Bloc Québécois leader Yves-François Blanchet regained control of his X account on Friday morning. The profile had been compromised for approximately two weeks, duing which time hackers used the platform to promote cryptocurrency schemes.

Advertisement

The $31,000 Bitcoin lure on Blanchet's profile

The security breach began on July 11, when an unauthorized party gained access to the account of Yves-François Blanchet. According to CBC News, the hackers posted a message linking to a cryptocurrency trader known as @CoachRomieRome,claiming that the Bloc Québécois leader had received a second payment of $31,000. While the initial post was quickly removed, the attackers returned earlier this week to repost the same claim and pin a retweet asserting that Bitcoin and cryptocurrency had changed the leader's life.

Upon recovering the account,Yves-François Blanchet explicitly distanced himself from the scams. In a post published shortly before 7:30 a.m. on Friday, he stated that he is "evidently and absolutely not a promoter of cryptocurrency," describing the industry as a "subversion of the rule of law." This firm rejection serves as a corrective to the fraudulent messages seen by his 54,400 followers.

An 11-day delay before the Bloc Québécois admitted the breach

The timeline of the party's response has come under scrutiny, as the Bloc Québécois did not publicly acknowledge the hack until Wednesday—11 days after the first suspicious post appeared. As CBC News reported,the party only warned its followers to avoid clicking cryptocurrency links after the account was locked entirely this week. This gap suggests a period of internal hesitation or a failure to recognize the persistence of the threat.

Joanie Riopel, a spokesperson for the Bloc Québécois, explained that the party did not sound an immediate alarm because the first fraudulent post was deleted promptly by X. Riopel stated that the party believed Yves-François Blanchet still maintained control of the account until the total lockout occurred. However, the party did notify the administration of the House of Commons and IT services immediately following the first incident to secure the leader's physical devices.

Why Joanie Riopel called X's collaboration 'not optimal'

The process of regaining access to the account was fraught with friction between the political party and the social media platform. Joanie Riopel noted that while the Bloc Québécois followed every step requested by X, the platform's collaboration was "not optimal." The account was only fully restored on Friday morning,a restoration that occurred after several media outlets had reported on the hack and CBC News had reached out to X for comment.

This friction highlights the precarious nature of relying on automated or outsourced support systems for high-profile political figures. the fact that restoration coincided with media pressure suggests that the Bloc Québécois may have struggled to get the attention of X's security team through standard channels.

Comparing 54,400 followers to Poilievre's 1.4 million

The breach of Yves-François Blanchet's account is part of a wider trend of targeting political figures to lend legitimacy to financial scams. While Blanchet's 54,400 followers represent a significant reach, they are dwarfed by other Canadian federal leaders. The source report notes that Conservative Leader Pierre Poilievre and Mark Carney lead the pack in terms of visibility, with 1.4 million and 723,800 followers respectively.

For political entities, the stake is not just about the loss of a communication channel, but the potential for financial harm to their constituents. When a trusted leader's account promotes a "trader" or a specific payment amount, it creates a veneer of authenticity that can trick less tech-savvy users into investing in fraudulent schemes.

The mystery of how the July 11 breach occurred

Despite the restoration of the account, a critical piece of information remains missing: the exact method of entry. joanie Riopel admitted that the Bloc Québécois has been unable to determine how the hackers first accessed the account of Yves-François Blanchet. It remains unknown whether the breach was the result of a sophisticated phishing attack, a password leak, or a compromise of a linked third-party application.