Berliner Boersenzeitung - Repeat hacks highlight Australia's cyber flaws

EUR -
AED 4.317808
AFN 76.994475
ALL 96.189964
AMD 448.7811
ANG 2.104722
AOA 1077.985852
ARS 1704.836554
AUD 1.773409
AWG 2.116003
AZN 2.007197
BAM 1.9543
BBD 2.367312
BDT 143.640939
BGN 1.953544
BHD 0.443191
BIF 3485.527834
BMD 1.175557
BND 1.515391
BOB 8.121523
BRL 6.421132
BSD 1.175363
BTN 106.812813
BWP 15.523619
BYN 3.444453
BYR 23040.925982
BZD 2.363915
CAD 1.616703
CDF 2645.004589
CHF 0.934556
CLF 0.027368
CLP 1073.648601
CNY 8.284448
CNH 8.269941
COP 4520.018388
CRC 586.532218
CUC 1.175557
CUP 31.152272
CVE 110.721405
CZK 24.324665
DJF 208.920182
DKK 7.471185
DOP 74.470932
DZD 152.190865
EGP 55.705908
ERN 17.633362
ETB 182.27006
FJD 2.684964
FKP 0.878605
GBP 0.876131
GEL 3.168094
GGP 0.878605
GHS 13.548259
GIP 0.878605
GMD 86.404864
GNF 10216.182599
GTQ 9.000783
GYD 245.903882
HKD 9.145496
HNL 30.811895
HRK 7.529561
HTG 153.931817
HUF 385.673373
IDR 19576.558183
ILS 3.794346
IMP 0.878605
INR 106.897786
IQD 1539.980257
IRR 49502.723816
ISK 147.990962
JEP 0.878605
JMD 188.656761
JOD 0.83352
JPY 181.871704
KES 151.541393
KGS 102.802907
KHR 4706.932036
KMF 493.73405
KPW 1058.001998
KRW 1732.783652
KWD 0.360285
KYD 0.979519
KZT 605.856806
LAK 25468.45215
LBP 105271.169589
LKR 363.860641
LRD 208.367869
LSL 19.761085
LTL 3.471115
LVL 0.711083
LYD 6.371567
MAD 10.794561
MDL 19.793214
MGA 5301.763793
MKD 61.443207
MMK 2468.395605
MNT 4169.516512
MOP 9.418189
MRU 46.728714
MUR 54.016691
MVR 18.102491
MWK 2041.943832
MXN 21.114822
MYR 4.802741
MZN 75.12987
NAD 19.760977
NGN 1708.425936
NIO 43.175966
NOK 11.970655
NPR 170.9007
NZD 2.032451
OMR 0.451998
PAB 1.175363
PEN 3.963393
PGK 4.99994
PHP 68.878852
PKR 329.449854
PLN 4.213221
PYG 7894.938542
QAR 4.28021
RON 5.09216
RSD 117.362953
RUB 93.516769
RWF 1706.909415
SAR 4.409202
SBD 9.592601
SCR 16.789394
SDG 707.092237
SEK 10.92522
SGD 1.51537
SHP 0.881973
SLE 28.155038
SLL 24650.856215
SOS 671.827144
SRD 45.468202
STD 24331.665734
STN 24.921818
SVC 10.285191
SYP 12999.86794
SZL 19.761454
THB 36.971654
TJS 10.801685
TMT 4.114451
TND 3.42263
TOP 2.830461
TRY 50.209937
TTD 7.973641
TWD 36.98652
TZS 2903.626567
UAH 49.570363
UGX 4184.787067
USD 1.175557
UYU 45.984695
UZS 14253.633675
VES 314.39079
VND 30970.06097
VUV 142.785345
WST 3.267242
XAF 655.434266
XAG 0.01851
XAU 0.000273
XCD 3.177003
XCG 2.118311
XDR 0.816048
XOF 656.55533
XPF 119.331742
YER 280.312047
ZAR 19.695537
ZMK 10581.505648
ZMW 27.004463
ZWL 378.529019
  • SCS

