Generated by All in One SEO v4.9.10, this is an llms.txt file, used by LLMs to index the site. # Australian Cyber Security Magazine Australia's Leading Cyber Security Magazine ## Sitemaps - [XML Sitemap](https://australiancybersecuritymagazine.com.au/sitemap.xml): Contains all public & indexable URLs for this website. ## Posts - [CyberCX Joins Global Cyber Threat Alliance](https://australiancybersecuritymagazine.com.au/cybercx-joins-global-cyber-threat-alliance/) - CyberCX has been announced as the newest member of the Cyber Threat Alliance (CTA). CyberCX Chief Strategy Officer Alastair MacGibbon said this announcement is timely given the complex cyber challenges being faced by organisations both in the Australia and New Zealand region and around the world. “At a time when the global threat landscape continues - [Skills Gap and Diversity in Cyber Security](https://australiancybersecuritymagazine.com.au/skills-gap-and-diversity-in-cyber-security/) - Purple Team Australia, a collaborative partnership of industry experts, academia, supported by Australian Government funding, is launching a national workforce development program. This program is focused on addressing the cybersecurity skills gap whilst increasing diversity within the sector. Following a response of more than 230 applications, the successful students commence the five-month training and education - [Australia’s New National Cyber Security Coordinator](https://australiancybersecuritymagazine.com.au/australias-new-national-cyber-security-coordinator/) - The federal government has announced the appointment of Air Marshal Darren Goldie AM CSC as the inaugural National Cyber Security Coordinator. Air Marshal Goldie has served his country with distinction for more than 30 years through various roles with the Royal Australian Air Force, most recently as Air Commander Australia. As the Air Commander Australia, - [Big Four Bank Data Lost in HWL Ebsworth Cyber-Attack](https://australiancybersecuritymagazine.com.au/big-four-bank-data-lost-in-hwl-ebsworth-cyber-attack/) - Written by staff writer. At least four Australian banks are caught up in a major ransomware attack on law firm HWL Ebsworth. In recent days, Westpac, NAB, the Commonwealth Bank, and ANZ are among the many public and private sector entities who may have had data stolen. In April, the BlackCat ransomware gang (also known - [Australian IT Leaders Doubt AI Readiness](https://australiancybersecuritymagazine.com.au/australian-it-leaders-doubt-ai-readiness/) - More than one-third of Australian IT leaders (35%) believe their existing IT infrastructure is not fully prepared for the demands of artificial intelligence (AI) technology, despite its widespread adoption across industries, according to the Equinix 2023 Global Tech Trends Survey. The survey, which examined IT leaders’ responses to AI advances in their organisations, comes after - [Anonymous Sudan Hacktivist Group Behind Microsoft DDoS Attack](https://australiancybersecuritymagazine.com.au/anonymous-sudan-hacktivist-group-behind-microsoft-ddos-attack/) - Written by staff writer. Microsoft has confirmed that the hacktivist group Anonymous Sudan were behind a distributed denial of service (DDoS) attack on its Outlook, OneDrive, and cloud platforms earlier this month. Cybersecurity analysts initially believed Anonymous Sudan to be a cohort of religiously motivated hackers from Sudan who have been conducting DDoS attacks since - [Doubling Down on Email Security with Data Sovereignty](https://australiancybersecuritymagazine.com.au/doubling-down-on-email-security-with-data-sovereignty/) - Check Point Software Technologies is launching a Managed Security Service Providers (MSSP) program with access to local data centres in Australia, specifically for its Check Point Harmony Email & Collaboration Solution. Through the establishment of a local instance for these Check Point solutions, Check Point’s MSSP partners in Australia will be able to securely store - [Security and Risk Management – Is a Mindset Change Needed?](https://australiancybersecuritymagazine.com.au/security-and-risk-management-is-a-mindset-change-needed/) - Written by Simon Ractliffe, Regional General Manager - ANZ, Qualys. Boards are increasingly concerned about security and risk following the significant investments they have made in digital services over the past few years and the recent high-profile breaches that have occurred here in Australia. It is expected around 40 percent of boards will have established - [Public Comment: Cybersecurity Framework for Genomic Data](https://australiancybersecuritymagazine.com.au/public-comment-cybersecurity-framework-for-genomic-data/) - The National Cybersecurity Center of Excellence (NCCoE) has released for public comment the initial public draft of NIST Internal Report (NIST IR) 8467, Cybersecurity Framework Profile for Genomic Data. The comment period is now open through July 17, 2023. About the Report The Cybersecurity Framework (CSF) Profile for Genomic Data provides voluntary guidance to help organizations manage, - [One in three ANZ organisations still pay ransomware demands, Commvault research says](https://australiancybersecuritymagazine.com.au/one-in-three-anz-organisations-still-pay-ransomware-demands-commvault-research-says/) - Commvault has released research suggesting organisations across Australia and New Zealand continue to pay ransomware demands despite uncertainty over whether data will be returned or business operations restored. The company’s State of Data Resilience ANZ 2026 report found 34% of organisations that experienced a ransomware attack paid the ransom demand. Of those that paid, 36% - [NSW audit finds rising repeat control issues across major agencies](https://australiancybersecuritymagazine.com.au/nsw-audit-finds-rising-repeat-control-issues-across-major-agencies/) - The NSW Auditor-General has tabled a report examining internal controls and governance across 26 of the NSW Government’s largest agencies, finding an increase in repeat issues and weaknesses in oversight across grants, consultancy engagements, purchasing cards, cyber security and artificial intelligence. The report says interim audits identified weaknesses in internal controls and governance at 15 - [Macquarie Cloud Services signs Microsoft Azure datacentre optimisation agreement](https://australiancybersecuritymagazine.com.au/macquarie-cloud-services-signs-microsoft-azure-datacentre-optimisation-agreement/) - Macquarie Cloud Services, part of Macquarie Technology Group, has signed a Microsoft Datacentre Optimisation (DCO) agreement aimed at increasing its customers’ use of Microsoft Azure over the next three years. Microsoft is forecasting Macquarie Cloud Services’ Azure consumption spend will reach up to $278 million over that period, based on the provider’s roadmap and progress - [Equinix launches Managed Solutions in Australia](https://australiancybersecuritymagazine.com.au/equinix-launches-managed-solutions-in-australia/) - Equinix has launched Equinix Managed Solutions (EMS) in Australia, offering managed private cloud and infrastructure services aimed at organisations dealing with longer hardware delivery times, higher equipment costs and requirements to keep data and processing onshore. Equinix said the Australian rollout comes as organisations increase investment in AI, cloud modernisation and hybrid IT strategies while - [Recorded Future’s Insikt Group reports 44% rise in high-impact CVEs in July](https://australiancybersecuritymagazine.com.au/recorded-futures-insikt-group-reports-44-rise-in-high-impact-cves-in-july/) - Recorded Future’s Insikt Group has released its CVE report for July 2026, identifying 85 high-impact vulnerabilities that it says Australia and New Zealand organisations should prioritise for remediation. The group said 36 of the 85 received a “Very Critical” Recorded Future Risk Score. Insikt Group said the July total represented a 44% increase from the - [Superannuation sector plans cyber incident response exercise](https://australiancybersecuritymagazine.com.au/superannuation-sector-plans-cyber-incident-response-exercise/) - The Gateway Network Governance Body (GNGB), working with industry partners, will host “Operation Honey Bee 2026”, a superannuation cyber security incident response exercise scheduled for this month. GNGB CEO and Exercise Director Michelle Bower said the exercise, now in its fourth year, was aimed at strengthening cooperation across the superannuation community in preparing for and - [ISACA Sydney Conference – 50th Anniversary](https://australiancybersecuritymagazine.com.au/isaca-sydney-conference-50th-anniversary/) - A showcase conference celebrating 50 years of Enabling Digital Trust and Leading What Comes Next. Held 6 August 2026 at the Sheraton Grand Sydney Hyde Park, the landmark event celebrates 50 years of leadership, contribution, and impact across cybersecurity, privacy, audit, risk, and governance. This flagship conference also served as an Oceania showcase, bringing together - [Australian startup Quantum Lock applies quantum physics to detect cyberattacks on