German institutions compromised via TerminalFix campaign
Admiralty grading (A–F · 1–6)
Source reliability
- A Completely reliable
- B Usually reliable
- C Fairly reliable
- D Not usually reliable
- E Unreliable
- F Cannot be judged
Information credibility
- 1 Confirmed
- 2 Probably true
- 3 Possibly true
- 4 Doubtful
- 5 Improbable
- 6 Cannot be judged
NATO Admiralty (AJP-2.1) grades confidence, independent of the risk score. Cross-source corroboration isn't tracked for non-CVE news, so single-source items are capped at a lower credibility number; a low number does not imply low quality.
Key insight
BSI warns of an active, targeted campaign against German institutions focusing on critical infrastructure and government agencies , a sign of elevated cyber risk in the DACH region for suppliers and partners in these sectors.
Description
The German Federal Office for Information Security (BSI) has reported an active campaign designated TerminalFix that has compromised German state and private institutions. The campaign targets organizations in critical infrastructure sectors and indicates sophisticated, targeted attack methods. The BSI alert indicates that compromises have already occurred and ongoing activities persist. The scope of affected institutions and the underlying technical infrastructure are typical of state-sponsored or state-coordinated campaigns.
Risk score
- strategic relevance
- 0.95
Path: strategic