BKA situation report: Ransomware remains the threat to public institutions and commercial enterprises

The Federal Criminal Police Office (BKA) presented its annual federal situation picture of cybercrime, which focuses on so-called offenses against information technology systems and is defined as cybercrime. In the reporting period 2020, the number of cybercrime offenses increased by 8.7% compared to the previous year. It is clear that "the Internet as a means of committing crimes" gained in importance in almost all areas - and will continue to increase in the course of digitalization.

The financial interest of attackers is highlighted in particular, which would affect economically strong enterprises in particular, but increasingly also public institutions such as hospitals and organizations from the KRITIS sector. According to the report, typical entry points continue to be spam via e-mail, phishing and the use of illegitimately obtained login credentials as well as zero-day exploits.

In the situation report, particular importance is attached to cybercrime-as-a-service (CCaaS), i.e. as a service that can be booked. This is a fact that we have already addressed, for example in the section "Ransomware operations as affiliates" of the article "DDoS - keep the threat on your radar". In this context, the situation report emphasizes that these attacks originate in particular from a community oriented towards financial gain, which sometimes commit complex attacks and crimes without having a dedicated cyber background.

It is further reported that an increase has been recorded in 2020, especially in terms of high-volume DDoS attacks - massive in the period March to August 2020.

Service Preis in US$ (gesamt oder pro Nutzungseinheit/Zeitraum)
  • Desktop-Version
  • Mobile-Version

  • 1.000 - 10.000 $
  • 1.000 - 10.000 $

  • bei Kauf
  • bei Kauf
Remote Administration Tool
  • 89 - 530 $
  • Ca. 3.000 $
  • pro Monat bei Miete
  • bei Kauf
Mining Bots
  • 50 - 150 $
  • pro Monat bei Miete
  • 20 - 100 $
  • 360 - 100 $
  • bei Kauf von einem Crypt
  • bei einem Wochen-Abo mit 50 Crypts pro Tag
  • 10 ct - 4 $
  • pro Spam
DDoS as a Service
  • 80 - 1.500$
  • pro Monat bei Miete
Bulletproof Hosting
  • Shared
  • Dedicated

  • 5 - 50$
  • 50 - 700 $

  • pro Monat bei Miete
  • pro Monat bei Miete

Quelle: Übersicht krimineller Services im Darknet. Bundeslagebericht Cybercrime 2020

Home office and home schooling Due to the ongoing pandemic, digital services continue to be provided online, which increases the attack potential for attackers, which is why the situation report predicts that cybercrime will continue to gain relevance in the coming year.


• Number of cyber-crime increased

• Number & intensity of DDoS attacks increased

• Perpetrators are globally networked and act more professionally and significantly oriented towards financial profit