Menu
Browse

Cyber Incident Victim: Bundestag

Date:

Jan 2023

Location:

Germany

Summary

The German Bundestag experienced a large-scale distributed denial-of-service (DDoS) attack targeting the availability of its internet services, though its IT defenses successfully mitigated the incident without service disruption. The attack, attributed to the pro-Russian hacker group Killnet based on prior threats against German entities, involved coordinated attempts to overwhelm servers with simultaneous requests. While the parliamentary press office declined to comment on security specifics, internal communications confirmed the attack's containment and noted no immediate attribution evidence beyond the group's announced intentions.

CIA Posture Motives Tactics, Techniques & Procedures
Available to members 2 motives 1 technique
Threat Actor Type Location
1 actor Available to members Available to members

Description

On January 26, 2023, German media reported that the Bundestag’s internet services had been targeted by a significant cyberattack, described as a large-scale distributed denial-of-service (DDoS) incident. According to an internal notification sent to parliamentary members and staff, the attack aimed to impair the availability of the Bundestag’s public-facing online platforms by overwhelming its servers with a coordinated flood of simultaneous requests from multiple systems. The Bundestag’s IT security infrastructure successfully mitigated the attack, preventing any disruption to website accessibility or parliamentary operations. No data breaches, system compromises, or unauthorized access were reported as part of the incident. The Bundestag’s press office declined to provide official confirmation or details, citing a standing policy against commenting on IT security matters.

Cyber Incident Image

Initial technical assessments characterized the attack as purely volumetric, with no evidence of data exfiltration or exploitation of vulnerabilities beyond the DDoS attempt. While the perpetrators remained unidentified, the internal communication noted that the pro-Russian hacker group Killnet had publicly threatened cyber operations against German institutions days prior, though no direct attribution was established. The Bundestag’s IT subdivision did not disclose mitigation specifics, attack traffic volume, or duration, nor did it confirm whether external cybersecurity agencies were involved in the response. No collateral impacts on connected government systems or public services were reported. The incident marked at least the second major cyberattack against the Bundestag’s digital infrastructure since a 2015 breach attributed to Russian state-sponsored actors.

Sources
Sources available to members
1 source