Mistral denies a fresh security breach, but the code on sale looks a lot like May’s leak
- Seller claims to be offering Mistral AI’s full source code and says the company was breached again after May 2026 attack
- Mistral says an investigation found no evidence of new unauthorized access but has not stated whether the listed code is genuine
- No customer data has surfaced in analyzed samples, and nobody has shown files created after the May incident
A seller on a cybercrime forum says French giant Mistral AI has been hacked again and is offering what they call the company’s full source code for sale.
The September 16 2026 post by an account using the handle “mrwho” consists of a listing titled “Selling mistral.ai Source Code” on an English-language cybercrime forum, according to The CyberSec Guru, pricing the material in Monero only before it attempted to steer potential buyers to Session or Telegram.
Mistral AI’s own team has refuted this, stating it has “found no evidence to support this claim.”
Latest Videos FromTechRadar
Not Mistral’s first hacking-centric PR problem
Mistral’s earlier hacking incident is undisputed – in May 2026, the Mini Shai-Hulud supply chain campaign, attributed to the TeamPCP group, spread from compromised TanStack packages to hundreds of npm and PyPI projects.
Mistral’s own security advisory MAI-2026-002 says an automated worm led to compromised versions of its SDKs being published for a few hours on May 11 and 12, and that an affected developer device was involved. Microsoft Threat Intelligence found that a poisoned Mistral AI Python package fetched a second-stage credential stealer that allowed the attack to exploit users.
Mistral went further in statements to reporters than in its advisory. It told BleepingComputer that attackers had compromised a codebase management system and “contaminated some of our SDK packages for a brief period,” while insisting that hosted services, managed user data, and research and testing environments were untouched. It also told HackRead that only certain non-core repositories were accessed.
TeamPCP, meanwhile, advertised roughly 450 repositories, about 5GB in total, for $25,000, and threatened to dump them for free if no buyer appeared within a week. One can therefore contend that this could be the same dump being remarketed by a different account, and the seller’s profile is already suspect.
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
The CyberSec Guru noted that the account joined in September 2026 and had four posts and a reputation score of 30, despite displaying a top-tier “GOD User” rank. That profile could fit a scam in the making, but as the outlet pointed out, it could also fit a broker fronting for someone else or a freshly minted alias.
HackRead published 24 sample repository names from TeamPCP’s May post. FrenchBreaches, which examined the 339-file tree mrwho shared in September, lists several of the same names. At least four of these appear in both: mistral-inference-private, mistral-inference-internal, mistral-finetune-internal, and mistral-common-internal.
This makes it hard to tell whether the purported ‘hack’ is just a rehash of an existing dump from Mistral’s previous breach or a second successful hacking attempt. There is a straightforward test, however: If the September archives contain commits, files, or credentials dated after May 12, or secrets that were still valid after Mistral’s cleanup, the seller’s claim of a second breach gains real weight. If everything predates the May incident, this is a resale, which is embarrassing for Mistral but not a new security failure.
Of course, locating the archives or examining them would involve paying the ransom in crypto, as required by what could potentially be a scam in the making- a tremendous leap of faith for an account that was created earlier this month, making this essentially a lottery ticket at best for any security researcher attempting to take a closer look.

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.
Source
Seller claims to be offering Mistral AI’s full source code and says the company was breached again after May 2026 attack Mistral says an investigation found no evidence of new unauthorized access but has not stated whether the listed code is genuine No customer data has surfaced in analyzed samples,…
Recent Posts
- Creative Assembly says Alien: Isolation 2’s protagonist is a Yutani employee, which offers ‘a new perspective to the franchise’ — ‘Weyland-Yutani is an English-Japanese speaking company, and the Japanese side doesn’t really get explored that much’
- Mistral denies a fresh security breach, but the code on sale looks a lot like May’s leak
- Rabbit’s new AI agent doesn’t need an R1 to run
- Discord rolls out its revised age verification policy
- Saudi Arabia’s new Exobot EVs make the Cybertruck look normal
Archives
- September 2026
- August 2026
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023