CuraSec

Learn active

Berlin city administration confirms Rhysida ransomware data theft

2026-08-31 18:00 UTC · BleepingComputer · read the source ↗ #ransomware#rhysida#government
  • Engineer — Skip
  • SOC/IR — Learn: Rhysida continues targeting government and public-sector entities; no new IOCs or TTPs disclosed, but worth noting sector targeting patterns for context.
  • Leader — Learn: Rhysida’s targeting of a major European city government illustrates ransomware risk to public-sector peers; useful framing for board-level risk discussions on ransomware preparedness.
This entry was curated and judged by AI (Claude) with automated enrichment (CISA KEV / EPSS / public PoC). Verify against the original source before acting. Found a bad verdict? Report it — confirmed errors go to the corrections log.