Berliner Boersenzeitung - Repeat hacks highlight Australia's cyber flaws

EUR -
AED 4.210499
AFN 72.796213
ALL 94.461752
AMD 422.020011
ANG 2.052384
AOA 1052.326771
ARS 1679.881759
AUD 1.63659
AWG 2.066251
AZN 1.953303
BAM 1.955297
BBD 2.308106
BDT 140.663801
BGN 1.938299
BHD 0.432188
BIF 3421.780125
BMD 1.146325
BND 1.479519
BOB 7.918997
BRL 5.906215
BSD 1.146005
BTN 108.029372
BWP 15.573585
BYN 3.184181
BYR 22467.97
BZD 2.304717
CAD 1.624933
CDF 2613.621415
CHF 0.926076
CLF 0.026285
CLP 1034.512913
CNY 7.760166
CNH 7.776084
COP 3957.893401
CRC 519.866215
CUC 1.146325
CUP 30.377613
CVE 110.510194
CZK 24.17726
DJF 203.72533
DKK 7.470032
DOP 66.949832
DZD 152.856753
EGP 57.300762
ERN 17.194875
ETB 181.549268
FJD 2.562614
FKP 0.86629
GBP 0.867794
GEL 3.038209
GGP 0.86629
GHS 12.867544
GIP 0.86629
GMD 84.259302
GNF 10059.002282
GTQ 8.74175
GYD 239.719355
HKD 8.983611
HNL 30.589728
HRK 7.535022
HTG 149.691478
HUF 351.715881
IDR 20434.733348
ILS 3.402911
IMP 0.86629
INR 108.133415
IQD 1501.68575
IRR 1576196.875404
ISK 143.898619
JEP 0.86629
JMD 181.073402
JOD 0.81279
JPY 184.907999
KES 148.338813
KGS 100.246562
KHR 4596.763652
KMF 492.350937
KPW 1031.692901
KRW 1751.183826
KWD 0.352988
KYD 0.954929
KZT 559.241447
LAK 25282.198275
LBP 102653.40415
LKR 382.461576
LRD 208.803536
LSL 18.805507
LTL 3.3848
LVL 0.6934
LYD 7.307867
MAD 10.574893
MDL 20.237262
MGA 4814.565397
MKD 61.595297
MMK 2406.686258
MNT 4104.327632
MOP 9.251919
MRU 45.922214
MUR 54.852085
MVR 17.711155
MWK 1991.16692
MXN 19.883752
MYR 4.743383
MZN 73.262063
NAD 18.804002
NGN 1559.506815
NIO 41.96739
NOK 11.122344
NPR 172.851518
NZD 1.99898
OMR 0.441315
PAB 1.14601
PEN 3.879208
PGK 5.029788
PHP 69.600846
PKR 319.05095
PLN 4.257165
PYG 7037.250395
QAR 4.173201
RON 5.236532
RSD 117.120453
RUB 83.800079
RWF 1678.2198
SAR 4.296702
SBD 9.241012
SCR 15.685465
SDG 688.372376
SEK 10.992483
SGD 1.481515
SHP 0.855847
SLE 28.371969
SLL 24037.866288
SOS 655.128936
SRD 42.875425
STD 23726.613079
STN 24.531355
SVC 10.02742
SYP 126.705707
SZL 18.803912
THB 37.703052
TJS 10.628811
TMT 4.012138
TND 3.337812
TOP 2.760076
TRY 53.257148
TTD 7.771034
TWD 36.355741
TZS 3015.963923
UAH 51.481152
UGX 4170.926637
USD 1.146325
UYU 45.818209
UZS 13761.632008
VES 695.398184
VND 30159.81075
VUV 135.418733
WST 3.154451
XAF 655.788237
XAG 0.017686
XAU 0.000276
XCD 3.098001
XCG 2.065269
XDR 0.806666
XOF 647.674005
XPF 119.331742
YER 273.517259
ZAR 18.861706
ZMK 10318.306372
ZMW 20.541803
ZWL 369.116182
  • CMSC

