German authorities are investigating another leak from Berlin’s government network after hackers published stolen login credentials and other data online, following an attack that hit two ministries in mid-August. The breach has been linked by the Rhysida ransomware group, while Berlin officials say they will not pay the attackers and are reviewing the exposed information to identify affected people. #Berlin #Rhysida #BSI #TerminalFix #LoremIpsumLoader #AxolotLoader
Keypoints
- German authorities are investigating a new data leak from Berlin’s government network.
- The breach affected two Berlin ministries and exposed login credentials and other information.
- Berlin said the attackers stole data and issued an extortion demand, but the city will not pay.
- The BSI warned about related TerminalFix-style attacks using fake CAPTCHA pages and malicious commands.
- Rhysida and its linked malware, LoremIpsumLoader or AxolotLoader, have been associated with the campaign.
Read More: https://therecord.media/germany-berlin-second-data-breach-city-agencies