Quote: Willa Cather “No one can build his security upon….”
Quotes and Memes: “No one can build his security upon the nobleness of another person” – Willa Cather
Read More
Select Page
Home » InfoSec Framework and Standards » ISO27k 2022
by Steven Kirby | Oct 8, 2023 | 5.19 Information security in supplier relationships, Awareness, Quotes | 0 |
Quotes and Memes: “No one can build his security upon the nobleness of another person” – Willa Cather
Read Moreby Steven Kirby | Jul 13, 2023 | A05.35 Independent review of information security, Australian Audit Report 2023, Compliance, Local Government, New South Wales | 0 |
Australian Audit Failure June 13 2023: NSW’s local government audit found that 47% of councils did not have a cyber security plan. IT policies and procedures were outdated or not in place at 43 councils.
Read Moreby Steven Kirby | May 31, 2023 | A05.35 Independent review of information security, Australia, Australian Audit Report 2023, Availability, Confidentiality, Defence and Military, Federal Government, Integrity, Internal Audit, YouTube | 0 |
Defence Internal Audit Finding 31 May 2023: Australian Senate questioning reveals 435 Chinese-made surveillance devices found at defence sites. Defence initially claimed there was only one device.
Read Moreby Steven Kirby | May 4, 2023 | ABC News (Australia), Australian InfoSec Incidents 2023, Confidentiality, ISO27k 8.7 Protection against malware, Medical and Health Care, New South Wales, Ransomware | 0 |
Australian Medical Ransomware Attack 04 May 2023: Crown Princess Mary Cancer Centre in Westmead Hospital in cyber attack, hackers threatening to release stolen data. The ransomware group Medusa demand, pay AUD100,000 within a seven-days.
Read Moreby Steven Kirby | May 2, 2023 | Australia, Australian InfoSec Incidents 2023, Confidentiality, ISO27k 8.7 Protection against malware, Law & Legal, Ransomware, The Guardian | 0 |
UPDATED Australian Law Firm Ransomware Attack, 02 May 2023: Australian law firm HWL Ebsworth hit by Russian-linked Blackcat ransomware attack. Tasmanian Government and Office of the Australian Information Commissioner hit as clients. Hacking 4TB of data including IDs, finance reports, accounting data, client documents and credit card details.
Read Moreby Steven Kirby | Mar 29, 2023 | A05.35 Independent review of information security, Australian Audit Report 2023, Availability, Compliance, Confidentiality, Integrity, Local Government, State Government, Western Australia | 0 |
West Australian Councils Audit Report 29 March 2023: Western Australia Auditor General’s Local Government Information Security Audit 2021-22 reports 324 control weaknesses. Cyber security concerns as council’s network rack found in staff toilet.
Read Moreby Steven Kirby | Mar 22, 2023 | A05.35 Independent review of information security, Australian Audit Report 2023, Availability, Compliance, Confidentiality, Integrity, State Government, Western Australia | 0 |
West Australian State Government Audit Report March 2023: Auditor General’s State Government Information Systems Audit 2021-22 566 control weaknesses 34 significant. Cases: malicious insiders no MFA, outage from an unauthorised device, former employee accessing finance system one month after termination.
Read Moreby Steven Kirby | Mar 16, 2023 | A05.35 Independent review of information security, Australian Audit Report 2023, Availability, Compliance, Confidentiality, Integrity, Queensland, State Government | 0 |
Queensland Audit Report 16 March 2023: Queensland Audit Office’s State Entities 2022 reports deficiencies in information systems. Only 33 per cent of departments have an effective system managing information security risks.
Read Moreby Steven Kirby | Feb 27, 2023 | A05.35 Independent review of information security, Australian Audit Report 2023, Availability, Compliance, Confidentiality, Integrity, iTnews, Local Government, State Government, Victoria | 0 |
Victorian Local Government Audit Report 27 February 2023: Victoria audit reports a significant rise in IT control weaknesses in council systems. Calls for Essential Eight adoption.
Read Moreby Steven Kirby | Nov 5, 2022 | ABC News (Australia), Australian InfoSec Incidents 2022, Availability, Confidentiality, Integrity, ISO27k 8.7 Protection against malware, Managed Services Provider, State Government, Victoria | 0 |
Australian Cyber Attack November 2022: Technology group providing services to Victorian government departments hit by a cyber attack. The company says hackers have revealed a sample “of what is believed to be stolen data”
Read Moreby Steven Kirby | Nov 2, 2022 | Agriculture and Farming, Australian InfoSec Incidents 2022, Availability, Building and Construction, Confidentiality, Human Resources, Integrity, ISO27k 8.7 Protection against malware, iTnews, SaaS - Software as a Service | 0 |
Australian Ransomware November 2022: Infrastructure operator APA Group, and agribusiness Viterra caught up in Frontier ransomware attack. Other previously unreported incidents, Indigenous Land and Sea Corporation and Workskil Australia.
Read Moreby Steven Kirby | Oct 28, 2022 | Australian InfoSec Incidents 2022, Availability, Confidentiality, Integrity, ISO27k 8.7 Protection against malware, iTnews, Privacy Breach, Queensland, Ransomware, Real Estate and Property Management | 0 |
Australian Ransomware Attack, 28 October 2022: Gold Coast Australian: Strata management firm SSKB is the latest company to fall victim to a ransomware attack. Attackers’ posted a ransom demand and claimed to have stolen 200GB of data.
Read Moreby Steven Kirby | Oct 23, 2022 | Australia, Australian InfoSec Incidents 2022, Confidentiality, ISO 27k 5 Organisational Controls, ISO27k 5.17 Authentication information, iTWire, Password, Privacy Breach, Utilities | 0 |
Australian Energy Utility Incident October 2022. Electricity and gas retailer EnergyAustralia has disclosed a breach of its MyAccount platform. The company says affected 323 small business and residential customers and was automated through use of a password bot.
Read Moreby Steven Kirby | Oct 10, 2022 | Australian InfoSec Incidents 2022, Availability, Confidentiality, Integrity, ISO27k 8.7 Protection against malware, IT Industry, iTWire, Privacy Breach, Queensland, Ransomware | 0 |
Australian Ransomware Attack October 2022: Singtel-owned Australian-based IT services provider Dialog hit by Windows ransomware. The attack on Dialog was carried out using the Agenda ransomware that runs only on Windows systems
Read Moreby Steven Kirby | Aug 17, 2022 | A05.35 Independent review of information security, Australian Audit Report 2022, Availability, Compliance, Confidentiality, Integrity, State Government, Western Australia | 0 |
West Australian Audit Report August 2022: Auditor General’s Local Government Financial Audit 2020-21 reports 358 information system control weaknesses. 12 of the 45 entities did not met expectations across all six control categories and 68% of the audit results were below the minimum benchmark.
Read Moreby Steven Kirby | Jul 24, 2022 | A05.35 Independent review of information security, Australian Audit Report 2022, Availability, Compliance, Confidentiality, Integrity, State Government, Western Australia | 0 |
West Australian Audit Report July 2022: Western Australia Auditor General tables the 2021 Financial Audit Results for Universities and TAFEs. OAG identified 124 information systems control weaknesses, a 20% increase 2020, 67% of the weaknesses as rated as moderate.
Read Moreby Steven Kirby | Jul 22, 2022 | A05.35 Independent review of information security, Australian Audit Report 2022, Availability, Compliance, Confidentiality, Integrity, iTnews, State Government, Victoria | 0 |
Australian Audit Report July 2022: Victorian privacy watchdog uncovers third-party infosec risks at four agencies. Agencies only partially effective at ensuring that third parties are securing public sector information.
Read Moreby Steven Kirby | Jun 22, 2022 | A05.35 Independent review of information security, Australian Audit Report 2022, Availability, Compliance, Confidentiality, Integrity, kirbyIDau News, Local Government, Western Australia | 0 |
Australian Audit Report June 2022: West Australian Local Government Information Systems Audit Report “a significant area of concern”. None of the 12 entities where we performed capability maturity assessments met benchmark.
Read Moreby Steven Kirby | Jun 16, 2022 | A05.35 Independent review of information security, Australian Audit Report 2022, Availability, Compliance, Confidentiality, Integrity, kirbyIDau News, Queensland, State Government | 0 |
Australian Audit Report June 2022: Queensland Audit Office Education 2021 Report finds “all need to strengthen their security”. Deficiencies identified with user and privilege access management, audit log and user activity monitoring.
Read Moreby Steven Kirby | Jun 10, 2022 | A05.35 Independent review of information security, Australia, Australian Audit Report 2022, Availability, Compliance, Confidentiality, Federal Government, Integrity | 0 |
Australian National Audit Office Report June 2022: Cyber basics still beyond fed gov as Essential Eight mandate looms. Audit finds most controls “still significantly below” requirement.
Read More
Home » InfoSec Framework and Standards » ISO27k 2022