ZeroHour

Search: “Germany”

684 stories

Chinese and Russian spies stepping up cyberattacks, German companies report

Bitkom survey finds nearly 40% of attacked German companies attribute incidents to foreign intelligence services, mainly China and Russia, costing up to $240B.

A Bitkom survey of 1,003 German companies with at least 10 employees found nearly four in 10 firms hit by data theft, espionage, or sabotage attributed at least one incident to a foreign intelligence service, up from 28% last year and 7% in 2023. China was the most cited source, named by more than half of affected companies, followed by Russia and Iran at roughly one in ten. Bitkom estimated cyberattacks cost German businesses $186-240 billion over the past year, with ransomware the most common attack type, affecting one in four companies. Recent incidents cited include breaches at Lidl, billing provider Unimed, and the Dresden State Art Collections.

The Record · 20d agoThreat actor

OpenAI banned Russian ChatGPT accounts backing covert influence operation

OpenAI banned Russian-run ChatGPT accounts behind fake think tank IBI, which used AI-generated posts and a 'Sovereignty Index' to push pro-Russia narratives.

OpenAI banned a cluster of ChatGPT accounts, likely operated from Russia via VPNs, that generated English-language social media comments for X, Facebook, LinkedIn, Telegram and Substack promoting the International Burke Institute (IBI). The Israel-branded IBI website, registered in February 2025, claimed ties to figures like Francis Fukuyama, but 34 of 36 sampled articles were copied or misattributed. Its 'Sovereignty Index' consistently ranked Russia favorably while criticizing France, Germany, the EU and the US; OpenAI rated the campaign at the lower end of Brookings Breakout Scale Category Three.

Security Affairs · 20d agoAI safety & security

Banking Trojans: Ursnif Global Distribution Networks Identified

Unit 42 maps banking-trojan distribution networks: spam botnets push Shiotob downloaders and Ursnif, KINS, Tinba at Japan and European targets via compromised web servers.

Unit 42 identified the distribution networks behind banking trojan attacks against Japan, Italy, Spain, Poland, Australia, and Germany. A spam botnet delivered 75 unique Shiotob (Bebloh/URLZone) variants across 7 million spam emails, with Shiotob acting mainly as a downloader that installs Ursnif and the Pushdo spam bot from C2 commands. Over 200 malicious files were hosted on 74 compromised, mostly European small-business web servers between April 2015 and January 2017, with localized invoice and photo-themed email lures per target country.

Palo Alto Unit 42 · Aug 17, 2026Malware in the wild