Berlin Administration Data Leak Exposes Sensitive Records, Including Emergency Plans
Translated from German and summarized by DistantNews. Read the original for the full story.
At a glance
- The Rhysida hacker group claims to have published 1.44 million files totaling about 5.7 terabytes after Berlin refused a ransom demand reportedly worth about 2 million euros.
- The leaked material reportedly includes contracts, passwords, personal data, personnel files, application documents, confidential work papers and security-related plans.
- Investigations continue, while Berlin plans to notify affected people according to risk and authorities advise password changes, account monitoring and police reports.
A vast cache of data stolen from Berlin’s state network has been published after the government refused to pay a ransom, exposing potentially sensitive administrative and security information.
The Rhysida hacker group reportedly released 1.44 million files totaling around 5.7 terabytes on its darknet site. The group had demanded the equivalent of about 2 million euros from the state of Berlin. After the payment deadline passed on Friday afternoon, the files became available for download, according to the Süddeutsche Zeitung.
The material includes documents from routine government operations, such as contracts, meeting records and passwords. It also reportedly contains addresses, telephone numbers and confidential personnel files. The Tagesspiegel found rehabilitation records, medical certificates and sick notes, while the Süddeutsche Zeitung identified job applications, email correspondence and work papers marked “Confidential.”
motivated exclusively by financial considerations
Security-related information, including emergency plans and secret communication channels, is also said to be among the leaked material. The full contents remain unclear because of the size of the dataset, and the coming days are expected to reveal what else the published documents contain.
The breach occurred on August 7 through Berlin’s Senate administrations for mobility, transport and the environment, and for construction and housing. Investigations are still underway. The Federal Office for Information Security believes the attack was “motivated exclusively by financial considerations.” Berlin’s data protection commissioner has advised people to update passwords for government and online services and monitor their bank accounts. Authorities have also urged affected people to file criminal complaints.
Confidential
Originally published by Süddeutsche Zeitung in German. Translated, summarized, and contextualized automatically by DistantNews, with a note on how the source frames the story. Not individually reviewed before publishing. How this works.