German companies say foreign spy services are behind far more cyberattacks this year, signaling a faster, riskier hunt for trade secrets and leverage.
Story Highlights
- 37% of affected German firms linked at least one cyberattack to a foreign intelligence service, up sharply from last year.
- China and Russia were most often suspected; Iran appeared as a growing source in the survey.
- Germany’s domestic intelligence service presented prior Bitkom findings alongside the industry group, underscoring the threat focus.
- Recent studies peg annual losses from espionage, data theft, and sabotage near 289 billion euros.
Survey Shows Sharp Rise In Suspected State-Linked Intrusions
Bitkom’s 2026 survey found that 37% of affected companies in Germany attributed at least one cyberattack in the past year to a foreign intelligence service. That figure rose from 28% the year before and only 7% in 2023, pointing to a steep jump in suspected state-linked activity. The same reporting says firms most often suspected China and Russia, with Iran cited as a smaller but growing source. These findings reflect what many leaders fear: economic espionage is becoming more organized and aggressive.
Reuters and other outlets summarizing the survey say more than half of the affected companies tied an attack to China, about half to Russia, and a smaller slice to Iran. Germany’s domestic intelligence office, the Federal Office for the Protection of the Constitution, has supported past Bitkom work by presenting findings together and warning of the same patterns. Earlier results showed 81% of firms hit by theft, espionage, or sabotage in the prior year, with China and Russia named most often. The broad picture shows persistent, rising pressure on core industries.
Economic Stakes: Hundreds Of Billions At Risk
Survey-based estimates put the price tag for Germany’s economy near 289 billion euros in 2025 from data theft, sabotage, and industrial spying. That number came as part of the same annual reporting cycle and captured both direct damage and broader disruption, according to press summaries. For exporters and small suppliers alike, those losses hit jobs, wages, and investment. When a rival state copies designs or steals bids, the pain does not stop at the factory gate. It rolls through towns and supply chains.
American readers have felt this before. U.S. firms have reported theft of research, plans, and source code for years. Germany’s trend echoes that story and shows how allies face the same playbook. The concern cuts across party lines: people on the right see a threat to national strength; people on the left see a threat to workers and fair markets. Both sides resent a system where well-connected players shield themselves, while everyday businesses and employees carry the risk when secrets walk out the digital door.
Attribution Limits And Why The Trend Still Matters
The survey measures what companies report and suspect, not courtroom-proof forensics in each case. That is a limit, and the public summaries do not show incident-level evidence or question wording. Still, the direction has held steady over several years of reporting by Bitkom and Germany’s domestic intelligence service. The shared message is simple: more firms feel the squeeze, and more point to foreign states as the driver. Policymakers and boards will act on that risk picture because the cost of waiting is high.
Germany’s debate mirrors a wider European pattern where industry surveys, intelligence briefings, and media coverage influence each other. That can build fast consensus for tougher defenses and broader agency powers. Advocates argue this is needed to protect factories, labs, and power grids. Critics worry that survey headlines can race ahead of public evidence. Both views point to the same core truth: the threat of economic spying is real enough that leaders are moving to harden targets.
What Comes Next For Companies And Governments
German officials are already pushing to expand intelligence and counterintelligence tools, and the business lobby is pressing for stronger state support. That likely means more pressure on vendors to lock down networks, deeper vetting of partners, and faster sharing of technical warnings. Companies will balance this with trade ties and costs. Each step raises a core question for democracies: how to defend key assets without building a security maze that slows honest work and innovation.
EAST GERMANY
=====
Modern Russian activity in Germany is divided principally among the SVR, GRU, and FSB, with cyber units, diplomatic intelligence officers, illegals, traveling case officers, intermediaries and recruited proxies layered on top.Germany's BfV describes a broad… pic.twitter.com/0drry2omAZ
— FutureSHOCK (@ChaosActual2025) August 26, 2026
For U.S. readers, the lesson is practical. Protect designs, bids, and source code. Track unusual logins, late-night data pulls, and odd email rules. Train staff to spot social engineering. Push suppliers to meet the same bar. When the economy runs on ideas, the biggest factory is the mind. If a foreign service steals the blueprint, the next layoffs may land at home. That is why this German alarm should ring here too—and why clear, measured defense is the job of both business and government.
Sources:
insiderpaper.com, bitkom.org, wmbdradio.com, thenews.com.pk, verfassungsschutz.de


















