Select Page

Incident: Snow Brand Australia confirms SafePay ransomware attack | Cyberdaily.au

Incident: Snow Brand Australia confirms SafePay ransomware attack | Cyberdaily.au

Australian Manufacturing Ransomware Attack, 22 November 2024

Victorian based Snow Brand Australia confirms SafePay ransomware attack

Stolen 24 gigabytes, including financial data invoices, purchase orders, and details of retail partners. Also employee data, medical certificates, superannuation details, and Medicare applications.

Source: Snow Brand Australia confirms SafePay ransomware attack | Cyberdaily.au

View more incidents relating to the Manufacturing Manufacturing sector and incidents from Victoria.

Summary

Snow Brand Australia has confirmed a recent ransomware attack by the SafePay ransomware gang, impacting some of its employee data. The attack was listed on SafePay’s darknet leak site, alongside 23 other victims. The gang, which appears to be a new operation possibly based in Russia, published an archived dataset of almost 24 gigabytes, including financial data such as invoices, purchase orders, and details of the company’s business with various retail partners. Also included are some employee data, such as medical certificates, superannuation details, and Medicare applications

Statements

A Snow Brand spokesperson stated, “Snow Brand recently experienced a cyber incident where unusual activity was detected on our network. We immediately secured our network and initiated an investigation to understand what happened, including any impact to information.”

The Australian Cyber Security Centre and the Office of the Australian Information Commissioner have been notified, and the company has communicated with individuals impacted by the data breach. The spokesperson added, “We otherwise confirm our systems are secure, and Snow Brand remains fully operational.”

Impact

The financial data could be used for BEC or fraud, customers of Snow Brand should take extra care when making payments. The more significant impact is the PII of employees’ data, especially the superannuation and Medicare details.

Attacker

SafePay is a new ransomware operation, with Snow Brand being one of its first victims. According to research by cyber security firm Huntress, SafePay only began operating within the last couple of months. The gang checks for systems using Cyrillic characters and aborts the attack if found, suggesting an Eastern European origin.

Conclusion

This incident underscores the increasing vulnerability of the global food industry to ransomware attacks. Cybercriminals have intensified their focus on critical industries, aiming to exploit operational dependencies on technology and data.

“Organizations in the food production sector must recognise that they are high-value targets for cybercriminals,” said a cybersecurity expert. “Investing in robust cybersecurity measures is no longer optional but essential for operational resilience.”

Industry Incidents

  • Incident: Four’N Twenty owner Patties Foods reportedly targeted in ‘data breach’ | Mumbrella
  • Incident: Yakult Australia targeted in cyber attack, employee files published on dark web | ABC News Australia
  •  


    About The Author

    Steven Kirby

    I provide independent and practical consultancy services through raising awareness and fostering the energy for change that delivers improved business management of information security governance, risk and compliance.

    Leave a Reply

    This site uses Akismet to reduce spam. Learn how your comment data is processed.

    Please follow the Source link to the original article to support the content owner. We only provide a brief summary with metadata to assist in categorisation.

    More Australian News

    Public backlash over police AI surveillance trial | A Current Affair

    An Australian-first trial of live facial recognition technology in WA has led to 18 arrests in just seven days, but privacy experts are sounding the alarm. (Broadcast AUGUST 15, 2026) [...]

    Origin energy data breach update | Slump in Inghams’ annual profit

    An update on last month's Origin Energy data breach, which impacted around 900 thousand customers. The company says 60 full bank account numbers and 100 identity document numbers were accessed, [...]

    The industry speaks: Scam Awareness Week 2026

    The theme for this year’s Scam Awareness Week – which runs from 24 to 28 August – is “No one’s just a number”, and that’s certainly true of the … [...]

    Have I Been Pwned: Oz Hair and Beauty Data Breach

    Have I Been Pwned In August 2026, Australian beauty retailer Oz Hair and Beauty was the target of an xpl0itrs extortion attack. The group subsequently … [...]

    Dozens of Origin Energy customers' full bank details, ID numbers accessed in July breach

    Origin Energy says as many as 60 customers had their full bank account numbers accessed by a hacker in July. Last month, Origin confirmed a major … [...]

    Exclusive: Ransomware newcomers list South Australia’s Ramsey Bros as hacking victim

    The Storm ransomware group claims to have hacked an Australian farm machinery supplier and has allegedly published customer data and vehicle … [...]

    Oz Hair and Beauty confirms cyber incident to customers

    Aussie hair and beauty business Oz Hair and Beauty has disclosed to customers that it has suffered a cyber incident. • Thu, 20 Aug 2026 • … [...]

    NSW drivers licence photos could be part of national database under new laws

    The New South Wales government is planning to join a national facial recognition service, aimed at preventing identity fraud, as part of a wider bill … [...]

    Quest Apartment Hotels customers' personal data exposed in security breach

    Quest Apartment Hotels says it is investigating a security breach that has affected customers' personal data. In an email to customers, seen by ABC … [...]

    Fake ABC News articles are promoting scams. The money leads to an international fraud network

    Hooked up to a drip and awaiting surgery, Rodger was running out of options. "You guys have all of my money tied up," he texted his broker. "I need … [...]

    Exclusive: Patient data potentially compromised in alleged dental clinic data breach

    INC Ransom cyber extortion group shares patient X-rays, specialist reports, and correspondence on the dark web after claiming a breach of a Victorian … [...]

    Shares
    Share This

    Discover more from Australian Cyber Aware

    Subscribe now to keep reading and get access to the full archive.

    Continue reading