Egidio
Case file · August 21, 2026

Biosynex: cyberattack confirmed, scope still under investigation

French medical diagnostics group Biosynex confirmed a cyberattack between July 31 and August 2, 2026. Professional data appears affected, but the exact scope is still under investigation.

⚠️ Confirmed by Biosynex, scope still under investigation. The company acknowledged the intrusion and notified the authorities. What remains unclear is the exact extent of personal data affected — the investigation is still ongoing at the time of writing.

The numbers

Jul 31–Aug 2
Period of the external intrusion confirmed by Biosynex.
Biosynex statement, Boursorama, August 6, 2026.
?
Exact extent of personal data affected: not publicly determined, thorough investigation ongoing.
Biosynex statement.
0
Operational disruption, according to the company — business and production applications not altered.
TipRanks, EasyBourse, August 6, 2026.
2
Steps taken by the group: notifying the CNIL and filing a complaint with judicial authorities.
Biosynex statement.

Timeline

CONFIRMED
July 31 – August 2, 2026
Biosynex confirms an external intrusion affecting part of its IT environments.
CONFIRMED
August 6, 2026
The group publicly announces the incident. Based on initial checks, the personal data affected would be limited to professional information — contact details and activity-related documents. The group notified the CNIL and filed a complaint.
ONGOING
Since
A thorough investigation continues to precisely determine the extent of the compromise. No final figure has been publicly communicated at this stage.

🔬Confirmed fast, measured slowly

This case illustrates a recurring pattern on this site: a company quickly confirms the incident and the regulatory steps (CNIL, complaint), but precisely measuring what leaked takes longer. Fast communication should not be mistaken for a complete diagnosis — the same caution applies as with SFR.

What it changes for you

If you're a business client, partner or employee of Biosynex, your professional contact details could be among the affected data, based on information available so far. Stay alert to any unusual solicitation claiming to come from the group. See From Leak to Scam.

🔒 Without confirmation of the exact scope, caution remains warranted: verify the origin of any unusual professional message before responding.

Frequently asked questions

Is the Biosynex cyberattack confirmed?

Yes, by the company itself: external intrusion between July 31 and August 2, 2026.

What data is affected?

Professional information based on initial checks; the exact scope is still being determined by the ongoing investigation.

Was the company's operations disrupted?

No, according to Biosynex: neither operations nor business and production applications were altered.

📌 Last checked: August 21, 2026. Verifiable information to report: contact@egidio.app.

Related reading

Cite this page Egidio — The Threat Laboratory, "Biosynex: cyberattack confirmed, scope still under investigation," egidio.app/en/laboratoire/biosynex-diagnostics-breach/. Licensed CC BY 4.0.

Free to reuse, including commercially, with attribution. Reuse terms.