Hensoldt AG
| Primary URL | Location | Industry | hensoldt[.]de |
Country
Germany
|
Defense
|
|---|
Profile
Hensoldt AG, also known simply as Hensoldt, is a multinational defense contractor headquartered in Germany. The company traces its origins to the sensor division of Airbus Defence and Space and was established as an independent entity after being acquired by the private‑equity firm KKR in 2017. It provides defense electronics and sensor solutions to military and security customers worldwide. Its portfolio includes technologies for airborne, naval and land platforms, supporting surveillance, reconnaissance and electronic warfare missions. The existence of a UK subsidiary that was targeted in a ransomware attack demonstrates its international operational footprint.
Hensoldt distinguishes itself through a strong focus on integrated sensor suites that combine radar, electronic warfare and avionics capabilities into cohesive systems for defense platforms. The company supplies major NATO and national defense programs, positioning itself as a key European provider of mission‑critical sensor technology. Its competencies are rooted in decades of experience developing high‑performance radar and electronic warfare equipment for both manned and unmanned systems. Hensoldt also invests in research and development to advance capabilities such as digital signal processing, sensor fusion and artificial intelligence for threat detection. This specialization enables the firm to meet stringent performance and reliability requirements demanded by modern armed forces.
In December 2021, Hensoldt experienced a ransomware attack that compromised systems at its UK subsidiary, an incident attributed to the Lorenz ransomware gang. The attackers exfiltrated data, publishing most of the stolen files as password‑protected archives and threatening to release decryption keys unless a ransom was paid. Lorenz’s typical tactics involve incremental pressure through partial leaks followed by full exposure of archived data, a pattern observed in this case. The attack was publicly reported by BleepingComputer, which noted that the ransomware variant affected certain file types for which a decryptor tool later became available. The decryptor allowed recovery of some encrypted files, although the incident highlighted the cybersecurity risks faced by defense contractors with distributed operations. Following the breach, Hensoldt affirmed that it was working with law enforcement and cybersecurity experts to restore affected systems and improve its security posture.
