Select Page

Incident: Snow Brand Australia confirms SafePay ransomware attack | Cyberdaily.au

Incident: Snow Brand Australia confirms SafePay ransomware attack | Cyberdaily.au

Australian Manufacturing Ransomware Attack, 22 November 2024

Victorian based Snow Brand Australia confirms SafePay ransomware attack

Stolen 24 gigabytes, including financial data invoices, purchase orders, and details of retail partners. Also employee data, medical certificates, superannuation details, and Medicare applications.

Source: Snow Brand Australia confirms SafePay ransomware attack | Cyberdaily.au

View more incidents relating to the Manufacturing Manufacturing sector and incidents from Victoria.

Summary

Snow Brand Australia has confirmed a recent ransomware attack by the SafePay ransomware gang, impacting some of its employee data. The attack was listed on SafePay’s darknet leak site, alongside 23 other victims. The gang, which appears to be a new operation possibly based in Russia, published an archived dataset of almost 24 gigabytes, including financial data such as invoices, purchase orders, and details of the company’s business with various retail partners. Also included are some employee data, such as medical certificates, superannuation details, and Medicare applications

Statements

A Snow Brand spokesperson stated, “Snow Brand recently experienced a cyber incident where unusual activity was detected on our network. We immediately secured our network and initiated an investigation to understand what happened, including any impact to information.”

The Australian Cyber Security Centre and the Office of the Australian Information Commissioner have been notified, and the company has communicated with individuals impacted by the data breach. The spokesperson added, “We otherwise confirm our systems are secure, and Snow Brand remains fully operational.”

Impact

The financial data could be used for BEC or fraud, customers of Snow Brand should take extra care when making payments. The more significant impact is the PII of employees’ data, especially the superannuation and Medicare details.

Attacker

SafePay is a new ransomware operation, with Snow Brand being one of its first victims. According to research by cyber security firm Huntress, SafePay only began operating within the last couple of months. The gang checks for systems using Cyrillic characters and aborts the attack if found, suggesting an Eastern European origin.

Conclusion

This incident underscores the increasing vulnerability of the global food industry to ransomware attacks. Cybercriminals have intensified their focus on critical industries, aiming to exploit operational dependencies on technology and data.

“Organizations in the food production sector must recognise that they are high-value targets for cybercriminals,” said a cybersecurity expert. “Investing in robust cybersecurity measures is no longer optional but essential for operational resilience.”

Industry Incidents

  • Incident: Four’N Twenty owner Patties Foods reportedly targeted in ‘data breach’ | Mumbrella
  • Incident: Yakult Australia targeted in cyber attack, employee files published on dark web | ABC News Australia
  •  


    About The Author

    Steven Kirby

    I provide independent and practical consultancy services through raising awareness and fostering the energy for change that delivers improved business management of information security governance, risk and compliance.

    Leave a Reply

    This site uses Akismet to reduce spam. Learn how your comment data is processed.

    Please follow the Source link to the original article to support the content owner. We only provide a brief summary with metadata to assist in categorisation.

    More Australian News

    OAIC’s action in relation to the 2023 Latitude Data Breach and information to update and assist individuals

    On 10 May 2023, the OAIC commenced an investigation into the personal information handling practices of the Latitude group of companies[1] (Latitude). … [...]

    China seizes sensitive F-35 parts diverted from Australia

    Washington | The Chinese government has taken possession of potentially sensitive F-35 stealth aircraft parts that were inexplicably diverted to Hong … [...]

    NAB restores systems following online outage impacting customers

    Major Australian bank NAB has restored systems following online outages that prevented customers from using their services. • Thu, 24 Sep 2026 • … [...]

    OpenAI breach strengthens Australia's case for tougher AI safety rules

    An unprecedented breach of a government website by a rogue OpenAI agent will sharpen Australia's push to impose stricter safety, transparency and … [...]

    Quest tells customers to replace passports after security breach | ABC NEWS

    The hotel company, Quest, is warning customers they may need to replace their driver's licences and passports. It comes after a cyber hack last month exposed swathes of personal information, [...]

    Why did it take OpenAI three months to report the Medicare hack? | ABC NEWS

    The federal government has raised concerns about uncontrolled and unauthorised AI activity after an AI model infiltrated a Medicare platform owned by Services Australia. The OpenAI agent accessed data not [...]

    OpenAI agent hacked into Medicare to access data, prime minister says | ABC NEWS

    Prime Minister Anthony Albanese has revealed an AI agent hacked into an Australian Medicare portal earlier this year. The OpenAI agent reportedly gained unauthorised access to private and public data [...]

    Health data attack the 'first' government hack by autonomous AI, researchers say

    A swarm of OpenAI rogue AI agents appear to have gone on a spree of trying to access Australian government health data, in what some researchers say … [...]

    Australian Medicare data portal "infiltrated" by OpenAI agent

    Key points An OpenAI agent gained unauthorised access to both public and non-public files on a Medicare statistics reporting portal, Anthony Albanese … [...]

    OpenAI hacked Medicare portal, Prime Minister Anthony Albanese says

    Prime Minister Anthony Albanese has revealed an AI agent hacked into an Australian Medicare data portal earlier this year. Speaking in New York, Mr … [...]

    Quest Apartment Hotels tells customers to replace passports and licences after security breach

    Quest Apartments has advised customers affected by a data breach in August to replace their passports and driver's licences after its investigation … [...]

    Hacked? Qantas investigating WhatsApp phishing reports

    The Flying Kangaroo and a Sydney hotel warn customers not to share payment details following suspicious messages targeting Qantas Hotels customers. • … [...]

    Shares
    Share This

    Discover more from Australian Cyber Aware

    Subscribe now to keep reading and get access to the full archive.

    Continue reading