embedded devices](https://australiancybersecuritymagazine.com.au/australian-startup-quantum-lock-applies-quantum-physics-to-detect-cyberattacks-on-embedded-devices/) - Australian startup Quantum Lock says it is using quantum mechanics to verify whether embedded devices in critical infrastructure have been compromised, aiming to provide continuous monitoring rather than relying on traditional defensive controls. The company is led by UNSW researcher-turned-founder Dr Jesse Laeuchli, who points to recent cyber incidents affecting operational technology and connected systems - [South Australia launches Royal Commission into artificial intelligence](https://australiancybersecuritymagazine.com.au/south-australia-launches-royal-commission-into-artificial-intelligence/) - South Australia will establish a Royal Commission into artificial intelligence, with Premier Peter Malinauskas positioning the inquiry as a major examination of how the rapidly advancing technology will reshape the economy, public services and society. Announced on 10 August, the Royal Commission is expected to begin in October 2026 and deliver its final report by - [Experian research flags AI-data readiness gap among Australian lenders](https://australiancybersecuritymagazine.com.au/experian-research-flags-ai-data-readiness-gap-among-australian-lenders/) - New research from Experian suggests Australian financial institutions are moving quickly to deploy AI in credit and fraud risk workflows, but many say their underlying data is not ready to support broader use in core decision-making. The Australian findings from Experian’s “Connected Intelligence: Scaling AI with Trusted Data and Decisioning” report show 72% of surveyed - [Cyber incidents hit 71% of Australian organisations as AI reshapes the threat landscape, MinterEllison report](https://australiancybersecuritymagazine.com.au/cyber-incidents-hit-71-of-australian-organisations-as-ai-reshapes-the-threat-landscape-minterellison-report/) - Australian organisations are experiencing cyber incidents at record rates, with 71% of surveyed organisations reporting an incident in the past 12 months, according to MinterEllison’s latest Perspectives on Cyber Risk report. The 11th annual report, based on a survey of 150 senior decision makers, found AI-enabled threats have become the second-leading cyber concern for the - [Collaboration, Trust and Brave Leadership: AI's Next Phase Will Be Defined by Partnerships](https://australiancybersecuritymagazine.com.au/collaboration-trust-and-brave-leadership-ais-next-phase-will-be-defined-by-partnerships/) - Australia's AI transformation is entering a new phase. The conversation is no longer about experimenting with chatbots or testing isolated proof-of-concepts. Instead, organisations are beginning to ask a far more important question: how do we turn artificial intelligence into measurable business outcomes? That challenge was at the centre of a panel discussion featuring David McKeering, - [Barracuda warns calendar invites are being used for phishing via .ics files](https://australiancybersecuritymagazine.com.au/barracuda-warns-calendar-invites-are-being-used-for-phishing-via-ics-files/) - Barracuda researchers are warning organisations to treat calendar invitations as a phishing risk, as attackers increasingly abuse iCalendar (.ics) files to bypass controls that focus primarily on email bodies and traditional attachments. In an analysis by Associate Threat Analyst Soundharya Bharani Poomalai, Barracuda said malicious calendar events can carry phishing links, QR codes and business-themed - [The Vulnerability Was Never Unknown. It Was Assigned.](https://australiancybersecuritymagazine.com.au/the-vulnerability-was-never-unknown-it-was-assigned/) - By Amit Shingala, CEO, Motadata Read the public accounts of breaches that began with a known software flaw and the same pattern repeats. The CVE had been disclosed months earlier. It had appeared in a scan report that somebody had read. What did not happen was the fix, and more precisely,what did not happen was - [ACMA takes Optus to Federal Court over September 2025 Triple Zero outage](https://australiancybersecuritymagazine.com.au/acma-takes-optus-to-federal-court-over-september-2025-triple-zero-outage/) - The Australian Communications and Media Authority has commenced Federal Court proceedings against Optus Mobile Pty Limited, alleging the telecommunications provider breached its legal obligations during the September 2025 network outage that prevented hundreds of Australians from accessing the Triple Zero emergency call service. The legal action relates to the 18 September 2025 outage, when a - [Monash University partners with CyberCX on new Bachelor of CyberAI degree](https://australiancybersecuritymagazine.com.au/monash-university-partners-with-cybercx-on-new-bachelor-of-cyberai-degree/) - Monash University has announced a partnership with CyberCX, part of Accenture, to co-design and co-deliver a new undergraduate degree focused on cybersecurity and artificial intelligence. The three-year Bachelor of CyberAI (Industry Co-Lab) was launched by Monash University Vice-Chancellor and President Professor Sharon Pickering and CyberCX CEO and founder John Paitaridis. The university said the course - [ANZ SMEs adopt AI widely, but trust lags, Arctic Wolf report finds](https://australiancybersecuritymagazine.com.au/anz-smes-adopt-ai-widely-but-trust-lags-arctic-wolf-report-finds/) - Small and midsize businesses (SMEs) across Australia and New Zealand are adopting artificial intelligence at high rates, but many remain reluctant to trust it for autonomous cybersecurity decisions, according to new research commissioned by Arctic Wolf. The company’s 2026 AI & Cybersecurity Trends Report, based on a global survey of 1,350 security and IT decision-makers - [Department of War suspends CMMC Phase II requirements during review](https://australiancybersecuritymagazine.com.au/department-of-war-suspends-cmmc-phase-ii-requirements-during-review/) - The U.S. Department of War has announced the immediate suspension of Phase II of the Cybersecurity Maturity Model Certification (CMMC) program, marking a shift in how cybersecurity requirements will be implemented across the Defence Industrial Base (DIB). The decision pauses the introduction of mandatory third-party CMMC Level 2 certification requirements, originally scheduled to begin on - [Origin Energy confirms customer data breach after unauthorised access](https://australiancybersecuritymagazine.com.au/origin-energy-confirms-customer-data-breach-after-unauthorised-access/) - Origin Energy has confirmed that customer information has been accessed and disclosed following a cybersecurity incident, with the company working to determine the full scale of the breach and notify affected customers. In an update issued on 23 July, Origin said it had confirmed “unauthorised access and disclosure of some customers' data” after initially announcing - [Five layers of risk AI security strategies should cover](https://australiancybersecuritymagazine.com.au/five-layers-of-risk-ai-security-strategies-should-cover/) - Tony Burnside, SVP and Head of APAC, Netskope In most organisations, AI is now operating at multiple levels. The speed of AI innovation and adoption is forcing security teams to build AI security capabilities that address these multiple layers, which is proving challenging. According to our 2026 AI Risk and Readiness Report, 73% of companies - [Four steps to prepare hybrid cloud before Q-day arrives](https://australiancybersecuritymagazine.com.au/four-steps-to-prepare-hybrid-cloud-before-q-day-arrives/) - Red Hat has published a blog outlining steps organisations can take to prepare hybrid cloud environments for “Q-day”, the point at which quantum computers could break widely used public key cryptography. The post argues that preparation should begin now due to the risk of “harvest now, decrypt later” activity, in which attackers collect encrypted traffic, - [CMMI Institute launches AI maturity model to address governance gaps](https://australiancybersecuritymagazine.com.au/cmmi-institute-launches-ai-maturity-model-to-address-governance-gaps/) - CMMI Institute has launched a new AI Maturity (AIM) model, positioning it as a framework to help organisations assess and improve their ability to govern AI as investment and deployment accelerate. The announcement points to a widening gap between AI adoption and governance maturity, citing ISACA’s AI Pulse Poll, which found 38% of organisations have - [Macquarie Government launches Microsoft Azure practice for state and federal agencies](https://australiancybersecuritymagazine.com.au/macquarie-government-launches-microsoft-azure-practice-for-state-and-federal-agencies/) - Macquarie Government has launched a Microsoft Azure cloud, security and AI services practice aimed at Australian federal and state government agencies, marking the first time the company has brought its public cloud services to government. The new offering is designed to align with government security classifications, including Protected-level requirements, and