    0.0500

    22.37

    +0.22%

  • CMSD

    0.0000

    22.29

    0%

  • NGG

    -1.2400

    79.44

    -1.56%

  • RBGPF

    -0.5300

    60.61

    -0.87%

  • BCE

    0.0000

    23.28

    0%

  • BTI

    -0.5800

    58.91

    -0.98%

  • BCC

    3.8500

    74.66

    +5.16%

  • RELX

    -0.8300

    31.18

    -2.66%

  • GSK

    -1.4800

    50.67

    -2.92%

  • JRI

    0.0500

    12.67

    +0.39%

  • VOD

    -0.2300

    14.3

    -1.61%

  • BP

    -1.0400

    39.1

    -2.66%

  • RYCEF

    -0.0300

    18.4

    -0.16%

  • RIO

    -2.5900

    100.08

    -2.59%

  • AZN

    -2.9600

    174.93

    -1.69%

Repeat hacks highlight Australia's cyber flaws
Repeat hacks highlight Australia's cyber flaws / Photo: Muhammad FAROOQ - AFP

Repeat hacks highlight Australia's cyber flaws

Inadequate privacy safeguards and the stockpiling of sensitive customer information have made Australia a lucrative target in the eyes of foreign hackers, cybersecurity experts told AFP following a series of major data breaches.

Text size:

Medibank, Australia's largest private health insurer, recently confirmed that hackers had accessed the data of 9.7 million current and former customers, including medical records related to drug abuse and pregnancy terminations.

Telecom company Optus fell prey to a data breach of similar scale in late September, during which the personal details of up to 9.8 million people were accessed.

Both incidents sit comfortably among the largest data breaches in Australian history.

Australian National University cybersecurity expert Thomas Haines said many companies had been hoarding personal data that they should not have been hanging on to.

"There was a famous line for a while: Data is the new oil," he told AFP.

"If data is the new oil, then we're living the era of the weekly oil spill."

Haines contrasted Australia's approach with that of the European Union, which in 2018 adopted sweeping privacy reforms limiting how organisations collect, use and store personal data.

"There have got to be incentives in place to stop companies hoarding data they don't need, or to penalise those companies for big leaks. Europe has done this," he said.

"At the moment the business incentives are basically along the lines of: Let's just keep a whole bunch of data."

Haines said Medibank appeared to be an exception, in that most of the sensitive information within its databases had been stored for good reason.

- Hacking 'for profit' -

Australia's comparatively weak safeguards against identity theft meant it was also easier to exploit stolen personal information, Haines said.

"All they need to know is your passport, your driver's licence and some other things -- and then I can start taking out loans in your name."

Haines said European countries such as Norway had much more stringent requirements involving face-to-face contact.

Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said most hackers were searching for particular types of data.

"For-profit hackers are going after healthcare data, they're going after identity data and credentials to access systems," he told AFP.

"There is a profit motivation there, otherwise they wouldn't be risking jail and prosecution."

The Medibank hackers this week started leaking stolen data to a dark web forum, after the company refused to pay a US$9.7 million (Aus$15 million) ransom.

The Optus breach led to the theft of customers' names, birth dates, and passport numbers.

- Russia blamed -

Australian Federal Police Commissioner Reece Kershaw on Friday blamed the Medibank cyberattack on a team of hackers based in Russia.

"We believe those responsible for the breach are in Russia," he told reporters.

"Our intelligence points to a group of loosely affiliated cyber criminals who are likely responsible for past significant breaches in countries across the world."

Medibank data leaked to the dark web so far has included hundreds of potentially-compromising medical records related to drug addiction, alcohol abuse and sexually-transmitted infections.

Home Affairs Minister Clare O'Neil conceded on Friday the country's cyber defences had not always been up to scratch.

University of Sydney data researcher Jane Andrew said one major flaw was that Australian companies were not always obliged to report data breaches.

"There are heaps of data breaches happening all the time that we don't hear anything about," she told AFP.

"Companies have been gathering data because it's seen to be valuable, without fully understanding the potential risks."

(T.Burkhard--BBZ)