Healthcare and finance the hardest hit by cyberattacks

“And the healthcare industry in particular is unique. If you walk into a hospital, it’s really common to see computers unlocked, and the password stuck on the computer monitor. Because you’ve got to get to that computer to get someone some medicine, and that’s a different sort of environment to other critical bits of infrastructure.”
The Federal Court last year heard allegations from The Office of the Australian Information Commissioner that one of Medibank’s IT service desk operators had saved his Medibank username and password for a number of Medibank accounts to his personal internet browser profile on his work computer. The contractor’s admin account, which was obtained by a hacker, allowed access to most of Medibank’s system.
Loading
The report revealed that business email compromise remained the top incident type in 2024. BEC is a type of phishing attack that involves criminals sending fake emails to trick people into sending money or revealing sensitive information.
Cyber espionage incidents are also going unnoticed for longer, rising to an average time to detect of more than 400 days, up from 390 in 2023. In the case of Medibank, the hacker was allegedly able to remain in the company’s network for about two months, between August and October 2022.
Krebs said that increase was largely due to a change in strategy from hackers.
“It means, overall, that defenders aren’t winning,” he said. “And rather than going for a smash and grab, bad actors are often being stealthy and slow, and sitting inside networks for ages … The Chinese in particular are doing more of that.
“Cybersecurity is hard, and unfortunately, this stuff is going to keep happening and we’re getting more of it, not less.”
Loading
The vast majority of cyber incidents are financially motivated, rather than geopolitical or espionage-related, the research found. Two-thirds (65 per cent) of attacks were financially motivated, followed by incidents where the motivation was unknown (27 per cent) and espionage (5 per cent).
Research from cybersecurity firm Surfshark found that Australia ranked 11th globally for accounts breached in 2024, with 47 million breached accounts, a rate 12-times higher than it was in 2023.
It found that one user account was breached in Australia every second throughout 2024, and since 2004, Australia has had a total of 193 million user accounts exposed.
The Market Recap newsletter is a wrap of the day’s trading. Get it each weekday afternoon.