The Fort Worth Press - Repeat hacks highlight Australia's cyber flaws

USD -
AED 3.672503
AFN 64.999987
ALL 81.750787
AMD 378.260554
ANG 1.79008
AOA 917.000259
ARS 1447.04903
AUD 1.424735
AWG 1.8025
AZN 1.705703
BAM 1.65515
BBD 2.013067
BDT 122.134821
BGN 1.67937
BHD 0.37706
BIF 2949.955359
BMD 1
BND 1.271532
BOB 6.906503
BRL 5.246497
BSD 0.999467
BTN 90.452257
BWP 13.162215
BYN 2.854157
BYR 19600
BZD 2.010138
CAD 1.365835
CDF 2200.000187
CHF 0.775835
CLF 0.021685
CLP 856.320322
CNY 6.938202
CNH 6.93846
COP 3629.16
CRC 495.478914
CUC 1
CUP 26.5
CVE 93.31088
CZK 20.630017
DJF 177.949824
DKK 6.31931
DOP 62.700992
DZD 129.735699
EGP 46.935606
ERN 15
ETB 154.846992
EUR 0.84625
FJD 2.20175
FKP 0.729917
GBP 0.730685
GEL 2.695005
GGP 0.729917
GHS 10.974578
GIP 0.729917
GMD 72.999988
GNF 8771.298855
GTQ 7.666172
GYD 209.107681
HKD 7.81225
HNL 26.40652
HRK 6.376699
HTG 131.004367
HUF 321.635502
IDR 16785
ILS 3.094805
IMP 0.729917
INR 90.426014
IQD 1309.366643
IRR 42125.000158
ISK 122.529886
JEP 0.729917
JMD 156.730659
JOD 0.708993
JPY 156.498504
KES 128.950275
KGS 87.450102
KHR 4034.223621
KMF 417.999749
KPW 899.945137
KRW 1456.205037
KWD 0.30721
KYD 0.83291
KZT 496.518171
LAK 21498.933685
LBP 89504.332961
LKR 309.337937
LRD 185.901857
LSL 15.973208
LTL 2.95274
LVL 0.60489
LYD 6.316351
MAD 9.162679
MDL 16.911242
MGA 4427.744491
MKD 52.197442
MMK 2099.936125
MNT 3569.846682
MOP 8.043143
MRU 39.687396
MUR 45.879662
MVR 15.450503
MWK 1732.791809
MXN 17.257035
MYR 3.932009
MZN 63.749832
NAD 15.973816
NGN 1367.70203
NIO 36.779547
NOK 9.668855
NPR 144.74967
NZD 1.660595
OMR 0.384528
PAB 0.999458
PEN 3.359892
PGK 4.282021
PHP 58.950503
PKR 279.546749
PLN 3.56809
PYG 6615.13009
QAR 3.645472
RON 4.311402
RSD 99.354054
RUB 76.124402
RWF 1458.735317
SAR 3.750153
SBD 8.058101
SCR 13.714455
SDG 601.506766
SEK 8.969805
SGD 1.27184
SHP 0.750259
SLE 24.474997
SLL 20969.499267
SOS 570.224434
SRD 37.894024
STD 20697.981008
STN 20.734071
SVC 8.745065
SYP 11059.574895
SZL 15.972716
THB 31.690383
TJS 9.340239
TMT 3.51
TND 2.890703
TOP 2.40776
TRY 43.511195
TTD 6.770395
TWD 31.588998
TZS 2580.289909
UAH 43.116413
UGX 3558.598395
UYU 38.520938
UZS 12251.99609
VES 371.640565
VND 25982
VUV 119.556789
WST 2.72617
XAF 555.124234
XAG 0.011067
XAU 0.0002
XCD 2.70255
XCG 1.80131
XDR 0.68948
XOF 555.135979
XPF 100.927097
YER 238.375042
ZAR 15.97944
ZMK 9001.200716
ZMW 19.565181
ZWL 321.999592
  • SCS

