PressBlip
Politics

Berlin Cyberattack Exposes 1.4 Million Files on Dark Web

Emily Ross 11.09.2026

Extortion Tactics and Digital Leaks

Hacker collective Rhysida leaked 1.4 million documents from the Berlin Senate just days before the state parliamentary election. The group attempted to extort the city government but published the data after negotiations collapsed. This digital breach occurred during a critical period for German politics, raising urgent questions about the capital’s cybersecurity defenses.

The attack targeted sensitive internal communications and administrative records held by the Senate. Rhysida initially demanded a ransom in cryptocurrency to keep the information private. When the city officials did not meet their demands within the specified deadline, the hackers released the entire dataset onto the dark web. This move aimed to maximize pressure on the government ahead of the upcoming vote.

The hackers used a common ransomware strategy to gain access to the systems. They encrypted key files and copied millions of documents to an external server. The leak includes emails, meeting minutes, and personnel data. Analysts note that the timing was calculated to disrupt the election campaign. The Berlin Senate confirmed the breach but stated that core services remained operational. Officials emphasized that they were working with forensic experts to assess the full scope of the damage. The incident highlights the growing threat posed by organized cybercriminal groups targeting public institutions.

Why Timing Matters for German Politics

This breach lands during a tense political climate in Germany. State elections often serve as indicators for national trends. A significant data leak can influence voter sentiment and trust in local leadership. Rhysida is known for targeting European governments and large corporations. Their previous attacks have focused on extracting maximum financial or political leverage. In this case, the political leverage was clear. The proximity to the election date suggests the hackers intended to create confusion or highlight vulnerabilities in the state administration.

The leaked files contain various levels of sensitivity. Some documents appear routine, while others reveal strategic planning discussions. Privacy advocates are concerned about the personal data of employees and citizens included in the dump. The Senate has promised a transparent review process to determine how the breach happened. They plan to implement stricter security protocols to prevent future incidents.

Frequently Asked Questions

How many files were leaked in total? The hacker group Rhysida published approximately 1.4 million files on the dark web. These documents originated from the Berlin Senate’s internal systems.

When did the attack occur relative to the election? The data theft happened shortly before the Berlin state parliamentary election. The hackers released the files after their initial extortion attempt failed to secure a ransom payment.

What is the name of the hacker group? The collective responsible for the breach is called Rhysida. They are known for targeting government bodies and large organizations across Europe.

Share:

More stories: