Select Page

Australian Cyber Aware

Providing Australian and New Zealand news and services on cybersecurity, information security, privacy, and AI security.
Vendor-neutral, press release-free, and advertisement-free.

Please follow the Source link to the original article to support the content owner. We only provide a summary with metadata to assist in categorisation.

Monthly Australian Cyber News Summaries

Australian Cyber Aware – As It Was 2607 – July 2026

Australian Cyber Aware – As It Was 2606 – June 2026. Aggregated listing of Australian and New Zealand cybersecurity, privacy, and AI risks developments identified during June 2026. It includes cybersecurity incidents, regulatory updates, news stories, audit findings, and broader industry developments relevant to business and government audiences.

Australian Cyber Aware – As It Was 2606 – June 2026

Australian Cyber Aware – As It Was 2606 – June 2026. Aggregated listing of Australian and New Zealand cybersecurity, privacy, and AI risks developments identified during June 2026. It includes cybersecurity incidents, regulatory updates, news stories, audit findings, and broader industry developments relevant to business and government audiences.

Loading

Email Subscription

Australian Info & Cyber Security News

Exclusive: New Zealand Sotheby’s International Realty investigating cyber security incident

Prolific hacker 2019 claims hack of a luxury Kiwi real estate firm, but the company says the hacker is overstating the extent of the breach. • Mon, 24 … [...]

Public backlash over police AI surveillance trial | A Current Affair

An Australian-first trial of live facial recognition technology in WA has led to 18 arrests in just seven days, but privacy experts are sounding the alarm. (Broadcast AUGUST 15, 2026) [...]

Origin energy data breach update | Slump in Inghams’ annual profit

An update on last month's Origin Energy data breach, which impacted around 900 thousand customers. The company says 60 full bank account numbers and 100 identity document numbers were accessed, [...]

The industry speaks: Scam Awareness Week 2026

The theme for this year’s Scam Awareness Week – which runs from 24 to 28 August – is “No one’s just a number”, and that’s certainly true of the … [...]

Have I Been Pwned: Oz Hair and Beauty Data Breach

Have I Been Pwned In August 2026, Australian beauty retailer Oz Hair and Beauty was the target of an xpl0itrs extortion attack. The group subsequently … [...]

Dozens of Origin Energy customers' full bank details, ID numbers accessed in July breach

Origin Energy says as many as 60 customers had their full bank account numbers accessed by a hacker in July. Last month, Origin confirmed a major … [...]

Exclusive: Ransomware newcomers list South Australia’s Ramsey Bros as hacking victim

The Storm ransomware group claims to have hacked an Australian farm machinery supplier and has allegedly published customer data and vehicle … [...]

Oz Hair and Beauty confirms cyber incident to customers

Aussie hair and beauty business Oz Hair and Beauty has disclosed to customers that it has suffered a cyber incident. • Thu, 20 Aug 2026 • … [...]

NSW drivers licence photos could be part of national database under new laws

The New South Wales government is planning to join a national facial recognition service, aimed at preventing identity fraud, as part of a wider bill … [...]

Quest Apartment Hotels customers' personal data exposed in security breach

Quest Apartment Hotels says it is investigating a security breach that has affected customers' personal data. In an email to customers, seen by ABC … [...]

Fake ABC News articles are promoting scams. The money leads to an international fraud network

Hooked up to a drip and awaiting surgery, Rodger was running out of options. "You guys have all of my money tied up," he texted his broker. "I need … [...]

Exclusive: Patient data potentially compromised in alleged dental clinic data breach

INC Ransom cyber extortion group shares patient X-rays, specialist reports, and correspondence on the dark web after claiming a breach of a Victorian … [...]

Exclusive: SIA Medical Centre confirms it is investigating cyber incident involving patient data

A Victorian medical centre is responding to a ransomware incident after the Rhysida cyber extortion group claimed to have thousands of patient … [...]

Threat actors have claimed a cyber attack on an Australian beauty retailer, having posted data they allegedly stole from the company. • Tue, 18 Aug … [...]

CBA upgrades its third-party risk management

In summary CBA is five to six weeks from migrating 5000 suppliers onto ServiceNow's third-party risk management platform, completing a shift that … [...]

Widespread Wearables: what the $89 Kmart smart glasses mean for your organisation

The $89 Anko Smart Glasses sold out nationally in under one week, bringing discreet recording capability to the mass market. With the… [...]

On July 31, 2026, authorities from the United States, Japan, the Republic of Korea, Australia, Canada, France, Germany, Italy, the Netherlands, New… [...]

Australian Cyber Incidents and Audits Reports

August 2026  So Far

Tower InsuranceClaim 22-Aug-26 NZ
[Unconfirmed] Coinbasecartel puts Tower Insurance Into Its victim feed
New Zealand-based Tower Insurance has been listed on the threat actor Coinbasecartel's ransomware site. No details or evidence have been presented. 

Quest Apartment HotelsConfirmed 19-Aug-26 AU
Quest Apartment Hotels customers' personal data exposed in security breach
In an email to customers, seen by ABC News, Quest said the compromised data related to records from before June 2025 and included full names, email addresses and other contact details.

