Allied Intelligence — 2026-05-05
German BND Reform Bill Would Grant Foreign Intelligence Offensive Cyber and Sabotage Powers for First Time
Germany's coalition government is coordinating a BND Act overhaul that would authorize offensive hacking and sabotage for the first time, per netzpolitik.org citing government-source reporting from Tagesschau, WDR, NDR, and the FAZ. Under draft provisions, BND could penetrate networks and participate in active cyberattacks when voluntary cooperation is refused; officers could also covertly enter residences to install state trojans on target devices. The bill would additionally allow BND to store and analyze communications content for up to six months at internet exchange points including DE-CIX Frankfurt, with operations gated on National Security Council declaration of an "intelligence special situation" and Parliamentary Control Committee concurrence. No legislative timeline has been established; inter-ministerial coordination is underway, and the German Journalists' Association has protested the proposals as a threat to press freedom.
AnalysisGermany's coalition government is drafting BND Act revisions to authorize offensive hacking, physical residence entry for trojan installation, and six-month bulk retention at DE-CIX Frankfurt. These provisions are now named in an internal government draft, per German primary reporting (ZDF Frontal, netzpolitik.org) reaching this brief via secondary coverage. Passage by end of 2026 is
unlikely: no committee markup or floor vote is scheduled, inter-ministerial coordination remains ongoing, and DE-CIX retention and residence-entry provisions will invite constitutional challenges that have historically extended German security legislation timelines by 12–18 months. The reform's breadth may instead signal pressure to reduce structural dependence on US intelligence sharing, with expanded powers serving as diplomatic assertion rather than operational requirement.
1 sources
- BND Reform Bill would grant offensive cyber sabotage powers - about:intel
View in full brief →