-
'AI president': Trump deepfakes glorify himself, trash rivals
-
Belgium probes drone sightings after flights halted overnight
-
Five things to know about 'forest COP' host city Belem
-
World leaders to rally climate fight ahead of Amazon summit
-
Engine fell off US cargo plane before deadly crash: officials
-
Mexican leader calls for tougher sexual harassment laws after attack
-
Meghan Markle set for big screen return: reports
-
Japan deploys troops after wave of deadly bear attacks
-
FIFA announce new peace prize to be awarded at World Cup draw in Washington
-
Australia's Cummins hints at return for second Ashes Test
-
Boeing settles with one plaintiff in 737 MAX crash trial
-
Man City win as Inter stay perfect, Barca held in Champions League
-
French superstar DJ Snake wants new album to 'build bridges'
-
Barca rescue draw at Club Brugge in six-goal thriller
-
Foden hits top form as Man City thrash Dortmund
-
NBA officials brief Congress committee over gambling probe
-
Inter beat Kairat Almaty to maintain Champions League perfection
-
Newcastle sink Bilbao to extend Champions League winning run
-
Wall Street stocks rebound after positive jobs data
-
LPGA, European tour partner with Saudis for new Vegas event
-
Eyes turn to space to feed power-hungry data centers
-
Jazz lose Kessler for season with shoulder injury
-
League scoring leader Messi among MLS Best XI squad
-
MLS bans Suarez for Miami's winner-take-all playoff match
-
McIlroy appreciates PGA of America apology for Ryder Cup abuse
-
Garnacho equaliser saves Chelsea in Qarabag draw
-
Promotions lift McDonald's sales in tricky consumer market
-
Five things to know about New York's new mayor
-
Anisimova beats Swiatek to reach WTA Finals last four
-
US Supreme Court appears skeptical of Trump tariff legality
-
AC Milan post third straight annual profit on day of San Siro purchase
-
Angelina Jolie visits Ukrainian frontline city, media reports say
-
UN says forests should form key plank of COP30
-
Star designer Rousteing quits fashion group Balmain
-
Mexico's Sheinbaum steps up cartel fight after murder of anti-narco mayor
-
Attack on funeral in Sudan's Kordofan region kills 40: UN
-
Key PSG trio set for spell on sidelines
-
Democrats punch back in US elections - and see hope for 2026
-
BMW reports rising profitability, shares jump
-
US Supreme Court debates legality of Trump's tariffs
-
Bolivia Supreme Court orders release of jailed ex-president Jeanine Anez
-
Wall Street stocks rise after positive jobs data
-
'Hostage diplomacy': longstanding Iran tactic presenting dilemma for West
-
Rybakina stays perfect at WTA Finals with win over alternate Alexandrova
-
Le Garrec welcomes Dupont help in training for Springboks showdown
-
Brussels wants high-speed rail linking EU capitals by 2040
-
Swiss business chiefs met Trump on tariffs: Bern
-
At least 9 dead after cargo plane crashes near Louisville airport
-
France moves to suspend Shein website as first store opens in Paris
-
Spain's exiled king recounts history, scandals in wistful memoir
Repeat hacks highlight Australia's cyber flaws
Inadequate privacy safeguards and the stockpiling of sensitive customer information have made Australia a lucrative target in the eyes of foreign hackers, cybersecurity experts told AFP following a series of major data breaches.
Medibank, Australia's largest private health insurer, recently confirmed that hackers had accessed the data of 9.7 million current and former customers, including medical records related to drug abuse and pregnancy terminations.
Telecom company Optus fell prey to a data breach of similar scale in late September, during which the personal details of up to 9.8 million people were accessed.
Both incidents sit comfortably among the largest data breaches in Australian history.
Australian National University cybersecurity expert Thomas Haines said many companies had been hoarding personal data that they should not have been hanging on to.
"There was a famous line for a while: Data is the new oil," he told AFP.
"If data is the new oil, then we're living the era of the weekly oil spill."
Haines contrasted Australia's approach with that of the European Union, which in 2018 adopted sweeping privacy reforms limiting how organisations collect, use and store personal data.
"There have got to be incentives in place to stop companies hoarding data they don't need, or to penalise those companies for big leaks. Europe has done this," he said.
"At the moment the business incentives are basically along the lines of: Let's just keep a whole bunch of data."
Haines said Medibank appeared to be an exception, in that most of the sensitive information within its databases had been stored for good reason.
- Hacking 'for profit' -
Australia's comparatively weak safeguards against identity theft meant it was also easier to exploit stolen personal information, Haines said.
"All they need to know is your passport, your driver's licence and some other things -- and then I can start taking out loans in your name."
Haines said European countries such as Norway had much more stringent requirements involving face-to-face contact.
Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said most hackers were searching for particular types of data.
"For-profit hackers are going after healthcare data, they're going after identity data and credentials to access systems," he told AFP.
"There is a profit motivation there, otherwise they wouldn't be risking jail and prosecution."
The Medibank hackers this week started leaking stolen data to a dark web forum, after the company refused to pay a US$9.7 million (Aus$15 million) ransom.
The Optus breach led to the theft of customers' names, birth dates, and passport numbers.
- Russia blamed -
Australian Federal Police Commissioner Reece Kershaw on Friday blamed the Medibank cyberattack on a team of hackers based in Russia.
"We believe those responsible for the breach are in Russia," he told reporters.
"Our intelligence points to a group of loosely affiliated cyber criminals who are likely responsible for past significant breaches in countries across the world."
Medibank data leaked to the dark web so far has included hundreds of potentially-compromising medical records related to drug addiction, alcohol abuse and sexually-transmitted infections.
Home Affairs Minister Clare O'Neil conceded on Friday the country's cyber defences had not always been up to scratch.
University of Sydney data researcher Jane Andrew said one major flaw was that Australian companies were not always obliged to report data breaches.
"There are heaps of data breaches happening all the time that we don't hear anything about," she told AFP.
"Companies have been gathering data because it's seen to be valuable, without fully understanding the potential risks."
D.Qudsi--SF-PST