Guardian Security
UK’s state investments agency hit by data breach
Security lapse leaves sensitive information and contact details of 51 government officials exposed for 40 hours
The public body in charge of the UK’s state investments has been pushed to improve its internal security after a data breach left “high-level management information” publicly accessible for nearly two days.
UK Government Investments (UKGI), the agency that manages the taxpayers’ interest in a swathe of companies including Channel 4 and the Post Office, said the security failure also left more than 50 government officials’ personal details exposed for nearly 40 hours.
Continue reading...Hackers steal sensitive data from UK Department for Education and police
Details of parents and staff, including email addresses and phone numbers, are among data taken by cybercriminals
The Department for Education and a police database have been targeted by a cyber-attack, exposing more than 740,000 pieces of data.
Details of government officials, senior school leaders, university staff, police officers and members of the public have been taken by hackers.
Continue reading...Personal and banking details among customer data stolen in Origin Energy hack
Hackers access Australian customers’ names, addresses, dates of birth, phone numbers and some bank account details, company says
Get our breaking news email, free app or daily news podcast
Origin Energy customers’ addresses, phone numbers and partial bank account data have been accessed in a hack, the company has confirmed.
The firm has 4.8m customer accounts in Australia, providing electricity, fossil gas, LPG and internet services to homes and businesses.
Continue reading...‘Keys to the kingdom’: hackers who gained access to heart of London transport network jailed
Thalha Jubair, 20, and Owen Flowers, 19, sentenced to five and a half years each for cyber-attack that cost Transport for London £39m
The teenage hackers had London’s transport network at their mercy. Thalha Jubair and Owen Flowers had burrowed into the heart of Transport for London’s IT systems and held the “keys to the kingdom”.
TfL said the attack, which occurred between 31 August and 3 September 2024, could have caused “catastrophic damage” to its technology systems and could have led to “significant and extended transport service degradation and disruption”.
Continue reading...Australian patients’ medical records could be sold on dark web after clinics’ data breach
‘Malicious actor’ obtains sensitive data including Medicare numbers, treatment details and pathology results in cyber-attack on Partnered Health
Get our breaking news email, free app or daily news podcast
Australians’ medical records and patient information could be sold on the hidden market, an expert has warned, after a cyber-attack at one of the nation’s biggest healthcare providers.
Partnered Health revealed 21 clinics across several cities including Sydney, Melbourne and Canberra were affected when a “malicious actor” accessed its data on 23 June.
Continue reading...