Select Page

Incident: Ransomware group KillSec claims hack on Clubfit Software | Cyberdaily.au

Incident: Ransomware group KillSec claims hack on Clubfit Software | Cyberdaily.au

Australian Ransomware Attack, 4 December 2024

Queensland: Ransomware group KillSec claims hack on gym management software provider Brisbane-based Clubfit Software.

Stolen data, approximately 200 gigabytes, includes sensitive information such as gym membership agreements with customer details.

Source: Ransomware group KillSec claims hack on Clubfit Software | Cyberdaily.au

View more incidents relating to the Services sector and incidents from Queensland.

The KillSec ransomware gang is claiming a potentially massive data breach affecting Clubfit Software, an Brisbane gym management software provider, with implications for hundreds of fitness facilities across the country.

KillSec, a hacktivist group known for its ransomware activities, has claimed responsibility for the attack on ClubFit. The group has listed ClubFit on its darknet leak site, asserting that they have exfiltrated a substantial amount of data. An initial leak of 1% of the stolen data, approximately 200 gigabytes, includes sensitive information such as gym membership agreements with customer details. KillSec has not specified a ransom amount but has suggested that the company can pay for data deletion. The group has also released a list of ClubFit’s clients, including 694 gyms and fitness centers, and has begun contacting them to warn of further data exposure.

The gang also shared several files as evidence of their alleged activity, including several gym membership agreements with customer names, addresses, phone numbers, emails, and emergency contact numbers. Many of the documents also appear to include signatures.

Clubfit Software has not yet publicly responded to the incident. The ransomware gang has begun contacting Clubfit’s clients directly and has threatened to publish all stolen data on their blog, escalating the pressure on the affected businesses.

 


About The Author

Steven Kirby

I provide independent and practical consultancy services through raising awareness and fostering the energy for change that delivers improved business management of information security governance, risk and compliance.

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Please follow the Source link to the original article to support the content owner. We only provide a brief summary with metadata to assist in categorisation.

More Australian News

Facial recognition technologies in retail: Clarifying the expectations

In February 2026, the Administrative Review Tribunal (ART) delivered a decision that reshapes the privacy landscape for facial recognition technology… … [...]

Encrypted apps including Signal and Discord used by criminals to lure teens with intellectual disabilities into crime

Organised crime syndicates are using encrypted digital platforms to recruit vulnerable teenagers with intellectual disabilities, low IQ and no … [...]

Exclusive: 2019 claims cyber incident on Aussie ASX and financial market research firm

A threat actor has claimed a cyber attack on an Australian finance and market research firm, allegedly having stolen personal customer data. • Tue, 09 … [...]

Exclusive: Aussie farming group launches investigation following Qilin cyber attack claims

An Australian farming and produce company has said it is investigating claims of a cyber attack after it was listed online by an infamous threat … [...]

Exclusive: Hacker claims breach of Aussie travel agency, FirstClass, 53k customers potentially impacted

The threat actor behind Melbourne International Film Festival and Australian Centre for the Moving Image hacks claims another Australian victim, … [...]

How to protect your business when your IT vendor fails

Ensure you are notified Your IT contract should require the vendor to notify you promptly if it suffers an insolvency event. Ideally, the concept of … [...]

Attorney-General's Department contacted Australian Cyber Security Centre when notified of court privacy breach

Litigants in at least 146 court matters were potentially involved in a data breach that is now the subject of a formal complaint with the privacy … [...]

Exclusive: Centrelink denies hacker claims of cyber attack

A threat actor with a reputation for targeting Australian entities has claimed a cyber attack on government service Centrelink, a claim Centrelink … [...]

Why Australian boards can't ignore AI governance anymore - AICD

Purpose-built AI is reshaping the way Australian boards lead, decide and protect the organisations they oversee. Australian boards have never carried … [...]

Travellers warned of 'reservation hijacking' on travel booking sites | ABC NEWS

Experts warn holidaymakers to be wary of scams on travel sites. This follows the travel website Booking.com being targeted in ‘reservation hijacking’. Professor Daswin de Silva says cybercriminals impersonate hotels [...]

More Australians targeted by Booking.com scams, with travellers lucrative targets for criminals

Australian travellers are being left out of pocket and fearful their personal data has been stolen amid growing concerns over the security of online … [...]

Australia warns of ClickFix attacks pushing Vidar Stealer malware

The Australian Cyber Security Center (ACSC) is warning organizations of an ongoing malware campaign using the ClickFix social engineering technique … [...]

Shares
Share This

Discover more from Australian Cyber Aware

Subscribe now to keep reading and get access to the full archive.

Continue reading