Medibank hackers publish stolen data on dark web

Share post:

The cybercriminals behind the Medibank ransomware attack appear to have published the rest of the data stolen from the Australian health insurance giant on the dark web, which appears to contain all of the data they took in a heist that affected 9.7 million customers.

While the Australian insurance group confirms the release of six zipped files of data, government officials reiterate the long-overdue need to overhaul the country’s cyber strategy.

On Thursday morning, the blog, which had been offline for several days earlier in the week, posted, “Happy Cyber Security Day!!!” Full folder was added. “The case is closed.” and included a file containing several compressed files totaling more than 5GB.

Customers’ names, birth dates, passport numbers, information on medical claims, and sensitive files related to abortions and alcohol-related illnesses were previously published by the cybercriminals.

Parts of the data released include correspondence between the cybercriminals and Medibank CEO David Koczkar, including a message in which the hackers threaten to leak “keys for decrypting credit cards,” despite Medibank’s claim that no banking or credit card information was accessed.

Medibank said on Thursday that it was analyzing the data released, but that the files appeared to contain customer information that had been compromised in the breach. According to the cybercriminals, they released the data after Medibank refused to pay their $10 million ransom demand, which was later reduced to $9.7 million, or $1 per affected customer.

The sources for this piece include an article in ZDNET.

Featured Tech Jobs

SUBSCRIBE NOW

Related articles

Google Chrome update essential for Windows users

The latest Chrome update has just been rolled out, bringing the version up to 124.0.6367.78/.79. This update is...

Cyber Security Today, Week in Review for week ending Friday, April 26, 2024

This episode features a discussion on the latest in the Change Healthcare ransomware attack, a vulnerability in an abandoned Apache open source project, the next step in Canada's proposed critical infrastructure cybersecurity law and the future

Cyber Security Today, April 26, 2024 – Patch warnings for Cisco ASA gateways and a WordPress plugin

This episode reports on the malicious plugin worm that refuses to die

Cyber Security Today, April 24, 2024 – Good news/bad news in Mandiant report, UnitedHealth admits paying a ransomware gang, and more

This episode reports on the danger of using expired open-source packages, a tool used by a Russian hacking group and passw

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways