• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
australian health insurer medibank suffers breach exposing 3.9 million customers'

Australian Health Insurer Medibank Suffers Breach Exposing 3.9 Million Customers’ Data

You are here: Home / General Cyber Security News / Australian Health Insurer Medibank Suffers Breach Exposing 3.9 Million Customers’ Data
October 27, 2022

Australian wellbeing insurance coverage organization Medibank on Wednesday disclosed that the personalized facts of all of its customers experienced been unauthorizedly accessed adhering to a new ransomware attack.

In an update to its ongoing investigation into the incident, the business explained the attackers had access to “important amounts of overall health claims knowledge” as perfectly as personal data belonging to its ahm health insurance policies subsidiary and global learners.

Medibank, which is a single of the premier Australian private well being insurance policies companies, serves about 3.9 million buyers throughout the place.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


“We have proof that the felony has removed some of this details and it is now possible that the legal has stolen additional own and wellbeing promises facts,” the business additional additional. “As a outcome, we hope that the amount of affected prospects could increase substantially.”

The enterprise also mentioned it can be continuing its probe to figure out what unique info has been stolen in the attack and that it will right notify impacted clients of the matter.

The improvement comes as the incident has come to be the subject matter of an investigation by the Australian Federal Police (AFP), with Medibank acknowledging that it has been contacted by a legal actor boasting to have siphoned 200GB of details.

“That knowledge incorporates 1st names and surnames, addresses, dates of start, Medicare figures, plan numbers, phone figures, and some promises data,” it observed. “This promises info involves the spot of in which a purchaser gained medical companies, and codes relating to their prognosis and processes.”

Other uniquely identifiable private information and facts such as passport quantities with regard to intercontinental student insurance policies have also been accessed, but Medibank stressed that it found no evidence that direct debit facts have been breached.

In a independent trader announcement, Medibank mentioned it has bolstered its checking abilities to avoid these attacks in the future. It also estimated the cybercrime celebration to charge it everywhere concerning AU$25 million and AU$35 million.

Medibank consumers have been suggested to stay vigilant for any phishing or smishing frauds, with the firm pledging no cost identity checking services and economic guidance for individuals “who are in a uniquely susceptible place as a outcome of this criminal offense.”

CyberSecurity

The Medibank hack follows yet another cyberattack aimed at Australian telecom giant Optus, which resulted in the theft of nearly 2.1 million of its latest and previous consumers.

The significant-profile and detrimental info breaches have prompted the Australian govt to introduce stringent info safety rules, which include things like greater financial penalties of up to AU$50 million from the existing AU$2.2 million cap.

The new Privacy Laws Modification Bill 2022 also seeks to entrust the Australian Data Commissioner with a lot more powers to resolve privacy breaches.

“Substantial privacy breaches in new months have revealed existing safeguards are insufficient,” Lawyer-General Mark Dreyfus mentioned. “We require improved rules to control how companies handle the massive amount of facts they acquire, and larger penalties to incentivise superior habits.”

Found this write-up attention-grabbing? Stick to THN on Fb, Twitter  and LinkedIn to examine a lot more special articles we post.


Some parts of this article are sourced from:
thehackernews.com

Previous Post: «new cryptojacking campaign targeting vulnerable docker and kubernetes instances New Cryptojacking Campaign Targeting Vulnerable Docker and Kubernetes Instances
Next Post: Medibank Backtracks: All Customer Data Was Exposed to Hackers Cyber Security News»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.