Brighton East Dental ClinicPublished 18-Aug-26 AU VIC
Exclusive: Patient data potentially compromised in alleged dental clinic data breach
INC Ransom cyber extortion group shares patient X-rays, specialist reports, and correspondence on the dark web after claiming a breach of a Victorian dental clinic, Brighton East Dental Clinic.

SIA Medical Centre Published 18-Aug-26 AU VIC
Exclusive: SIA Medical Centre confirms it is investigating cyber incident involving patient data
Victorian-based SIA Medical Centre is responding to a ransomware incident after the Rhysida cyber extortion group claimed to have thousands of patient records.

Oz Hair and BeautyPublished 18-Aug-26 AU NSW
Exclusive: Oz Hair and Beauty confirms cyber incident
Oz Hair & Beauty was listed on the dark web leak site of a threat actor “xpl0itrs”, which claimed to have stolen 2,100,000 customer records containing names, email addresses, home addresses, phone numbers and the last four digits of active gift cards. The threat actor did not post any corroborating evidence.

Ramsey BrosClaim 18-Aug-26 AU SA
[Unconfirmed] Storm listing puts a farm-equipment dealer in the ransomware crosshairs
Threat actor Storm names South Australian farming equipment dealer Ramsey Bros as a victim. The report provided sample screenshots of files as evidence.

Westco Motors CairnsClaim 18-Aug-26 AU QLD
[Unconfirmed] Storm names motor dealer Westco Motors Cairns as ransomware victim
Westco Motors Cairns has appeared in a new victim listing associated with Storm, putting the Cairns dealership into the public frame of a ransomware and extortion event. Some screenshots of files were presented as evidence.

Might KingdomClaim 17-Aug-26 AU SA
[Unconfirmed] An extortion claim by Direwolf has been made against South Australian games developer Mighty-Kingdom
Threat actor Direwolf has made a claim against South Australian games developer Mighty-Kingdom. No clear evidence was posted in the claim.

Ollies PlaceClaim 14-Aug-26 AU NSW
[Unconfirmed] Ollies Place Kidswear has been listed by thegentlemen ransomware group
New South Wales retailer Ollies Place Kidswear has been listed on TheGentleman's breach site. No details of the breach or sample files could be located.

MidlandPublished 14-Aug-26 AU NSW
Exclusive: Australian truck trailer company Midland among dozens of victims listed by Cl0p cyber extortion group
Midland was listed on 12 August, with Cl0p claiming to have accessed half a gigabyte of data, which the hackers claim includes project information and at least one database.

Nick ScaliConfirmed 14-Aug-26 AU NSW
Aussie furniture company Nick Scali discloses cyber incident
Furniture retailer Nick Scali has said it is investigating a security incident in a disclosure to the Australian Stock Exchange. The company was forced to take “certain systems” offline in the wake of a cyber attack, and customer orders were impacted.

3-point AustraliaClaim 13-Aug-26 AU VIC
[Unconfirmed] Ransomware group Storm publicly claimed responsibility for a cyberattack against 3-point Australia
Victorian project management consultancy 3-point Australia has been reported breached by threat actor Storm. Storm listed various documents, including passports, as evidence of the exfiltration.

12-Aug-26 AU NSW
AONSW Multiple Agencies
AUDIT: Internal controls and governance 2026: grants, consultants, purchasing cards and technology
Less than half of agencies reported compliance with requirements to protect and govern their risk exposure. Some agencies did not assess risks from legacy systems that cannot be patched, increasing their exposure to cyber-attack.

Audit Tasmania12-Aug-26 AU TAS
AuditTas Finance Multiple Agencies
AUDIT: Auditor-General’s Report on the Financial Statements of State Entities 2025-26, Volume 1
Our audits continue to identify recurring weaknesses in core control disciplines. These issues have been reported repeatedly over several years and should no longer be regarded as emerging challenges. They are known risks requiring sustained management attention. This includes matters on cyber security and information technology. However, due to the sensitive nature of these matters, only limited detail has been included in the report to avoid identifying potential security vulnerabilities.

Asset Flooring GroupPublished 03-Aug-26 AU VIC
Exclusive: Qilin claims breach of Victoria-based flooring firm
Asset Flooring Group was listed on the dark web by the infamous Qilin ransomware group overnight, with the threat actor claiming to have stolen 45 gigabytes of data.

 

If you believe any information in this post is inaccurate or incomplete, please contact us so we can review the matter. Parties with additional relevant information relating to the incident are also invited to get in touch.

Australian InfoSec Incidents and Audits Issues

NZ Incident: KillSec claims breach of NZ medical supplier | Cyberdaily.au

NZ Incident – Medical Ransomware Attack, 13 February 2025: KillSec claims ransomware attack on New Zealand based Obex Medical. While the exact details of the breach remain unclear, this latest incident highlights the persistent threat of ransomware groups, particularly those focused on industries like healthcare.

Loading

Information Security Memes