<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Berlin confirms data theft after Rhysida ransomware attack claims]]></title><description><![CDATA[<p dir="auto">Berlin’s city administration has officially confirmed that attackers are attempting to extort the city after the Rhysida ransomware gang posted stolen files on their public leak site. The admission follows claims made by the cybercriminal group, which had threatened to release sensitive data unless a ransom was paid. Officials have since verified that unauthorized access to municipal systems did occur and that some data was exfiltrated.</p>
<p dir="auto">The incident implicates the city’s internal networks, and authorities are currently coordinating with federal cybersecurity agencies to assess the scope of the breach. While the full extent of the stolen information has not been publicly detailed, the confirmation underscores the seriousness of the attack, which targeted a major European capital’s administrative infrastructure.</p>
<ul>
<li>The Rhysida ransomware group has claimed responsibility for the intrusion and data leak.</li>
<li>Berlin’s administration has verified that cybercriminals stole data and are now attempting to extort the city.</li>
<li>Federal authorities are involved in the ongoing investigation and response.</li>
</ul>
<p dir="auto">This development serves as a stark reminder that public-sector organizations remain high-value targets for ransomware groups, often facing dual pressure from operational disruption and the threat of sensitive data exposure. The city has not indicated whether any ransom demands have been met, and no specific technical indicators or remediation steps have been released to the public at this time.</p>
<p dir="auto">Source: <a href="https://www.bleepingcomputer.com/news/security/berlin-confirms-data-theft-after-rhysida-ransomware-attack-claims" target="_blank" rel="noopener noreferrer nofollow ugc">BleepingComputer</a></p>
<p dir="auto">Is your organization actively monitoring for Rhysida-related indicators, and have you tested your incident response plan against data-exfiltration scenarios like this one?</p>
]]></description><link>https://xploitlk.com/topic/167/berlin-confirms-data-theft-after-rhysida-ransomware-attack-claims</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 12:35:10 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/167.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 31 Aug 2026 14:30:28 GMT</pubDate><ttl>60</ttl></channel></rss>