The Prague Post - Repeat hacks highlight Australia's cyber flaws

EUR -
AED 4.259687
AFN 74.219641
ALL 96.015544
AMD 436.585498
ANG 2.075928
AOA 1063.429126
ARS 1615.368347
AUD 1.66306
AWG 2.090328
AZN 1.984537
BAM 1.963389
BBD 2.33619
BDT 143.133248
BGN 1.982256
BHD 0.437775
BIF 3444.256962
BMD 1.159682
BND 1.489826
BOB 8.014737
BRL 5.977579
BSD 1.159863
BTN 107.817418
BWP 15.827838
BYN 3.409995
BYR 22729.776587
BZD 2.332766
CAD 1.610828
CDF 2667.269858
CHF 0.925892
CLF 0.026931
CLP 1063.382166
CNY 7.952401
CNH 7.950202
COP 4278.787668
CRC 538.070505
CUC 1.159682
CUP 30.731586
CVE 110.894641
CZK 24.478585
DJF 206.099119
DKK 7.473106
DOP 70.461136
DZD 153.996549
EGP 63.419899
ERN 17.395237
ETB 182.649059
FJD 2.585802
FKP 0.876322
GBP 0.872644
GEL 3.107991
GGP 0.876322
GHS 12.770084
GIP 0.876322
GMD 85.234145
GNF 10175.330338
GTQ 8.873144
GYD 242.672763
HKD 9.088037
HNL 30.882575
HRK 7.53434
HTG 152.06844
HUF 381.430578
IDR 19769.918996
ILS 3.645474
IMP 0.876322
INR 107.770742
IQD 1519.184047
IRR 1525997.182086
ISK 143.788874
JEP 0.876322
JMD 182.585742
JOD 0.822216
JPY 185.129383
KES 150.81638
KGS 101.413715
KHR 4647.865028
KMF 495.184304
KPW 1043.716989
KRW 1736.090734
KWD 0.359073
KYD 0.966615
KZT 538.991726
LAK 25589.357978
LBP 103427.673762
LKR 366.006289
LRD 213.420325
LSL 19.5872
LTL 3.424241
LVL 0.70148
LYD 7.404562
MAD 10.867674
MDL 20.263888
MGA 4830.660551
MKD 61.617598
MMK 2435.46374
MNT 4143.906776
MOP 9.360981
MRU 46.491712
MUR 54.527834
MVR 17.916751
MWK 2011.23058
MXN 20.529513
MYR 4.674655
MZN 74.162028
NAD 19.600361
NGN 1604.234849
NIO 42.583906
NOK 11.190298
NPR 172.50807
NZD 2.025577
OMR 0.445878
PAB 1.159848
PEN 3.973078
PGK 5.005772
PHP 69.510946
PKR 323.551337
PLN 4.272097
PYG 7521.070925
QAR 4.227038
RON 5.096341
RSD 117.326205
RUB 90.944563
RWF 1693.136419
SAR 4.35477
SBD 9.333801
SCR 16.765879
SDG 696.968772
SEK 10.984974
SGD 1.487177
SHP 0.870062
SLE 28.531694
SLL 24317.974296
SOS 662.847792
SRD 43.422008
STD 24003.085924
STN 24.933173
SVC 10.149229
SYP 128.382143
SZL 19.575836
THB 37.701307
TJS 11.036421
TMT 4.070486
TND 3.413594
TOP 2.792237
TRY 51.712509
TTD 7.870455
TWD 37.003118
TZS 3015.174658
UAH 50.407538
UGX 4355.836458
USD 1.159682
UYU 47.041015
UZS 14177.118485
VES 549.071618
VND 30539.0784
VUV 138.286275
WST 3.208018
XAF 658.488035
XAG 0.015874
XAU 0.000246
XCD 3.1341
XCG 2.090489
XDR 0.819029
XOF 659.282815
XPF 119.331742
YER 276.642189
ZAR 19.555147
ZMK 10438.536727
ZMW 22.473187
ZWL 373.417285
  • RBGPF