extends Macquarie Government’s existing cybersecurity - [Secure Code Warrior research links AI-generated code to an average of 15 vulnerabilities per codebase](https://australiancybersecuritymagazine.com.au/secure-code-warrior-research-links-ai-generated-code-to-an-average-of-15-vulnerabilities-per-codebase/) - Secure Code Warrior has released research claiming AI-generated software code contains an average of 15 confirmed vulnerabilities per codebase, including 4.3 rated “severe”, based on an assessment of 1,760 complete codebases created by 16 large language models (LLMs). The company said the findings underpin its newly launched SCW AI Trust Index, which it describes as - [Veeam appoints Philip Goldie as Vice President for Australia and New Zealand](https://australiancybersecuritymagazine.com.au/veeam-appoints-philip-goldie-as-vice-president-for-australia-and-new-zealand/) - Veeam has appointed Philip Goldie as Vice President for Australia and New Zealand, as the company points to growing enterprise focus on AI adoption and associated data risks. Goldie brings more than 20 years of technology leadership experience, with roles spanning Microsoft, Okta and SafetyCulture, according to the company. He most recently worked at SafetyCulture, - [DigiCert survey finds 81% of Australian organisations hit by AI security incidents or vulnerabilities](https://australiancybersecuritymagazine.com.au/digicert-survey-finds-81-of-australian-organisations-hit-by-ai-security-incidents-or-vulnerabilities/) - DigiCert research suggests AI-related security problems are already affecting many Australian enterprises, with 81% of surveyed organisations reporting either an AI-related incident or identifying AI-related vulnerabilities. The survey of Australian IT and cybersecurity decision-makers found rapid uptake of AI tools alongside what it described as uneven governance and monitoring. According to the findings, 76% of - [Cybersecurity Across Disciplines: Why Every Profession Needs Cyber Capability](https://australiancybersecuritymagazine.com.au/cybersecurity-across-disciplines-why-every-profession-needs-cyber-capability/) - By Faraz Khan During my international Fellowship on cybersecurity education, one lesson became increasingly clear: some of the most important cybersecurity decisions are made by people who do not work in cybersecurity. A health worker handles patient information. A community-services employee manages digital case records. A hospitality worker processes customer data. A manufacturing employee uses - [Partnered Health confirms cyber incident affecting patient information across national clinic network](https://australiancybersecuritymagazine.com.au/partnered-health-confirms-cyber-incident-affecting-patient-information-across-national-clinic-network/) - Partnered Health has confirmed that a cyber security incident resulted in unauthorised access to data held by some clinics across its national healthcare network, with patient personal and health information potentially compromised. According to the healthcare provider’s official statement, the organisation became aware on 23 June 2026 that “a malicious actor accessed some of our - [ACS welcomes planned Office of AI, calls for focus on skills and recognition](https://australiancybersecuritymagazine.com.au/acs-welcomes-planned-office-of-ai-calls-for-focus-on-skills-and-recognition/) - The Australian Computer Society (ACS) has welcomed the Federal Government’s intention to establish an Office of AI within the Department of the Prime Minister and Cabinet, describing it as an important step towards coordinated national leadership on artificial intelligence. In a statement dated 15 July 2026, ACS said the proposed move would bring together the - [Australian critical infrastructure urged to tighten router security after Russian cyber warning](https://australiancybersecuritymagazine.com.au/australian-critical-infrastructure-urged-to-tighten-router-security-after-russian-cyber-warning/) - Australia’s critical infrastructure operators have been urged to review the security of routers, firewalls and other network infrastructure after the Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) joined a multinational advisory warning of sustained cyber activity by Russian state-sponsored actors targeting internet-facing networking devices. Released in coordination with cyber security and intelligence agencies - [ACSC warns of large-scale campaign exploiting CMS vulnerabilities in Australia](https://australiancybersecuritymagazine.com.au/acsc-warns-of-large-scale-campaign-exploiting-cms-vulnerabilities-in-australia/) - The Australian Signals Directorate’s Australian Cyber Security Centre (ACSC) has issued an alert about a “large-scale exploitation campaign” targeting web content management systems (CMS), warning that many Australian businesses have already been impacted. The ACSC said the campaign involves attackers scanning websites for vulnerabilities in CMS platforms and plugins to deploy webshells, which can provide - [Optus trials network automation to restore mobile coverage during outages](https://australiancybersecuritymagazine.com.au/optus-trials-network-automation-to-restore-mobile-coverage-during-outages/) - Optus says it has completed a live network trial of automated “Cell Coverage Compensation” technology designed to detect mobile outages and restore service within minutes, and in some cases seconds. The telco said the trial, completed in June 2026 and conducted on its live network in Sydney and Brisbane, used Nokia’s MantaRay SON solution to - [Telstra mobile outage disrupts services across Australia](https://australiancybersecuritymagazine.com.au/telstra-mobile-outage-disrupts-services-across-australia/) - A major outage on Telstra's mobile network has disrupted voice and data services across Australia, affecting millions of customers, businesses, transport operators and organisations that rely on Australia's largest telecommunications provider. The disruption began during the early hours of Wednesday morning, with customers across multiple states reporting that their mobile devices had entered 'SOS Only' - [CISOs urged to focus on fundamentals as AI speeds vulnerability discovery](https://australiancybersecuritymagazine.com.au/cisos-urged-to-focus-on-fundamentals-as-ai-speeds-vulnerability-discovery/) - Harman Kaur, chief technology officer at Tanium, has argued security leaders should prioritise improving foundational IT and security operations over buying new tools as AI accelerates cyber risk. In an opinion piece circulated to media, Kaur points to early June trials in Australia where a select group of organisations were granted access to the Mythos - [Preparing for post-quantum cryptography and quantum-safe security](https://australiancybersecuritymagazine.com.au/preparing-for-post-quantum-cryptography-and-quantum-safe-security/) - We speak with Sam Tseitkin, Founder and CEO of ExeQuantum on the back of warnings that organisations need to be preparing a clear path towards quantum-safe security. With exclusive sector partners such as Cyber in Space, Exequantum is combining expertise in cryptographic discovery and post-quantum migration with a deeper understanding of the operational and regulatory - [NIST releases SP 800-18r2 guidance on security, privacy and supply chain risk management plans](https://australiancybersecuritymagazine.com.au/nist-releases-sp-800-18r2-guidance-on-security-privacy-and-supply-chain-risk-management-plans/) - The US National Institute of Standards and Technology (NIST) has released Special Publication (SP) 800-18r2 (Revision 2), a guidance update on how organisations develop and maintain key risk management documentation for information systems. Titled Developing Security, Privacy, and Cybersecurity Supply Chain Risk Management Plans for Systems, the revision expands system planning to cover three related - [SMS Sender ID Register goes live to help protect Australians from scams](https://australiancybersecuritymagazine.com.au/sms-sender-id-register-goes-live-to-help-protect-australians-from-scams/) - The Australian Communications and Media Authority (ACMA) says its new SMS Sender ID Register has commenced, in a move aimed at reducing text message impersonation scams by making it clearer whether branded SMS messages are verified. Sender IDs are the names that appear at the top of some SMS messages to identify the sender, such - [Investment scams double during winter as hackers turn friends into financial influencers](https://australiancybersecuritymagazine.com.au/investment-scams-double-during-winter-as-hackers-turn-friends-into-financial-influencers/) - Financial scam attempts in Australia more than doubled during winter over the past two years, according to new data from Gen, the company behind Norton. Gen said it blocked more than 460,000 financial scam attacks during winter months in Australia, representing a 105% increase compared to the average across the rest of the year. The - [Cloudflare report finds rising cyberattacks on civil society groups, including Australian