100% Locally Owned, Independent and Free

100% Locally Owned, Independent and Free

Hackers start publishing client data after health insurer refuses to pay ransom fee

Do you have a news tip? Click here to send to our news team.

‘No warning’: business fears impact of amenities build

A riverside business owner has raised concerns about the impact of a $1 million toilet block project, warning construction works could make trading almost More

Police appeal for information after alleged assault

Police are appealing for public assistance following an alleged late-night assault on the Sunshine Coast. It is alleged that a group of eight males approached More

‘On holidays’: flatmate’s claim after mum went missing

The daughter of a missing woman discovered her mother's valuables had been taken by a housemate later accused of her murder, a jury has More

‘Very bad look’: defender given three-game ban

Brisbane Lions defender Ty Gallop has been suspended for three games for a serious misconduct act he admits is a "very bad look" for More

Net-zero energy neighbourhood planned

All homes in a new residential development will feature solar and battery systems designed to generate enough renewable energy to meet household needs each More

Dozens of weapons seized in region under Jack’s Law

Police have seized multiple weapons after scanning thousands of people on the Sunshine Coast in the first year since Jack's Law was made permanent More

A ransomware group has begun posting client data stolen from Australia’s largest health insurer on the dark web.

Hundreds of names, addresses, birthdates and Medicare details were being posted under “good-list” and “naughty-list” on a blog belonging to the group.

The hackers had demanded a ransom to stop them from releasing the data, but Medibank earlier this week said it would not pay it because it would encourage further crime.
Shortly after midnight, the group posted the first lists.

“Looking back that data is stored not very understandable format (table dumps) we’ll take some time to sort it out,” they said in the early hours of Wednesday.

“We’ll continue posting data partially, need some time to do it pretty.”

Do you have an opinion to share? Submit a Letter to the Editor with your name and suburb at Sunshine Coast News via: news@sunshinecoastnews.com.au

The hackers also appeared to have revealed screenshots of private messages recently exchanged between themselves and Medibank representatives.

Medibank has previously confirmed almost 500,000 health claims were stolen by the hackers, along with personal information, when the unnamed group hacked into its system weeks ago.

Some 9.7 million current and former customers have been affected.

No credit card or banking details were accessed.

On Tuesday, the ransomware group posted to its blog that “data will be publish (sic) in 24 hours”.

“P.S. I recommend to sell (sic) medibank stocks.”

Picture: Shutterstock.

Medibank apologised again to clients past and present on Tuesday. It advised customers to be alert for any phishing scams via phone, post or email.

“We knew the publication of data online by the criminal could be a possibility but the criminal’s threat is still a distressing development for our customers,” CEO David Koczkar said on Tuesday.

Home Affairs Minister Clare O’Neil said Medibank’s decision not to pay a ransom to cyber criminals was in line with government advice.

Medibank is certainly not alone in refusing to pay a ransom demand, with a recent report finding 19 per cent of Australian companies responded to ransomware attacks by paying the fee.

Mimecast’s 2022 State of Ransomware Readiness report found 20 per cent of companies were asked to pay between $500,000 and $999,999 for their information

Some 13 per cent of the businesses surveyed said the total cost of the ransomware attacks they’d experienced was between $1 million and $2 million.

At a Senate estimates hearing on Tuesday, Australian Federal Police commissioner Reece Kershaw told businesses to make sure they contact authorities as early as possible if they suspect a possible data breach.

With the FBI now helping the AFP track down those behind the Medibank and Optus data breaches, Mr Kershaw said investigating would be long and complex.

“The longer it takes relevant agencies to be informed, the harder it is for perpetrators to be identified, disrupted or brought to justice,” he told senators.

SUBSCRIBE here now for our FREE news feed, direct to your inbox daily!

Subscribe to SCN’s free daily news email

This field is for validation purposes and should be left unchanged.
This field is hidden when viewing the form
[scn_go_back_button] Return Home
Share