    -13.5000

    69

    -19.57%

  • CMSC

    -0.0400

    22.14

    -0.18%

  • RYCEF

    -0.2400

    15.75

    -1.52%

  • GSK

    -0.5300

    55.84

    -0.95%

  • RIO

    0.6500

    94.66

    +0.69%

  • BCE

    -0.4300

    23.83

    -1.8%

  • BTI

    0.0900

    58.8

    +0.15%

  • CMSD

    -0.0600

    22.29

    -0.27%

  • NGG

    0.4600

    87.52

    +0.53%

  • BP

    -0.2400

    47.24

    -0.51%

  • RELX

    -0.2500

    33.36

    -0.75%

  • BCC

    0.9600

    74.71

    +1.28%

  • VOD

    0.1700

    15.31

    +1.11%

  • AZN

    -2.0200

    200.81

    -1.01%

  • JRI

    -0.0400

    12.69

    -0.32%

Repeat hacks highlight Australia's cyber flaws
Repeat hacks highlight Australia's cyber flaws / Photo: Muhammad FAROOQ - AFP

Repeat hacks highlight Australia's cyber flaws

Inadequate privacy safeguards and the stockpiling of sensitive customer information have made Australia a lucrative target in the eyes of foreign hackers, cybersecurity experts told AFP following a series of major data breaches.

Text size:

Medibank, Australia's largest private health insurer, recently confirmed that hackers had accessed the data of 9.7 million current and former customers, including medical records related to drug abuse and pregnancy terminations.

Telecom company Optus fell prey to a data breach of similar scale in late September, during which the personal details of up to 9.8 million people were accessed.

Both incidents sit comfortably among the largest data breaches in Australian history.

Australian National University cybersecurity expert Thomas Haines said many companies had been hoarding personal data that they should not have been hanging on to.

"There was a famous line for a while: Data is the new oil," he told AFP.

"If data is the new oil, then we're living the era of the weekly oil spill."

Haines contrasted Australia's approach with that of the European Union, which in 2018 adopted sweeping privacy reforms limiting how organisations collect, use and store personal data.

"There have got to be incentives in place to stop companies hoarding data they don't need, or to penalise those companies for big leaks. Europe has done this," he said.

"At the moment the business incentives are basically along the lines of: Let's just keep a whole bunch of data."

Haines said Medibank appeared to be an exception, in that most of the sensitive information within its databases had been stored for good reason.

- Hacking 'for profit' -

Australia's comparatively weak safeguards against identity theft meant it was also easier to exploit stolen personal information, Haines said.

"All they need to know is your passport, your driver's licence and some other things -- and then I can start taking out loans in your name."

Haines said European countries such as Norway had much more stringent requirements involving face-to-face contact.

Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said most hackers were searching for particular types of data.

"For-profit hackers are going after healthcare data, they're going after identity data and credentials to access systems," he told AFP.

"There is a profit motivation there, otherwise they wouldn't be risking jail and prosecution."

The Medibank hackers this week started leaking stolen data to a dark web forum, after the company refused to pay a US$9.7 million (Aus$15 million) ransom.

The Optus breach led to the theft of customers' names, birth dates, and passport numbers.

- Russia blamed -

Australian Federal Police Commissioner Reece Kershaw on Friday blamed the Medibank cyberattack on a team of hackers based in Russia.

"We believe those responsible for the breach are in Russia," he told reporters.

"Our intelligence points to a group of loosely affiliated cyber criminals who are likely responsible for past significant breaches in countries across the world."

Medibank data leaked to the dark web so far has included hundreds of potentially-compromising medical records related to drug addiction, alcohol abuse and sexually-transmitted infections.

Home Affairs Minister Clare O'Neil conceded on Friday the country's cyber defences had not always been up to scratch.

University of Sydney data researcher Jane Andrew said one major flaw was that Australian companies were not always obliged to report data breaches.

"There are heaps of data breaches happening all the time that we don't hear anything about," she told AFP.

"Companies have been gathering data because it's seen to be valuable, without fully understanding the potential risks."

C.Zeman--TPP