Cyber Incident Victim: Hochschule für Technik und Wirtschaft Berlin
Date:
Apr 2022
Location:
Germany
Summary
The Hochschule für Technik und Wirtschaft Berlin experienced an IT security incident that disrupted access to certain online documents and resources. The disruption manifested as broken links and missing content, prompting the institution to advise users to update their bookmarks and utilize alternative navigation methods like the website's search function. While the incident caused accessibility issues for specific materials, the organization acknowledged the inconvenience and directed affected parties to available workarounds without disclosing technical details about the attack's origin or scope.
| CIA Posture | Motives | Tactics, Techniques & Procedures |
|---|---|---|
| Available to members | 0 motives | 0 techniques |
| Threat Actors | Type | Location |
|---|---|---|
| 0 actors | Available to members | Available to members |
Description
On or around April 28, 2022, the Hochschule für Technik und Wirtschaft Berlin (HTW Berlin) experienced an IT security incident that disrupted access to portions of its online infrastructure. The incident resulted in the unavailability of certain web resources, as evidenced by the university's public-facing error page explicitly referencing an "IT-Sicherheitsvorfall" (IT security incident). Users attempting to access affected content encountered a 404 error message indicating the requested documents could not be located despite exhaustive internal searches. This disruption occurred without prior public warning, suggesting either an abrupt technical failure or unauthorized system alteration. The university acknowledged the service interruption through its error page but did not specify whether the incident involved external threat actors, internal system errors, or compromised data integrity.

The university's immediate response included the publication of a standardized error message directing users to alternative navigation methods such as website search functions or updated menu structures. This message noted that some web addresses had changed during a 2015 relaunch, advising visitors to update bookmarks and external links pointing to missing resources. No technical details regarding incident containment procedures, forensic investigations, or system restoration timelines were disclosed through this communication channel. The primary observable impact consisted of persistent accessibility limitations to specific digital content, though the full operational scope and duration of service degradation remained undefined in available public statements. The institution concluded its brief notification by requesting understanding from affected users without elaborating on remediation efforts or future preventative measures.