    0.0200

    16.14

    +0.12%

  • RYCEF

    -0.2500

    14.65

    -1.71%

  • RBGPF

    3.3200

    81

    +4.1%

  • CMSD

    -0.0200

    23.345

    -0.09%

  • CMSC

    0.0050

    23.305

    +0.02%

  • BCC

    0.5200

    75.85

    +0.69%

  • RELX

    -0.2350

    40.845

    -0.58%

  • RIO

    0.3100

    76.13

    +0.41%

  • NGG

    -0.4700

    75.56

    -0.62%

  • BCE

    -0.1500

    23.46

    -0.64%

  • VOD

    0.0000

    12.7

    0%

  • JRI

    -0.0400

    13.52

    -0.3%

  • GSK

    -0.5950

    48.645

    -1.22%

  • AZN

    -1.0000

    90.56

    -1.1%

  • BTI

    -0.4150

    57.325

    -0.72%

  • BP

    -1.3350

    33.915

    -3.94%

Repeat hacks highlight Australia's cyber flaws
Repeat hacks highlight Australia's cyber flaws / Photo: Muhammad FAROOQ - AFP

Repeat hacks highlight Australia's cyber flaws

Inadequate privacy safeguards and the stockpiling of sensitive customer information have made Australia a lucrative target in the eyes of foreign hackers, cybersecurity experts told AFP following a series of major data breaches.

Text size:

Medibank, Australia's largest private health insurer, recently confirmed that hackers had accessed the data of 9.7 million current and former customers, including medical records related to drug abuse and pregnancy terminations.

Telecom company Optus fell prey to a data breach of similar scale in late September, during which the personal details of up to 9.8 million people were accessed.

Both incidents sit comfortably among the largest data breaches in Australian history.

Australian National University cybersecurity expert Thomas Haines said many companies had been hoarding personal data that they should not have been hanging on to.

"There was a famous line for a while: Data is the new oil," he told AFP.

"If data is the new oil, then we're living the era of the weekly oil spill."

Haines contrasted Australia's approach with that of the European Union, which in 2018 adopted sweeping privacy reforms limiting how organisations collect, use and store personal data.

"There have got to be incentives in place to stop companies hoarding data they don't need, or to penalise those companies for big leaks. Europe has done this," he said.

"At the moment the business incentives are basically along the lines of: Let's just keep a whole bunch of data."

Haines said Medibank appeared to be an exception, in that most of the sensitive information within its databases had been stored for good reason.

- Hacking 'for profit' -

Australia's comparatively weak safeguards against identity theft meant it was also easier to exploit stolen personal information, Haines said.

"All they need to know is your passport, your driver's licence and some other things -- and then I can start taking out loans in your name."

Haines said European countries such as Norway had much more stringent requirements involving face-to-face contact.

Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said most hackers were searching for particular types of data.

"For-profit hackers are going after healthcare data, they're going after identity data and credentials to access systems," he told AFP.

"There is a profit motivation there, otherwise they wouldn't be risking jail and prosecution."

The Medibank hackers this week started leaking stolen data to a dark web forum, after the company refused to pay a US$9.7 million (Aus$15 million) ransom.

The Optus breach led to the theft of customers' names, birth dates, and passport numbers.

- Russia blamed -

Australian Federal Police Commissioner Reece Kershaw on Friday blamed the Medibank cyberattack on a team of hackers based in Russia.

"We believe those responsible for the breach are in Russia," he told reporters.

"Our intelligence points to a group of loosely affiliated cyber criminals who are likely responsible for past significant breaches in countries across the world."

Medibank data leaked to the dark web so far has included hundreds of potentially-compromising medical records related to drug addiction, alcohol abuse and sexually-transmitted infections.

Home Affairs Minister Clare O'Neil conceded on Friday the country's cyber defences had not always been up to scratch.

University of Sydney data researcher Jane Andrew said one major flaw was that Australian companies were not always obliged to report data breaches.

"There are heaps of data breaches happening all the time that we don't hear anything about," she told AFP.

"Companies have been gathering data because it's seen to be valuable, without fully understanding the potential risks."

(T.Burkhard--BBZ)