Among the long list of electoral interference attempts in recent years, one case is especially important to study: the 2017 French presidential election, because it failed. It failed in the sense that the result of the election did not coincide with the aim of the attackers. There was a coordinated attempt to undermine Emmanuel Macron’s candidacy, with a disinformation campaign consisting of rumors, fake news, and even forged documents; a hack targeting the computers of his campaign staff; and, finally, a leak—15 gigabytes (GB) of stolen data, including 21,075 emails, released on Friday, May 5, 2017—just two days before the second and final round of the presidential election. This leak was promoted on Twitter by an army of trolls and fake accounts (bots), with the hashtag #MacronLeaks appearing in almost half a million tweets in twenty-four hours, and so the attack is now remembered as “the Macron Leaks.” However, the leak itself was only the pinnacle of a coordinated operation that started months before, with a disinformation campaign and a hack. Therefore, we should rather speak of a “Macron Leaks” operation, which did not sway French voters and change the result. Winning 66.1 percent of the vote, Macron defeated Marine Le Pen, the far-right candidate. The aim of this report is to provide the most detailed single account to date of the “Macron Leaks” operation. With the benefit of hindsight, it explores what happened, who (likely) orchestrated the affair, how it was successfully countered, and what lessons can be learned. In conclusion, it will also explain what France has accomplished since then in order to fight information manipulation and what is yet to be done.
Parmi la longue liste des tentatives d'ingérence électorale des dernières années, un cas est particulièrement important à étudier : l'élection présidentielle française de 2017, parce qu'elle a échoué. Elle a échoué en ce sens que le résultat de l'élection ne coïncidait pas avec l'objectif des agresseurs. Il y a eu une tentative coordonnée de saper la candidature d'Emmanuel Macron, avec une campagne de désinformation composée de rumeurs, de fausses nouvelles et même de faux documents ; un piratage visant les ordinateurs de son personnel de campagne ; et, enfin, une fuite de 15 gigaoctets (Go) de données volées, dont 21 075 e-mails, publiés le vendredi 5 mai 2017 - deux jours seulement avant le second et dernier tour des élections présidentielles. Cette fuite a été promue sur Twitter par une armée de trolls et de faux comptes (bots), avec le hashtag #MacronLeaks apparaissant dans près d'un demi-million de tweets en vingt-quatre heures, et l'attaque est donc maintenant connue comme "les Macron Leaks". Cependant, la fuite elle-même n'était que l'apogée d'une opération coordonnée qui avait commencé des mois auparavant, avec une campagne de désinformation et un piratage. Par conséquent, nous devrions plutôt parler d'une opération "Macron Leaks", qui n'a pas influencé les électeurs français et n'a pas changé le résultat. Avec 66,1 % des voix, Macron a battu Marine Le Pen, candidate d'extrême droite. L'objectif de ce rapport est de fournir le compte rendu le plus détaillé à ce jour des "Macron Leaks". Avec le recul, il explore ce qui s'est passé, qui a (probablement) orchestré l'affaire, comment elle a été contrée avec succès et quelles leçons on peut en tirer. En conclusion, il expliquera également ce que la France a accompli depuis lors pour lutter contre la manipulation de l'information et ce qu'il reste à faire.
