> ## Content Index
> Fetch the complete content index at: https://darkwebinformer.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Nearly 27,000 Records Allegedly Leaked From French Job Platform Local'Emploi
- URL: https://darkwebinformer.com/nearly-27-000-records-allegedly-leaked-from-french-job-platform-localemploi/
- Published: 2026-06-15T17:23:02.000Z
- Updated: 2026-06-15T17:23:02.000Z
- Author: Dark Web Informer
- Tags: Leaks

Breach Report ![France flag](https://flagcdn.com/w40/fr.png)France Employment 

## Nearly 27,000 Records Allegedly Leaked From French Job Platform Local'Emploi

A threat actor using the alias **0xSec** has posted what they describe as the full **database of Local'Emploi** (localemploi.fr), a French public employment platform that aggregates local job offers, internships, permanent contracts, and training in the **Paris-Saclay area**. The leak is presented as **4 CSV files totalling roughly 26,900 records**: users.csv (11,272 rows), users\_with\_resume.csv (12,032 rows), offers.csv (3,487 rows), and companies.csv (143 rows). Claimed fields include candidate names, emails, phone numbers, dates of birth, postal codes and cities, account/verification flags, job offers, company contacts with SIRET numbers, and résumé references. Unlike a public scrape, the actor frames this as a **database leak**. The dataset's scope is **unverified**.

Severity MEDIUM 

Data\~26.9K records

PriceFree leak

Country![France flag](https://flagcdn.com/w40/fr.png)France

Actor0xSec

### ▣Post details

TargetLocal'Emploi (localemploi.fr), job platform

Country![France flag](https://flagcdn.com/w40/fr.png)France

SectorEmployment / Recruitment

ClaimDatabase leaked (4 CSV files)

Data\~26.9K records across 4 files

ObservedJun 15, 2026

PriceFree leak (reply-gated)

Actor0xSec

### !Allegedly included

- \~26,900 records (claimed)
- 11,272 user records
- 12,032 users with résumé refs
- 3,487 job offers
- 143 company records
- Names, emails & phone numbers
- Dates of birth, postal codes, cities
- SIRET, company contacts, CV titles

### ◱Screenshots

[ ![Local'Emploi France alleged leak Screenshot 1](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/size/w1304/format/webp/2026/06/9235782398756897235689726359876234.png) Screenshot 1 Redacted preview ](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/size/w1304/format/webp/2026/06/9235782398756897235689726359876234.png) [ ![Local'Emploi France alleged leak Screenshot 2](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/size/w1304/format/webp/2026/06/9235782398756897235689726359876235.png) Screenshot 2 Redacted preview ](https://storage.ghost.io/c/6b/16/6b16ac9c-cd67-432f-b0f3-bbec941084ff/content/images/size/w1304/format/webp/2026/06/9235782398756897235689726359876235.png) 

### ⚠Potential impact

Because the actor presents this as a **database leak** rather than a public scrape, the per-record sensitivity is higher than a simple business directory. The user files reportedly contain job-seeker PII — full names, personal email addresses, phone numbers, **dates of birth**, postal codes and cities — alongside account and verification flags and references to uploaded **CVs / résumés**. The company file additionally lists contact names, emails, and **SIRET** business-registration numbers. This combination can support targeted phishing, recruitment and job-offer scams aimed at candidates, identity-related fraud, and bulk spam. No passwords, credentials, or financial/payment data appear in the listed fields. The scope and authenticity are unconfirmed.

### iStatus

Unverified 

Sample rows and the download were posted to an underground forum behind a reply-gate (“hidden content”); the sample records and download links are not reproduced here. The actor describes the data as a leaked database of the platform. The claim has **not been independently confirmed** and Local'Emploi has not publicly addressed it.

Want the non-redacted screenshots? **Paid subscribers** get all of the claim details and unredacted screenshots. Check out the [threat feed](https://darkwebinformer.com/threat-feed/) or [ransomware feed](https://darkwebinformer.com/ransomware-feed/) (whichever applies to this post), then after subscribing, search there for this alert to view the unredacted version. [View pricing →](https://darkwebinformer.com/pricing) 

[DARK WEB INFORMER](https://darkwebinformer.com/) \- THREAT INTELLIGENCE