Ransomware · 162 days ago
Ransomware group Qilin has shifted its victim profile from hospitals and companies to a German parliamentary party, Die Linke, signaling a move from financial extortion to political coercion. The attackers publicly added Die Linke to their dark web leak site and threatened to disclose stolen internal and personal data if ransom demands are not met. This escalation means the harm extends beyond service disruption to reputational damage and personal safety risks for party staff and elected officials. The political amplification of leaked data threatens democratic institutions and election integrity, raising the stakes for national security actors and political organizations. This incident highlights ransomware's evolving role as a tool in hybrid warfare, where data exfiltration and public disclosure serve political objectives rather than just monetary gain.
1 source covering this story
The Record from Recorded Future
Hackers threaten to leak data after cyberattack on German party Die Linke
Die Linke confirmed in late March that its IT infrastructure had been hit by what it described as a “serious cyberattack.”
Part of the PlainSec briefing for 2026-04-07