Le Mans FC has suffered a data leak after hackers exhumed a WordPress database from the old MUC72.fr site. The file, containing 2,478 email addresses and hashed passwords, was published online. The club, which finished third in Ligue 2 last season with 57 points, assures that its current infrastructure has not been compromised.
What data was exposed?
The hacked file is a WordPress user account export used between February 2017 and July 2023. It includes login credentials, authentication tokens, and encrypted passwords. While some accounts are old, the information could be used for phishing attacks targeting fans.
Why is this leak concerning?
The data comes from the old MUC72.fr domain, used before the club became Le Mans FC. Despite no evidence of a current system breach, experts fear stolen credentials could be reused on other platforms. The club has previously faced similar fraud attempts.
What is Le Mans FC doing to protect fans?
The club has launched an internal investigation and advises users to change their passwords. No impact has been detected on the team’s performance, which ended the 2025 season in third place, one point behind leaders Estac Troyes. Fans are urged to remain vigilant against suspicious emails.
