There’s a Ridiculously Simple Password Behind the Louvre Robbery!

TECH NEWS – We can’t imagine how they handled the case so poorly, ultimately creating such a big mess.

 

After the October 18 robbery at the Louvre, during which $102 million worth of crown jewels were stolen in broad daylight, the mystery surrounding the criminals was solved. During their escape, the suspects dropped a crown and tried to set fire to the mechanical lift as a diversionary tactic, but they were unsuccessful. According to the French newspaper Libération, the theft is not as unusual as we might think. The Louvre has suffered from security and IT vulnerabilities for over a decade.

Cass Marshall, co-founder of Rogue and former chief prankster at Polygon, noted on Bluesky that we owe many game designers an apology. For years, we mocked game characters for leaving important security codes and safe combinations in plain sight. Meanwhile, the Louvre used the password “Louvre” for its video surveillance servers. Confidential documents reviewed by Libération detail the Louvre’s long history of security vulnerabilities, dating back to a 2014 cybersecurity audit conducted by the French cybersecurity agency (ANSSI) at the museum’s request.

ANSSI experts were able to penetrate the Louvre’s security network, manipulate video surveillance, and modify access to entry cards. How did the experts manage to penetrate the network? Primarily thanks to trivial passwords. Entering “LOUVRE” provided access to the server that managed the museum’s video surveillance system, and entering “THALES” provided access to a software program issued by Thales. In 2015, the museum requested another audit from the French National Institute for Security and Justice.

Two years later, their 40-page report revealed serious shortcomings: poorly managed visitor traffic, easily accessible roofs during construction, and outdated, poorly functioning security systems. Subsequent documents show that, as of 2025, the Louvre was still using security software purchased in 2003. This software was no longer supported by the developer and ran on Windows Server 2003 hardware.

If the protection of the French crown jewels is two decades out of date, perhaps we can afford to take hacking mini-games, sticky notes with passwords, and easily stolen key cards less seriously.

Source: PCGamer, Libération, Bsky

Avatar photo
Anikó, our news editor and communication manager, is more interested in the business side of the gaming industry. She worked at banks, and she has a vast knowledge of business life. Still, she likes puzzle and story-oriented games, like Sherlock Holmes: Crimes & Punishments, which is her favourite title. She also played The Sims 3, but after accidentally killing a whole sim family, swore not to play it again. (For our office address, email and phone number check out our IMPRESSUM)

No comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.