Date: 11/13/2025
Dear students,
Dear IHU employees, Dear partners,
We wish to inform you that a personal data breach was identified in November 2025 within our IT system. This involved the hacking of a Microsoft account belonging to one of our staff members.
This breach could affect personal data stored in our systems: diplomas, resumes, training records, photographs, etc. belonging to students, IHU employees, fellows, and experts. This breach has resulted in a loss of confidentiality for the personal data concerned.
As soon as this incident was detected, technical and organizational measures were immediately put in place to secure our systems and limit the risks. The password for the Microsoft 365 account affected by the hack was immediately changed and all access was revoked. A check of other internal accounts is being carried out. Two-factor authentication will be rapidly reinforced by our institution to strengthen the security of personal accounts.
The French Data Protection Authority (CNIL) has been informed of the breach. A complaint has also been filed with the public prosecutor.
Due to the nature and volume of the information concerned, it is not possible for us to identify and contact all the individuals concerned individually. The method adopted is to notify some of the individuals concerned who are at high risk individually and to publish information on the website.
We urge you to be extremely vigilant about the risk of fraudulent emails, text messages, or phone calls.
If you suspect anything unusual, please contact the official digital victim assistance service at: www.cybermalveillance.gouv.fr to report it and assert your rights.
If you have any questions or requests for information, please contact us by email at: dpo@ihu-strasbourg.eu or by post, indicating your email address:
Institut de Chirurgie guidée par l’Image (IHU Strasbourg) – DPO
1 place de l’Hôpital – 67091 Strasbourg Cedex, France.
We deeply regret this incident and assure you that we take the protection of your data very seriously. We are committed to implementing all necessary measures to prevent any similar incidents in the future.
We thank you for your understanding and trust.
Sincerely,
Christian DEBRY
Chief Executive Officer



