organisations](https://australiancybersecuritymagazine.com.au/cloudflare-report-finds-rising-cyberattacks-on-civil-society-groups-including-australian-organisations/) - Cyberattacks increasingly aimed at civil society organisations are expanding beyond the types of threats traditionally associated with governments and large enterprises, according to new data published by Cloudflare. The company has released its latest Project Galileo report to mark the initiative’s 12th anniversary, detailing cyber threats faced by organisations working in the public interest worldwide, - [ACMA’s 2026–27 compliance priorities focus on protecting consumers](https://australiancybersecuritymagazine.com.au/acmas-2026-27-compliance-priorities-focus-on-protecting-consumers/) - The Australian Communications and Media Authority (ACMA) has set out its compliance and enforcement priorities for 2026–27, signalling a focus on areas it says pose a high risk of harm to consumers and where new or strengthened rules are being implemented. The regulator said its priorities for the year target sectors where industry compliance is - [ASD to retire Essential Eight within two years, consults on replacement](https://australiancybersecuritymagazine.com.au/asd-to-retire-essential-eight-within-two-years-consults-on-replacement/) - The Australian Signals Directorate and the Australian Cyber Security Centre say the Essential Eight cyber security framework will be retired within the next two years and replaced by a new “Essentials series”. According to information published by ASD and ACSC, the change is intended to address limits of the current Essential Eight model, which was - [ACS appoints Dr Prins Ralston as Chief Executive Officer](https://australiancybersecuritymagazine.com.au/acs-appoints-dr-prins-ralston-as-chief-executive-officer/) - The Australian Computer Society (ACS) has appointed Dr Prins Ralston as chief executive officer, effective immediately. ACS said Ralston has been a member for 35 years and previously served as ACS president. He has been interim CEO since March. In a statement, ACS president Beau Tydd said the appointment would provide “stability, continuity, and clear - [Five Eyes cyber agencies warn AI is accelerating cyber risk](https://australiancybersecuritymagazine.com.au/five-eyes-cyber-agencies-warn-ai-is-accelerating-cyber-risk/) - Leaders of the Five Eyes cybersecurity agencies have issued a joint call for organisations to treat artificial intelligence as an immediate driver of cyber risk, warning that AI is increasing the speed, scale and sophistication of attacks while also offering defenders new capabilities. In the statement, the agencies said frontier AI models are expected to - [ACSC warns of reported credential exposure affecting Fortinet firewalls and VPN gateways](https://australiancybersecuritymagazine.com.au/acsc-warns-of-reported-credential-exposure-affecting-fortinet-firewalls-and-vpn-gateways/) - The Australian Cyber Security Centre (ACSC) has issued an alert about public reporting of a “widespread malicious campaign” targeting Fortinet firewalls and VPN gateways, warning that exposed credentials and credential-based attacks could enable unauthorised access to devices and connected networks. In the alert, dated 18 June 2026, the ACSC said it was aware of reporting - [Why Insider Threats Remain One of Cybersecurity's Biggest Risks](https://australiancybersecuritymagazine.com.au/why-insider-threats-remain-one-of-cybersecuritys-biggest-risks/) - By Danny Jenkins, ThreatLocker CEO and Co-founder Many cybersecurity frameworks are built around a flawed concept. It is the idea of placing implicit trust in someone with credentialed access. The May 2026 data breach involving a government insider in New South Wales and the exposure of AWS credentials in the U.S. are quite different at - [Aon study finds Australia facing AI skills and benefits gaps as adoption rises](https://australiancybersecuritymagazine.com.au/aon-study-finds-australia-facing-ai-skills-and-benefits-gaps-as-adoption-rises/) - A new study by Aon has found Australian organisations are adopting artificial intelligence at pace but lagging in workforce readiness, with gaps in skills availability, employee benefits and pay transparency. The Australian findings from Aon’s inaugural 2026 Human Capital Trends Study show 76 per cent of organisations have either fully deployed or are piloting AI. - [Healthcare cyber investment rises, but confidence in recovery lags: Wasabi survey](https://australiancybersecuritymagazine.com.au/healthcare-cyber-investment-rises-but-confidence-in-recovery-lags-wasabi-survey/) - Australian healthcare organisations are increasing spending on cyber resilience and data protection, but many IT professionals remain unsure they could keep critical data operational after a cyberattack, according to the 2026 Wasabi Global Cloud Storage Index. The research found about two-thirds (70%) of healthcare organisations have adopted technologies to protect critical data, including the use - [‘Digital duty of care’ push puts AI accountability in focus](https://australiancybersecuritymagazine.com.au/digital-duty-of-care-push-puts-ai-accountability-in-focus/) - Following the release of a new Federal Government discussion paper, calls are growing for stronger safeguards to ensure artificial intelligence is used responsibly across workplaces and society. The paper proposes a “digital duty of care” — a framework that would require companies developing and deploying AI to take responsibility for preventing harm, improving transparency, and - [Clayton Utz report urges boards to address third-party risk and AI rollout gaps](https://australiancybersecuritymagazine.com.au/clayton-utz-report-urges-boards-to-address-third-party-risk-and-ai-rollout-gaps/) - Australian boards risk missing critical technology and supply chain vulnerabilities due to limited visibility over third-party and sub-tier digital dependencies, according to a new white paper from law firm Clayton Utz. The paper, titled Closing the digital blind spot: managing third-party risk, argues that there is a growing gap between how risk is documented and - [Mackay Sugar cyber attack flagged as broader risk to Australia’s food supply chain](https://australiancybersecuritymagazine.com.au/mackay-sugar-cyber-attack-flagged-as-broader-risk-to-australias-food-supply-chain/) - A cyber attack on Mackay Sugar, described as Australia’s second-largest exporter of sugar, has been claimed by a ransomware group known as “The Gentlemen”, which the email said has more than 500 victims worldwide. The incident has been framed as a warning for the broader food supply chain, with the email noting that disruption to - [Australian organisations urged to shift to autonomous cyber defence as AI threats accelerate](https://australiancybersecuritymagazine.com.au/australian-organisations-urged-to-shift-to-autonomous-cyber-defence-as-ai-threats-accelerate/) - Australian organisations are being urged to adopt more autonomous and proactive cyber defence approaches as artificial intelligence (AI) increases both the pace and sophistication of cyber threats, according to commentary from Zak Menegazzi, APJ Director at Armis from ServiceNow. Menegazzi’s comments follow a recent Australian Cyber Security Centre (ACSC) alert warning that “frontier models” could - [Some text messages to look different from 1 July](https://australiancybersecuritymagazine.com.au/some-text-messages-to-look-different-from-1-july/) - Australians will notice some text messages look different from 1 July, when new rules take effect aimed at reducing SMS impersonation scams, according to the Australian Communications and Media Authority (ACMA). Under the SMS Sender ID Register rules, messages sent using unregistered branded sender IDs — such as a business or organisation name — will - [Willis report finds cyber insurance covers most average breach and first-party losses](https://australiancybersecuritymagazine.com.au/willis-report-finds-cyber-insurance-covers-most-average-breach-and-first-party-losses/) - More than 95% of average data breach losses and 90% of average first-party losses are adequately covered by insurance, according to a new report by Willis, a WTW business. The report, Cyber claims in Focus – Getting value from cyber insurance, analyses 5,500 cyber claims from January 2013 to January 2026 across 95 countries, covering - [NEC Australia and Exabeam expand partnership focused on behaviour analytics for security operations](https://australiancybersecuritymagazine.com.au/nec-australia-and-exabeam-expand-partnership-focused-on-behaviour-analytics-for-security-operations/) - NEC Australia and Exabeam have expanded their strategic partnership, aiming to help Australian organisations strengthen security operations and address insider risk as automation and AI adoption increases. In a statement, the companies said NEC Australia will work with Exabeam to deliver behaviour-based security analytics intended to improve threat detection, reduce investigation effort, and increase visibility - [Government launches Horizon 2 action plan for Australia’s cyber security strategy](https://australiancybersecuritymagazine.com.au/government-launches-horizon-2-action-plan-for-australias-cyber-security-strategy/) - Australia’s cyber security strategy has entered its second phase, with the federal government launching “Horizon 2” and outlining a new program of work running from 2026 to the end of 2028. Minister for Cyber Security Tony Burke said the next phase aims to address vulnerabilities beyond major businesses, with a focus on small business and - [Privacy Commissioner finds Optus breached privacy in White Pages listing matter](https://australiancybersecuritymagazine.com.au/privacy-commissioner-finds-optus-breached-privacy-in-white-pages-listing-matter/) - Australia’s Privacy Commissioner Carly Kind has found Optus interfered with the privacy of tens of thousands of customers whose details were incorrectly published in the White Pages despite requests for unlisted numbers. Added: The Office of the Australian Information Commissioner (OAIC) said a determination issued by Kind finalises a long-running investigation first announced in August - [How Australians can spot FIFA World Cup scams](https://australiancybersecuritymagazine.com.au/how-australians-can-spot-fifa-world-cup-scams/) - Australians planning to attend the FIFA World Cup in North America next year are being warned to watch for ticketing and related scams that typically surge around major sporting events, according to an article by Geoff Schomburgk, vice president for Asia Pacific & Japan at Yubico. Schomburgk says cybercriminals are increasingly using fake resale listings, - [Microsoft, Australian Government sign MOU on cloud, cybersecurity and AI cooperation](https://australiancybersecuritymagazine.com.au/microsoft-australian-government-sign-mou-on-cloud-cybersecurity-and-ai-cooperation/) - Microsoft and the Australian Government have signed a memorandum of understanding (MOU) intended to strengthen national digital resilience, with a focus on secure cloud infrastructure, cybersecurity, artificial intelligence and critical infrastructure protection. The agreement was signed in Canberra by Home Affairs and Cyber Security Minister Tony Burke and Microsoft President of Global Affairs Lisa Monaco. - [Phishing Has Become an Industry, And AI Is Driving Its Growth](https://australiancybersecuritymagazine.com.au/phishing-has-become-an-industry-and-ai-is-driving-its-growth/) - By Matt Caffery, Senior Solutions Architect for Australia and New Zealand at Barracuda Networks For years, cybersecurity leaders have warned that email would remain the most effective pathway into organisations, not because inboxes are inherently insecure, but because email sits at the intersection of identity,urgency, trust and human behaviour. What has changed in 2026 is - [Australians more concerned about privacy as trust in AI remains low, OAIC survey finds](https://australiancybersecuritymagazine.com.au/australians-more-concerned-about-privacy-as-trust-in-ai-remains-low-oaic-survey-finds/) - A large majority of Australians say they are more concerned about privacy than they were five years ago, according to a new survey released by the Office of the Australian Information Commissioner (OAIC). The OAIC’s Australian Community Attitudes to Privacy Survey (ACAPS) 2026 found 87% of respondents reported higher privacy concern compared with five years - [Sovereign Technology Report highlights execution pressure on public sector transformation](https://australiancybersecuritymagazine.com.au/sovereign-technology-report-highlights-execution-pressure-on-public-sector-transformation/) - Australian government and critical infrastructure organisations face growing pressure to modernise technology environments while maintaining operational control, accountability and resilience, according to new research commissioned by Kinetic IT and developed with research firm ADAPT. The report, The Sovereign Technology Report: From Complexity to Confidence, draws on surveys and executive interviews with leaders across the public - [Too Big to Fail – Hyperscale Data Centres Bring New Infrastructure Security Imperatives to Australia](https://australiancybersecuritymagazine.com.au/too-big-to-fail-hyperscale-data-centres-bring-new-infrastructure-security-imperatives-to-australia/) - By Mike Fisher* The security implications of huge data centres as an integral component of national infrastructure have moved to centre stage with the wave of investment announcements arriving on our shores. Among the latest news was the announcement CDC Data Centres signed the biggest data centre deal in Australian history, a 555 MW contract - [WFI says only a quarter of Australian farmers are considering cyber insurance](https://australiancybersecuritymagazine.com.au/wfi-says-only-a-quarter-of-australian-farmers-are-considering-cyber-insurance/) - New research from WFI Insurance has found only a quarter of Australian farmers are considering cyber insurance as a future need, compared with 70% of the broader business population. The insurer said the results suggest farmers may be underestimating cyber risk as farms adopt more connected technologies, citing Roy Morgan research that around 80% of - [The Broken Physics of Remediation - exploitation now precedes disclosure](https://australiancybersecuritymagazine.com.au/the-broken-physics-of-remediation-exploitation-now-precedes-disclosure/) - We speak with Qualys Managing Director for ANZ, Sam Salehi in the lead up to their Customer and Channel Partner event in Sydney on 28 May, 2026. With what will be a focus for customers and partners, we discuss how attackers are now exploiting vulnerabilities before they are publicly disclosed – effectively driving ‘time-to-exploit’ to - [ASD warns of device code phishing as Proofpoint tracks growing criminal toolkits](https://australiancybersecuritymagazine.com.au/asd-warns-of-device-code-phishing-as-proofpoint-tracks-growing-criminal-toolkits/) - The Australian Signals Directorate (ASD) has issued a public warning to Microsoft 365 users about device code phishing, saying it has received a number of reports of Australian users being actively targeted. The advisory comes as Proofpoint threat researchers report a rise in campaigns abusing the OAuth 2.0 device authorisation flow to gain access to - [Avanade appoints Doug Robinson as country CEO for Australia and New Zealand](https://australiancybersecuritymagazine.com.au/avanade-appoints-doug-robinson-as-country-ceo-for-australia-and-new-zealand/) - Avanade has appointed Doug Robinson as its country chief executive officer for Australia and New Zealand, effective 18 May 2026. Robinson, who is based in Australia, will lead Avanade’s business across the two countries and report to Avanade President Bhavya Kapoor, according to the company. In the announcement, Avanade said Robinson will be responsible for - [Baidam and AUSCERT sign MOU to expand cybersecurity collaboration](https://australiancybersecuritymagazine.com.au/baidam-and-auscert-sign-mou-to-expand-cybersecurity-collaboration/) - Baidam has signed a memorandum of understanding with AUSCERT to collaborate on cyber threat intelligence, incident response, phishing takedowns, security capability training and joint events. The agreement formalises a relationship the organisations say began in 2019 during NAIDOC Week and will be structured as a 12-month partnership framework. Beau Hodge, CEO of Baidam, said: “At - [Cowbell appoints Gerry Power as General Manager, Australia](https://australiancybersecuritymagazine.com.au/cowbell-appoints-gerry-power-as-general-manager-australia/) - Cowbell has appointed Gerry Power as General Manager, Australia, as the cyber insurance provider expands its local operations. The newly created role will see Power lead market development, distribution strategy and the build-out of Cowbell’s Australian operations, with a focus on broker distribution. Cowbell said Power will work alongside Anthony Wall, Head of Underwriting, Australia, - [Aon appoints Quinton Kotze as head of cyber solutions in Australia](https://australiancybersecuritymagazine.com.au/aon-appoints-quinton-kotze-as-head-of-cyber-solutions-in-australia/) - Aon has appointed Quinton Kotze as head of cyber solutions in Australia, as organisations face increasing cyber risk and a tightening market for cyber insurance and related advisory services. Based in Sydney, Kotze will lead Aon’s cyber solutions capability locally, focusing on the firm’s cyber risk strategy in alignment with its global cyber practice. He - [Equinix expands Fabric Geo Zones to Australia](https://australiancybersecuritymagazine.com.au/equinix-expands-fabric-geo-zones-to-australia/) - Equinix has expanded its Equinix Fabric “Geo Zones” capability to Australia as part of a broader rollout across five continents, positioning the feature as a way for organisations to enforce data-sovereignty requirements at the network level across hybrid and multi-cloud environments. The company said the service is designed to reduce compliance risk created by network - [Rapid7 analysis flags Cisco and Palo Alto authentication bypass vulnerabilities](https://australiancybersecuritymagazine.com.au/rapid7-analysis-flags-cisco-and-palo-alto-authentication-bypass-vulnerabilities/) - Rapid7 has published analysis of two newly disclosed authentication bypass vulnerabilities affecting enterprise networking and security platforms from Cisco and Palo Alto Networks, with both vendors urging organisations to patch affected systems. The flaws affect Cisco Catalyst SD-WAN Controller and Palo Alto Networks PAN-OS, and are significant because they target infrastructure used to manage enterprise - [Study Finds 1 in 10 Australian Organisations Could Lose Control After AI Credential Exposure](https://australiancybersecuritymagazine.com.au/study-finds-1-in-10-australian-organisations-could-lose-control-after-ai-credential-exposure/) - Australian organisations are rapidly adopting AI agents for sensitive security tasks, but a new study suggests many may lack the governance and recovery capability to manage the risks if those systems are compromised. Research published by Semperis, based on a global survey of 1,100 organisations across multiple industries, examined AI’s impact on the attack surface - [Experts question whether Budget cyber measures match rising AI-enabled threats](https://australiancybersecuritymagazine.com.au/experts-question-whether-budget-cyber-measures-match-rising-ai-enabled-threats/) - Cyber security executives have raised concerns that the Federal Budget’s digital and AI initiatives may not be matched by sufficient investment in cyber resilience, as government and critical infrastructure face escalating threats. In comments provided for Budget coverage, SentinelOne Area Vice President Australia and New Zealand Jason Duerden said the Budget included “positive steps on - [Infosys opens security operations centre in North Sydney to expand ANZ cyber services](https://australiancybersecuritymagazine.com.au/infosys-opens-security-operations-centre-in-north-sydney-to-expand-anz-cyber-services/) - Infosys has launched its first dedicated Global Security Operations Center (GSOC) in Australia, based at its North Sydney office, as it expands cybersecurity service delivery across Australia and New Zealand. The company said the GSOC will provide 24/7 monitoring, threat detection and incident response, combining local security staff with Infosys’ global security operations. It will - [ISACA poll finds AI adoption outpaces governance and ROI](https://australiancybersecuritymagazine.com.au/isaca-poll-finds-ai-adoption-outpaces-governance-and-roi/) - A global ISACA survey of more than 3,400 digital trust professionals has found most organisations believe staff are already using artificial intelligence, but many report weak governance, limited visibility of return on investment, and uncertainty about how to respond to AI-related incidents. ISACA’s 2026 AI Pulse Poll found 90 percent of respondents believe employees are - [Fastly appoints Bruce Bennie as area vice president for Australia and New Zealand](https://australiancybersecuritymagazine.com.au/fastly-appoints-bruce-bennie-as-area-vice-president-for-australia-and-new-zealand/) - Fastly has appointed Bruce Bennie as Area Vice President, Sales for Australia and New Zealand, based in Sydney. The company said Bennie will oversee Fastly’s business across the region, focusing on growth as well as customer and partner relationships. Bennie joins Fastly after more than 30 years in IT sales and business management across the - [Queensland education breach highlights third-party cyber risk concerns](https://australiancybersecuritymagazine.com.au/queensland-education-breach-highlights-third-party-cyber-risk-concerns/) - A third-party data breach disclosed by the Queensland Department of Education has renewed scrutiny on cyber risks tied to vendors and online learning platforms used across the education sector. In commentary circulated after the department’s announcement, BlueVoyant managing director for ANZ Kash Sharma said incidents affecting education organisations are increasingly linked to suppliers and external - [Report warns Australian AI agent adoption is outpacing security controls](https://australiancybersecuritymagazine.com.au/report-warns-australian-ai-agent-adoption-is-outpacing-security-controls/) - Australian organisations are moving to deploy AI agents faster than they can secure them, with 88 per cent expecting autonomous systems to outpace their security safeguards within the next 12 months, according to new research from Rubrik Zero Labs. The findings, drawn from a survey of more than 1,600 IT and security leaders, point to - [Sektor signs Semperis distribution agreement across Australia and New Zealand](https://australiancybersecuritymagazine.com.au/sektor-signs-semperis-distribution-agreement-across-australia-and-new-zealand/) - Sektor has signed a distribution partnership with hybrid identity security specialist Semperis, expanding its cybersecurity portfolio across Australia and New Zealand. Under the agreement, Sektor will distribute Semperis’ identity-focused cyber resilience and crisis response products through its partner network, targeting protection and recovery for Active Directory and hybrid identity environments. The companies positioned the agreement - [Arxis implements APRA-aligned resilience framework for Credit Union SA](https://australiancybersecuritymagazine.com.au/arxis-implements-apra-aligned-resilience-framework-for-credit-union-sa/) - Arxis says it has implemented an APRA-aligned operational resilience framework for Credit Union SA, as mutuals and other smaller financial institutions face growing regulatory and cyber security expectations without the budgets of major banks. The Adelaide-based security services provider said the work focused on operational resilience, third-party risk, operational mapping and cyber resilience, as Credit - [Liverton Security launches SGE Plus on NZ Government Marketplace](https://australiancybersecuritymagazine.com.au/liverton-security-launches-sge-plus-on-nz-government-marketplace/) - Liverton Security has launched SGE Plus, a Secure Government Email framework now available on the New Zealand Government (NZGovt) Marketplace. The Wellington-based company said the offering is aimed at New Zealand government agencies and regulated commercial organisations, including those in finance, healthcare, infrastructure and government supply chains, seeking to strengthen email security. Email remains a - [BeyondTrust expands Identity Security Insights availability to Australia](https://australiancybersecuritymagazine.com.au/beyondtrust-expands-identity-security-insights-availability-to-australia/) - BeyondTrust has expanded regional availability of its Identity Security Insights product to Australia, citing growing risks linked to “non-human identities” and agentic AI, and rising compliance demands across regulated sectors. The company said the Australian deployment is locally hosted and intended to support operational and regulatory requirements, including obligations under the Security of Critical Infrastructure - [Proof Beats Promise: The Trust Crisis AI Is Creating](https://australiancybersecuritymagazine.com.au/proof-beats-promise-the-trust-crisis-ai-is-creating-2/) - We speak with Lakshmi Hanspal, Chief Trust Officer, DigiCert in Sydney. AI systems now generate content indistinguishable from reality, make decisions that shape business outcomes, and act autonomously across critical infrastructure. They operate at machine speed, across environments that are often opaque even to their creators. And yet, most organisations are still relying on trust - [DigiCert launches AI Trust architecture for agents, models and content](https://australiancybersecuritymagazine.com.au/digicert-launches-ai-trust-architecture-for-agents-models-and-content/) - DigiCert has announced a new “AI Trust” architecture aimed at helping organisations secure AI systems and verify AI-generated outputs, as enterprises increasingly deploy autonomous agents and third-party models and face growing concerns about content authenticity. The company said the architecture is designed to provide cryptographic verification across AI agents, AI models and digital content, with - [Proof Beats Promise: The Trust Crisis AI Is Creating](https://australiancybersecuritymagazine.com.au/proof-beats-promise-the-trust-crisis-ai-is-creating/) - By Lakshmi Hanspal, Chief Trust Officer, DigiCert Artificial intelligence is transforming enterprise systems, quietly dismantling the foundations of digital trust. For decades, organisations operated on a set of assumptions: if a system was inside the perimeter, if a user had credentials, if a process passed validation, it could be trusted. That model is breaking down - [APRA calls for step-change in AI risk management across financial sector](https://australiancybersecuritymagazine.com.au/apra-calls-for-step-change-in-ai-risk-management-across-financial-sector/) - The Australian Prudential Regulation Authority (APRA) has urged banks, insurers and superannuation trustees to lift how they manage artificial