImageObject","url":"https://dmarcreport.com/images/dmarcreport-logo.png"},"description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Threats Surge, Clop Claims Victims, French Tax Breach","description":"Explore the latest cyber threats, including Clop ransomware attacks and a major French tax data breach affecting sensitive information.","url":"https://dmarcreport.com/blog/cyber-threats-surge-clop-claims-victims-french-tax-breach/","datePublished":"2026-08-18T00:00:00.000Z","dateModified":"2026-08-18T00:00:00.000Z","dateCreated":"2026-08-18T00:00:00.000Z","author":{"@type":"Person","@id":"https://dmarcreport.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://dmarcreport.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin is the founder and General Manager of DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. He founded DuoCircle in 2014 and has led the company's growth to 2,000+ customers across its email security product family. Brad's focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DMARC Report","url":"https://dmarcreport.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com","logo":{"@type":"ImageObject","url":"https://dmarcreport.com/images/dmarcreport-logo.png"},"description":"DMARC reporting and email authentication management. Monitor aggregate and forensic DMARC reports, analyze authentication results, and enforce DMARC policies across all your domains.","parentOrganization":{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138883901","name":"DuoCircle LLC","url":"https://www.duocircle.com","sameAs":["https://www.wikidata.org/wiki/Q138883901","https://www.crunchbase.com/organization/duocircle-llc","https://www.linkedin.com/company/duocircle","https://github.com/duocircle"],"subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"sameAs":["https://www.wikidata.org/wiki/Q138898167","https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.g2.com/products/dmarc-report/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc","https://www.trustradius.com/products/duocircle/reviews"],"aggregateRating":{"@type":"AggregateRating","ratingValue":"4.8","reviewCount":"471","bestRating":"5","worstRating":"1","url":"https://www.g2.com/products/dmarc-report/reviews"},"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://dmarcreport.com/support/"},"knowsAbout":["DMARC","DMARC Reporting","DMARC Aggregate Reports","DMARC Forensic Reports","Sender Policy Framework","DKIM","Email Authentication","Email Security","DNS Management","Email Deliverability"]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://dmarcreport.com/blog/cyber-threats-surge-clop-claims-victims-french-tax-breach/"},"articleSection":"intermediate","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/dmarcreport/create-dmarc-record-7336-1787052533275.jpg","caption":"French Tax Breach"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://dmarcreport.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://dmarcreport.com/blog/"},{"@type":"ListItem","position":3,"name":"Intermediate","item":"https://dmarcreport.com/intermediate/"},{"@type":"ListItem","position":4,"name":"Cyber Threats Surge, Clop Claims Victims, French Tax Breach","item":"https://dmarcreport.com/blog/cyber-threats-surge-clop-claims-victims-french-tax-breach/"}]}
```
