Signal
Submitted
Apr 28, 2026, 13:45 UTC
From July 2024 to June 2025, Germany experienced increased cyberattacks targeting government and businesses, with Russia identified as the primary suspected aggressor.
The BSI's mid-2024 to mid-2025 IT security report highlights a sustained high-risk environment for cyberattacks in Germany. Critical sectors like public administration, defense, law enforcement, and security faced intensified threats, including a 52% rise in DDoS attacks coinciding with major political events. Russia is regarded as the main suspected actor behind these attacks, which appear to have geopolitical and military motivations. Ransomware and data extortion remain pressing issues, though authorities have had some success against financially motivated groups such as LockBit and Alphv. Alarmingly, the number of newly discovered software vulnerabilities rose by 24%, averaging 119 per day. SMEs continue to be the most targeted, with 80% of attacks aimed at them, often exploiting poor cybersecurity postures. Furthermore, consumer fraud tactics advanced, notably through quishing, where counterfeit QR codes in public areas mislead victims into divulging payment data.
Confidence: High
The report explicitly details an ongoing high volume of cyberattacks originating predominantly from Russia, targeting key German government and defense infrastructure, alongside widespread ransomware campaigns and sophisticated fraud methods.
Source URL
https://tagesschau.de/inland/innenpolitik/bsi-lagebericht-cybersicherheit-100.html
Source reliability
A
Info credibility
6
Event time
Jul 1, 2024, 00:00 UTC
End time
Jun 30, 2025, 23:59 UTC
Event time confidence
pm24h
Location
Germany
Primary actor
Russia
Country
Germany
Countries
Germany
Tags
Germany, offensive cyber operations, DDoS attacks, Ransomware, Russia, Quishing, Public administration, SMEs, Geopolitical cyber threat
Nodes
Node 1: Borders, Node 2: 5th Column