intelligence-related risks, warning that current governance and operational practices are not keeping pace with rapid AI adoption. In a letter to industry published today, APRA said governance, risk management, assurance and operational resilience practices were lagging - [Australia Post partners with Alpha Level to expand AI-driven cyber threat detection](https://australiancybersecuritymagazine.com.au/australia-post-partners-with-alpha-level-to-expand-ai-driven-cyber-threat-detection/) - Australia Post has partnered with AI security firm Alpha Level to apply machine learning to cyber threat detection across its national network, including systems used by licensed post offices and small businesses connected to the organisation. According to the company, the partnership is intended to help its security team collect, process and analyse “billions of - [Macquarie Technology Group and Macquarie University partner on cyber and cloud research](https://australiancybersecuritymagazine.com.au/macquarie-technology-group-and-macquarie-university-partner-on-cyber-and-cloud-research/) - Macquarie Technology Group and Macquarie University have announced a partnership aimed at supporting collaboration across research, technology and innovation, including in cyber security, cloud computing, data centre engineering and technology policy. The agreement sets out a framework for joint research, industry engagement and knowledge exchange between the two organisations, which are both based in the - [How To Keep Up With Security As AI Deployments Increase In Complexity And At Pace](https://australiancybersecuritymagazine.com.au/how-to-keep-up-with-security-as-ai-deployments-increase-in-complexity-and-at-pace/) - By Tony Burnside, VP APJ, Netskope For Australian organisations, the conversation around AI security has shifted rapidly. It was only recently that copy-pasting sensitive corporate data into public generative AI (genAI) was the primary concern. Today, while those risks remain, the frontier of AI risk is moving at pace. We are transitioning to an era - [Macquarie Government appoints former Defence advisor Dr Chris Peiris as Microsoft Security and Azure lead](https://australiancybersecuritymagazine.com.au/macquarie-government-appoints-former-defence-advisor-dr-chris-peiris-as-microsoft-security-and-azure-lead/) - Macquarie Government has appointed Dr Chris Peiris as its Microsoft Security and Azure Lead, as the company seeks to expand its work with federal and state government customers. The company said Peiris brings more than 20 years’ cybersecurity experience and a background spanning government and industry roles, including work with the Australian Defence Force, Microsoft, - [Semperis expands Purple Knight identity assessment tool with government cloud support](https://australiancybersecuritymagazine.com.au/semperis-expands-purple-knight-identity-assessment-tool-with-government-cloud-support/) - Semperis has announced expanded capabilities for Purple Knight, its free Active Directory and Entra ID security assessment tool, positioning the update as relevant to organisations seeking to align identity security practices with Five Eyes guidance. The company said the update is aimed at hybrid identity environments spanning on-premises infrastructure and cloud platforms, which are widely - [CommBank deploys AI agent to detect emerging fraud patterns and generate rules](https://australiancybersecuritymagazine.com.au/commbank-deploys-ai-agent-to-detect-emerging-fraud-patterns-and-generate-rules/) - Commonwealth Bank says it has deployed an “agentic AI” system intended to detect emerging fraud and scam patterns in transaction and payments data and propose new detection rules to help intercept them. The bank said the work forms part of its $1 billion annual spend aimed at protecting customers from fraud, scams, cyber threats and - [WorkSec and AIDN partner to support DISP compliance for defence SMEs](https://australiancybersecuritymagazine.com.au/worksec-and-aidn-partner-to-support-disp-compliance-for-defence-smes/) - WorkSec and the Australian Industry & Defence Network (AIDN) have announced a strategic partnership aimed at helping small-to-medium enterprises (SMEs) in Australia’s defence sector meet security compliance requirements, including obligations under the Defence Industry Security Program (DISP). In a statement, the organisations said the partnership is intended to support AIDN members navigating defence contracting requirements - [NSW Government declares significant cyber incident after alleged Treasury data breach](https://australiancybersecuritymagazine.com.au/nsw-government-declares-significant-cyber-incident-after-alleged-treasury-data-breach/) - The NSW Government has declared a significant cyber incident following an alleged data breach involving a NSW Treasury staff member. Internal security monitoring detected a suspected transfer to an external server of a substantial cache of documents containing confidential commercial and financial information. The files cover multiple NSW Government departments and projects. NSW Treasury reported - [Microsoft announces A$25b Australia investment covering AI infrastructure, cyber security and training](https://australiancybersecuritymagazine.com.au/microsoft-announces-a25b-australia-investment-covering-ai-infrastructure-cyber-security-and-training/) - Microsoft has announced what it says is its largest investment in Australia to date, committing A$25 billion (US$18 billion) by the end of 2029 for new digital infrastructure, expanded cyber security collaboration with federal agencies, and a major AI skills program. The announcement was made in Sydney on 23 April alongside Prime Minister Anthony Albanese - [HAT Distribution signs exclusive Oceania distribution deal with Tailscale](https://australiancybersecuritymagazine.com.au/hat-distribution-signs-exclusive-oceania-distribution-deal-with-tailscale/) - HAT Distribution has signed an exclusive distribution partnership across Oceania with Tailscale, expanding availability of Tailscale’s secure connectivity platform to partners and customers across Australia, New Zealand and the Pacific Islands. The companies said the agreement comes as organisations move away from legacy VPN environments and look for alternative ways to connect users, devices, services - [Arctic Wolf opens gated beta for Decipio credential-theft detection tool](https://australiancybersecuritymagazine.com.au/arctic-wolf-opens-gated-beta-for-decipio-credential-theft-detection-tool/) - Arctic Wolf has announced the release of Decipio, a community-shared cybersecurity tool aimed at detecting credential theft activity inside networks, with access available to Australian organisations via a gated beta programme. Credential theft is a common initial access method in cyberattacks but can be difficult to identify early, with many organisations only detecting it after - [Privacy Commissioner: RentTech platforms must stop unfair and excessive personal information collection](https://australiancybersecuritymagazine.com.au/privacy-commissioner-renttech-platforms-must-stop-unfair-and-excessive-personal-information-collection/) - A determination by Australia’s Privacy Commissioner has found the 2Apply rental technology platform, operated by InspectRealEstate, collected excessive personal information and did so by unfair means. The findings follow a year-long investigation by the Office of the Australian Information Commissioner (OAIC). The determination requires InspectRealEstate to cease collecting certain categories of information from prospective renters, - [Protecht acquires third-party risk platform VISO TRUST](https://australiancybersecuritymagazine.com.au/protecht-acquires-third-party-risk-platform-viso-trust/) - Protecht has acquired VISO TRUST, a US-based third-party risk management platform that uses artificial intelligence, in a deal the company says supports its global expansion strategy. Protecht said VISO TRUST’s “agentic AI” capabilities will be integrated into its governance, risk and compliance platform, with a focus on third-party and fourth-party risk across vendor networks. The - [Kinetic IT appoints chief transformation officer](https://australiancybersecuritymagazine.com.au/kinetic-it-appoints-chief-transformation-officer/) - Kinetic IT has appointed Kishore Jayaram as its new chief transformation officer, creating the role as the company pursues growth and develops what it describes as “sovereign, AI-enabled” technology services. The company said the executive position would focus on expanding market presence through new sovereign digital services, strengthening partnerships, and modernising existing offerings, including the - [Australia’s data centre capital: what it means for security and infrastructure planning](https://australiancybersecuritymagazine.com.au/australias-data-centre-capital-what-it-means-for-security-and-infrastructure-planning/) - By Mike Fisher* The news that NSW aims to make itself a world-class data centre capital has major implications for architects, builders, facility managers, security companies, and