# French privacy regulator fines hospital €500,000 over 2025 breach

_Thursday, September 3, 2026 at 6:01 PM EDT · Security, Policy · Latest · Tier 2 — Notable_

![French privacy regulator fines hospital €500,000 over 2025 breach — Primary](https://www.bleepstatic.com/content/hl-images/2022/01/06/flag-of-france.jpg)

France's data-protection authority fined Hôpital privé de la Loire €500,000 after a 2025 breach exposed data belonging to 524,867 patients and 202,246 trusted third parties, according to the report. CNIL identified inadequate access controls, lack of VPN or multi-factor authentication for some external users, and insufficient monitoring. The hospital also did not directly notify the affected trusted third parties, the report said.

## Sources

- [BleepingComputer](https://www.bleepingcomputer.com/news/security/french-hospital-fined-500-000-after-breach-exposes-data-of-727-000/)

---
Canonical: https://techandbusiness.org/newswire/x9onyf1TnFnBHnMcoUS4QD
Retrieved: 2026-09-04T05:53:04.484Z
Publisher: Tech & Business (techandbusiness.org)
