Select Page

Incident: QIMR Berghofer Medical Research Institute caught up in Accellion breach | iTnews

Incident: QIMR Berghofer Medical Research Institute caught up in Accellion breach | iTnews

Australian Clinical Data Breach, 11 February 2021

QIMR Berghofer Medical Research Institute caught up in Accellion breach

620MB of the QIMR Berghofer data appears to have been accessed on 25 December

Company Statement: QIMR Berghofer investigates suspected Accellion data breach
Source: QIMR Berghofer Medical Research Institute, Singtel caught up in Accellion breach | iTnews
More reports from iTnews
More incidents relating to Medical and Health Care

The likely data breach, by an unknown party, appears to have been caused by a vulnerability in Accellion’s system.

QIMR Berghofer immediately shut down the software and launched an internal investigation and forensic analysis. The Institute has sent a copy of its system to Accellion, which is conducting its own forensic analysis to confirm that a data breach has occurred, and, if so, which files were accessed.

QIMR Berghofer uses the third-party file-sharing software to receive and share data from clinical trials of anti-malarial drugs. These clinical trials are conducted with healthy volunteers. No names, contact details or other personally identifiable details of study participants are in the files held in Accellion. Instead, codes are used to refer to study participants. Some of the documents in Accellion include de-identified information such as the initials, date of birth, age, gender, and ethnic group of clinical trial participants, as well as the participant codes. Some other documents include participants’ de-identified medical histories, along with their codes.

The Institute had scheduled to decommission the software next month.

QIMR Berghofer has notified the Office of the Australian Information Commissioner and the Australian Cyber Security Centre, which the Institute is a member of.

About The Author

Steven Kirby

I provide independent and practical consultancy services through raising awareness and fostering the energy for change that delivers improved business management of information security governance, risk and compliance.

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Please follow the Source link to the original article to support the content owner. We only provide a brief summary with metadata to assist in categorisation.

More Australian News

Privacy commissioner gags complainant over American Express data security findings

Australia's privacy commissioner has threatened a complainant with legal action to prevent the full disclosure of the findings of a long-running … [...]

Exclusive: Harcourts allegedly hacked by SafePay ransomware

Major Australia-based real estate firm Harcourts has allegedly suffered a cyber incident after threat actors listed the company on their dark web … [...]

ANZ says combating scams and fraud is its third-highest priority

Australian big four bank ANZ has outlined its priorities for its initiative of “securing Australia’s future”, with cyber security and combating scams … [...]

ASD draws a hard line on developers lacking security skills

Organisations should not hand software projects to developers who don't have the security skills to handle them safely: that's the blunt official … [...]

The US government can shut off access to AI at will. What does this mean for Australia?

Last Friday, US-based artificial intelligence (AI) company Anthropic received an “export control” directive from its government. The company was told … [...]

Exclusive: Qilin ransomware claims hack of Aussie K-12 tutoring provider

A prolific cyber extortionist group lists Kinetic Education as a data breach victim on the darknet. • Thu, 18 Jun 2026 • Security *]:clear-none … [...]

Phone giant 'urgently investigating' reported outages

Vodafone says it is “urgently investigating” after a number of customers found themselves locked out of the network this morning. Some Vodafone … [...]

Cyber attack shuts down two Mackay Sugar mills

A cyber security "incident" has brought the Mackay region's sugar crush to a halt. In a statement to growers and harvesting contractors, mill operator … [...]

Mackay Sugar mills shut by cyber attack hope to reopen next week

A north Queensland sugar miller crippled by a cybersecurity attack says it hopes to resume production next week. Mackay Sugar shut down two of its … [...]

Exclusive: NSW government pours cold water on ransomware claims

Nova ransomware actor claims hack of a state government, but the only evidence provided is “publicly available and historical”, the executive … [...]

Amex ordered to implement access controls after insider privacy breaches

Australian privacy commissioner Carly Kind has ordered card issuer American Express (Amex) to implement uniform account-level access and action … [...]

Tony Burke announces ‘new program of work’ under Horizon 2 of the Australian Cyber Security Strategy

Australia’s Minister for Home Affairs and Cyber Security has revealed an $89.3 million investment over four years to combat growing cyber threats. • … [...]

Shares
Share This

Discover more from Australian Cyber Aware

Subscribe now to keep reading and get access to the full archive.

Continue reading