-
Five factors in Arsenal's Premier League title triumph
-
Mikel Arteta: Pep protege to Premier League winner
-
How Arsenal banished 'nearly men' tag to end 22-year title wait
-
Arsenal win Premier League after Man City held by Bournemouth
-
From graduation boos to voter unease: AI anxiety grows in the US
-
Lost in Trump's climate boast: best-case scenario abandoned
-
Hantavirus cruise operator says ship not source of outbreak
-
Trump shows off ballroom site with 'drone empire' planned for roof
-
Rubio to attend NATO talks, pay first visit to India
-
Under Trump pressure, EU seeks deal to end trade standoff
-
Airbus seeks to cut peripheral expenses due to Mideast war
-
France encourages women to report rape in probes of star Bruel
-
Guardiola silent on Man City exit reports
-
Argentine researchers collect rodents for hantavirus tests
-
Iran talks making 'good progress': US VP Vance
-
Teen wonder Sooryavanshi's slams 93 to edge Rajasthan closer to IPL play-offs
-
Norway reports Europe's first case of bird flu in a polar bear
-
Italy's Ganna wins time-trial in Giro shake-up
-
EU vows help for farmers hit by Iran war fertiliser price hikes
-
Emery focused on Villa glory, not crown of Europa League 'king'
-
French govt slams 'disproportionate' Canal+ riposte to anti-Bollore petition
-
US, Iran trade threats but Trump says Tehran wants peace deal
-
Russia's Zvyagintsev sets film amid 'disaster' Ukraine war
-
UK trade minister hopes Britain will rejoin EU 'in my lifetime'
-
Race to find vaccines, treatments for Ebola strain behind outbreak
-
King Charles III bangs drum for Irish music, eyes hip-hop lesson
-
Ganna wins time-trial in Giro shake-up
-
Drone attack kills 28 at market in southern Sudan
-
Putin lands in China for trip that aims to show unshakeable ties after Trump pomp
-
Israel finance minister says ICC seeks arrest warrant against him
-
Kentucky primary vote tests Trump's grip on Republican base
-
Alcaraz withdraws from Wimbledon with wrist injury
-
Indie game plunges players into sci-fi epic 'Battlestar Galactica'
-
Trump shows off site of new $400-mn ballroom
-
Israeli troops in Iraq: what do we know?
-
Iran warns against new US attacks as Trump says held off assault
-
Oil dips, stocks mixed after Trump holds off on Iran attack
-
India rest Bumrah for one-off Test against Afghanistan
-
G7 finance ministers vow cooperation to face 'heightened risks'
-
Ghana, Ivory Coast to clash in 2027 AFCON qualifying
-
King Charles III makes unannounced visit to N. Ireland
-
Ukraine war widow buries her daughters killed by Russia
-
Ukraine war widow buries her daughers killed by Russia
-
Power of Siberia 2: The giant gas pipeline Russia wants to build to China
-
Taijul puts Bangladesh on brink of Test series win over Pakistan
-
Iran warns against renewed US attacks as Trump says held off assault
-
France says G7 finance talks 'frank, sometimes difficult'
-
England sweat on skipper Sciver-Brunt's fitness before T20 Women's World Cup
-
Ronaldo, 41, leads Portugal into his sixth World Cup
-
Stocks rise, oil dips after Trump holds off on Iran attack
Repeat hacks highlight Australia's cyber flaws
Inadequate privacy safeguards and the stockpiling of sensitive customer information have made Australia a lucrative target in the eyes of foreign hackers, cybersecurity experts told AFP following a series of major data breaches.
Medibank, Australia's largest private health insurer, recently confirmed that hackers had accessed the data of 9.7 million current and former customers, including medical records related to drug abuse and pregnancy terminations.
Telecom company Optus fell prey to a data breach of similar scale in late September, during which the personal details of up to 9.8 million people were accessed.
Both incidents sit comfortably among the largest data breaches in Australian history.
Australian National University cybersecurity expert Thomas Haines said many companies had been hoarding personal data that they should not have been hanging on to.
"There was a famous line for a while: Data is the new oil," he told AFP.
"If data is the new oil, then we're living the era of the weekly oil spill."
Haines contrasted Australia's approach with that of the European Union, which in 2018 adopted sweeping privacy reforms limiting how organisations collect, use and store personal data.
"There have got to be incentives in place to stop companies hoarding data they don't need, or to penalise those companies for big leaks. Europe has done this," he said.
"At the moment the business incentives are basically along the lines of: Let's just keep a whole bunch of data."
Haines said Medibank appeared to be an exception, in that most of the sensitive information within its databases had been stored for good reason.
- Hacking 'for profit' -
Australia's comparatively weak safeguards against identity theft meant it was also easier to exploit stolen personal information, Haines said.
"All they need to know is your passport, your driver's licence and some other things -- and then I can start taking out loans in your name."
Haines said European countries such as Norway had much more stringent requirements involving face-to-face contact.
Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said most hackers were searching for particular types of data.
"For-profit hackers are going after healthcare data, they're going after identity data and credentials to access systems," he told AFP.
"There is a profit motivation there, otherwise they wouldn't be risking jail and prosecution."
The Medibank hackers this week started leaking stolen data to a dark web forum, after the company refused to pay a US$9.7 million (Aus$15 million) ransom.
The Optus breach led to the theft of customers' names, birth dates, and passport numbers.
- Russia blamed -
Australian Federal Police Commissioner Reece Kershaw on Friday blamed the Medibank cyberattack on a team of hackers based in Russia.
"We believe those responsible for the breach are in Russia," he told reporters.
"Our intelligence points to a group of loosely affiliated cyber criminals who are likely responsible for past significant breaches in countries across the world."
Medibank data leaked to the dark web so far has included hundreds of potentially-compromising medical records related to drug addiction, alcohol abuse and sexually-transmitted infections.
Home Affairs Minister Clare O'Neil conceded on Friday the country's cyber defences had not always been up to scratch.
University of Sydney data researcher Jane Andrew said one major flaw was that Australian companies were not always obliged to report data breaches.
"There are heaps of data breaches happening all the time that we don't hear anything about," she told AFP.
"Companies have been gathering data because it's seen to be valuable, without fully understanding the potential risks."
D.Qudsi--SF-PST