In one of the largest cyber breaches in Australian history, MediSecure, a former provider of digital prescriptions, has revealed that hackers earlier this year stole the personal and medical data of approximately 12.9 million Australians.
This large number represents almost half of the country’s people, making it an unusually big breach. This event has raised big worries about keeping data safe and making sure companies are responsible with personal information.
The incident came to light on April 14, 2024, when MediSecure discovered that one of its database servers had been encrypted, likely by ransomware. Initially, the company did not disclose the full extent of the breach. However, recent updates from administrators have revealed the shocking scope of the data theft.
The compromised information includes a wide range of sensitive personal and medical details:
The hackers absconded with an enormous 6.5 terabytes of data, equivalent to a vast amount of textual information.
The breach has had significant consequences for both MediSecure and the affected individuals:
Administrators from FTI Consulting have stated that while the number of affected Australians is known, identifying specific individuals has proven challenging due to the vast amount of compromised data.
MediSecure cannot afford to accurately identify all affected individuals due to the complex nature of the information.
The breach report reads that “MediSecure has worked closely with the National Cyber Security Coordinator, AFP, ASD, and the Office of the Australian Information Commissioner to respond to the Incident in a way consistent with Australia’s national security interests and the community’s expectations.”
Lieutenant General Michelle McGuinness, the National Cyber Security Coordinator, has addressed the situation:
This massive data breach has raised serious concerns about data security and the protection of sensitive personal information in Australia. It highlights the need for stronger cybersecurity measures and more stringent regulations for companies handling such sensitive data.
As the situation continues to unfold, affected individuals are advised to remain vigilant against potential scams and to independently verify the authenticity of any requests for personal information.
Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…
Hackers are making some phishing pages harder to track by changing the code delivered to…
A cyber incident reportedly forced a British power plant to halt operations for about four…
Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…
TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…
A fake student resume is being used to place a remote-access tool on researchers’ Windows…