■■■□□ Berlin’s Senate Chancellery hired CrowdStrike to assess the hack on the city administration. One district, Lichtenberg, is refusing to let the firm in because of its US ties.
They’re blocking CrowdStrike’s Falcon agent from their network, citing visibility into staff devices and personal data, US legal disclosure duties and the vendor’s Palantir ties.
They’ll only allow access if the Senate carries full responsibility and all costs.
The Senate Chancellery hired the US firm to check district systems for traces of the recent Rhysida hack.
Rhysida sat in Berlin’s network from 7–12 August, undetected until the 14th. After Berlin refused a 30 BTC (€2M) ransom, it dumped 1.4 million files, roughly 5.8TB. Its leak page claims 46,500 contracts and over 5,000 personnel files. One file held close to 6,000 logins, and we have confirmed they’ve had documents with cleartext credentials.