    0.0200

    16.14

    +0.12%

  • RBGPF

    0.1000

    82.5

    +0.12%

  • BCC

    3.8900

    88.82

    +4.38%

  • CMSC

    -0.1400

    23.52

    -0.6%

  • GSK

    4.1550

    57.495

    +7.23%

  • NGG

    1.5100

    87.74

    +1.72%

  • RYCEF

    0.1400

    17.14

    +0.82%

  • RIO

    -0.3200

    96.05

    -0.33%

  • BTI

    0.0400

    61.91

    +0.06%

  • BCE

    0.2150

    26.315

    +0.82%

  • VOD

    0.4510

    15.701

    +2.87%

  • RELX

    -0.2600

    30.25

    -0.86%

  • AZN

    4.4600

    188.78

    +2.36%

  • BP

    0.2900

    39.11

    +0.74%

  • JRI

    0.0700

    13.19

    +0.53%

  • CMSD

    -0.0900

    23.85

    -0.38%

Repeat hacks highlight Australia's cyber flaws
Repeat hacks highlight Australia's cyber flaws / Photo: © AFP

Repeat hacks highlight Australia's cyber flaws

Inadequate privacy safeguards and the stockpiling of sensitive customer information have made Australia a lucrative target in the eyes of foreign hackers, cybersecurity experts told AFP following a series of major data breaches.

Text size:

Medibank, Australia's largest private health insurer, recently confirmed that hackers had accessed the data of 9.7 million current and former customers, including medical records related to drug abuse and pregnancy terminations.

Telecom company Optus fell prey to a data breach of similar scale in late September, during which the personal details of up to 9.8 million people were accessed.

Both incidents sit comfortably among the largest data breaches in Australian history.

Australian National University cybersecurity expert Thomas Haines said many companies had been hoarding personal data that they should not have been hanging on to.

"There was a famous line for a while: Data is the new oil," he told AFP.

"If data is the new oil, then we're living the era of the weekly oil spill."

Haines contrasted Australia's approach with that of the European Union, which in 2018 adopted sweeping privacy reforms limiting how organisations collect, use and store personal data.

"There have got to be incentives in place to stop companies hoarding data they don't need, or to penalise those companies for big leaks. Europe has done this," he said.

"At the moment the business incentives are basically along the lines of: Let's just keep a whole bunch of data."

Haines said Medibank appeared to be an exception, in that most of the sensitive information within its databases had been stored for good reason.

- Hacking 'for profit' -

Australia's comparatively weak safeguards against identity theft meant it was also easier to exploit stolen personal information, Haines said.

"All they need to know is your passport, your driver's licence and some other things -- and then I can start taking out loans in your name."

Haines said European countries such as Norway had much more stringent requirements involving face-to-face contact.

Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said most hackers were searching for particular types of data.

"For-profit hackers are going after healthcare data, they're going after identity data and credentials to access systems," he told AFP.

"There is a profit motivation there, otherwise they wouldn't be risking jail and prosecution."

The Medibank hackers this week started leaking stolen data to a dark web forum, after the company refused to pay a US$9.7 million (Aus$15 million) ransom.

The Optus breach led to the theft of customers' names, birth dates, and passport numbers.

- Russia blamed -

Australian Federal Police Commissioner Reece Kershaw on Friday blamed the Medibank cyberattack on a team of hackers based in Russia.

"We believe those responsible for the breach are in Russia," he told reporters.

"Our intelligence points to a group of loosely affiliated cyber criminals who are likely responsible for past significant breaches in countries across the world."

Medibank data leaked to the dark web so far has included hundreds of potentially-compromising medical records related to drug addiction, alcohol abuse and sexually-transmitted infections.

Home Affairs Minister Clare O'Neil conceded on Friday the country's cyber defences had not always been up to scratch.

University of Sydney data researcher Jane Andrew said one major flaw was that Australian companies were not always obliged to report data breaches.

"There are heaps of data breaches happening all the time that we don't hear anything about," she told AFP.

"Companies have been gathering data because it's seen to be valuable, without fully understanding the potential risks."

A.Maldonado--TFWP