financial stakeholders in the field. State Treasurer David Mookhey says NSW is positioning itself as a world leader in attracting global investment in data centres, providing the ideal - [Applus+ Laboratories to acquire Australia’s Teron Labs, expanding Common Criteria and FIPS 140 services](https://australiancybersecuritymagazine.com.au/applus-laboratories-to-acquire-australias-teron-labs-expanding-common-criteria-and-fips-140-services/) - Applus+ Laboratories has announced it will acquire Australian cybersecurity evaluation firm Teron Labs, in a move it says will expand its capabilities in product security testing and certification under the Common Criteria and FIPS 140 schemes. The companies provide evaluation services under internationally recognised certification programs used to assess the security of products including cryptographic - [Kaseya report points to tighter IT budgets and tougher growth for MSPs](https://australiancybersecuritymagazine.com.au/kaseya-report-points-to-tighter-it-budgets-and-tougher-growth-for-msps/) - Australian managed service providers (MSPs) are reporting smaller deal sizes and tighter client budgets, with a new survey from Kaseya pointing to macro-economic pressure as a factor reshaping channel growth. The findings come from Kaseya’s 2026 State of the MSP Report, based on a survey of more than 1,000 MSPs globally. In the report, Kaseya - [SentinelOne appoints Shabeel Shah as ANZ and APJ distribution channel director](https://australiancybersecuritymagazine.com.au/sentinelone-appoints-shabeel-shah-as-anz-and-apj-distribution-channel-director/) - SentinelOne has appointed Shabeel Shah as Channel Director for Australia, New Zealand and APJ Distribution, tasking him with expanding the company’s reseller and distribution partner ecosystem across the region. The company said Shah is returning to SentinelOne and brings channel and partner development experience across the cybersecurity sector, including leadership roles at Obsidian Security and - [Check Point launches Perth data residency instance for Workplace Security SASE](https://australiancybersecuritymagazine.com.au/check-point-launches-perth-data-residency-instance-for-workplace-security-sase/) - Check Point Software Technologies has announced a new Western Australia data residency instance for its Check Point Workplace Security SASE, adding a Perth point of presence (PoP) to its existing regional footprint in Sydney, Melbourne and Auckland. The company said the Perth instance is intended to support enterprise and government organisations in Western Australia seeking - [Macquarie Technology Group named APJ MSP of the Year by Netskope](https://australiancybersecuritymagazine.com.au/macquarie-technology-group-named-apj-msp-of-the-year-by-netskope/) - Macquarie Technology Group has been recognised as Asia-Pacific and Japan (APJ) managed services provider (MSP) of the Year by Netskope, according to a news release issued on 2 April 2026. The company said the award was driven by performance in its Government and Telecoms business units, and comes less than six months after Netskope and - [ACSC warns of ongoing targeting of online code repositories](https://australiancybersecuritymagazine.com.au/acsc-warns-of-ongoing-targeting-of-online-code-repositories/) - The Australian Signals Directorate’s Australian Cyber Security Centre (ACSC) has issued an updated alert warning of increased targeting of online code repositories, urging Australian organisations that maintain developer repositories, publish public software packages, or rely on third-party packages to review controls and monitor for compromise. The alert, dated 1 April 2026, says threat actors have - [ExpressVPN launches ExpressAI private AI platform with Cure53 audit](https://australiancybersecuritymagazine.com.au/expressvpn-launches-expressai-private-ai-platform-with-cure53-audit/) - ExpressVPN has launched ExpressAI, a private AI platform it says is designed to let users access AI tools without their prompts and files being used for model training. The company said ExpressAI uses confidential computing “secure enclave” technology so that conversations are decrypted only inside a cryptographically isolated environment intended to be inaccessible to the - [OAIC issues draft Children’s Online Privacy Code for public consultation](https://australiancybersecuritymagazine.com.au/oaic-issues-draft-childrens-online-privacy-code-for-public-consultation/) - The Office of the Australian Information Commissioner (OAIC) has published an exposure draft of the Children’s Online Privacy Code, proposing new requirements for agencies and organisations to consider children’s best interests before collecting, using or disclosing their personal information. The code was developed following the passage of the Privacy and Other Legislation Amendment Act in - [Compliance vs capability: an opinion on what actually protects you](https://australiancybersecuritymagazine.com.au/compliance-vs-capability-an-opinion-on-what-actually-protects-you/) - By Raif Al Bedewi A professor I deeply respect, Prof. Atif Ahmad at the University of Melbourne, once told me something that stuck. “Compliance checks if you have the right pieces on the chess board. Compliance doesn’t consider how well you play chess.” Prof. Atif Ahmad, University of Melbourne. That line has shaped how I - [Trend Micro rebrands enterprise unit as TrendAI in Australia and New Zealand](https://australiancybersecuritymagazine.com.au/trend-micro-rebrands-enterprise-unit-as-trendai-in-australia-and-new-zealand/) - Trend Micro has renamed its enterprise cybersecurity business unit to TrendAI, launching the new identity in Australia and New Zealand as organisations accelerate the use of artificial intelligence and reassess cyber risk management. In a media release, Trend Micro said TrendAI will be the name for its enterprise business unit, which it said supports 575,000 - [Rubrik announces Microsoft Defender integration and new AI governance engine](https://australiancybersecuritymagazine.com.au/rubrik-announces-microsoft-defender-integration-and-new-ai-governance-engine/) - Rubrik has announced two new product developments at RSAC 2026: an integration with Microsoft Defender aimed at speeding identity-attack recovery, and a new AI governance capability it calls the Semantic AI Governance Engine (SAGE). The Microsoft integration is designed to connect Microsoft Defender’s identity threat detection with Rubrik’s identity rollback and recovery tools, targeting a - [Armis Research Reveals Australia Experiencing the Highest Volume of Cyberwarfare Attacks of Any Country Globally](https://australiancybersecuritymagazine.com.au/armis-research-reveals-australia-experiencing-the-highest-volume-of-cyberwarfare-attacks-of-any-country-globally/) - Armis, the cyber exposure management & security company, is warning Australian organisations to immediately increase their proactive cybersecurity operations in response to the rise in cyberwarfare attacks targeting local businesses. This alert comes as 81% of Australian IT decision-makers express concern about the potential for nation-state actors to use AI to develop more sophisticated and - [Qualys discloses Ubuntu Desktop local privilege escalation vulnerability CVE-2026-3888](https://australiancybersecuritymagazine.com.au/qualys-discloses-ubuntu-desktop-local-privilege-escalation-vulnerability-cve-2026-3888/) - Security researchers at Qualys Threat Research Unit (TRU) have disclosed a local privilege escalation vulnerability affecting default installations of Ubuntu Desktop 24.04 and later. Qualys said the flaw, tracked as CVE-2026-3888, could allow an unprivileged local attacker to gain full root access by exploiting the interaction between two standard system components: snap-confine and systemd-tmpfiles. According - [Adelaide University and Cisco sign AI and cybersecurity research and education partnership](https://australiancybersecuritymagazine.com.au/adelaide-university-and-cisco-sign-ai-and-cybersecurity-research-and-education-partnership/) - Adelaide University and Cisco have signed an agreement to collaborate on artificial intelligence (AI) and cybersecurity research and education, including the creation of a Cisco Research Chair in AI Cybersecurity. The university said the partnership is intended to benefit students, researchers and industry through AI cybersecurity research, education and training. The agreement follows Adelaide University’s - [Security tips from global authority help plan logistics to reduce losses and enhance worker safety](https://australiancybersecuritymagazine.com.au/security-tips-from-global-authority-help-plan-logistics-to-reduce-losses-and-enhance-worker-safety/) - Manufacturing, distribution, and supply chain facilities form the operational backbone of modern commerce. Their interconnected warehousing, distribution, logistics, and security operations all play vital roles in the ability to meet new and emerging challenges to loss prevention while ensuring employee and contractor safety across the supply chain. Hence, it is critical to protect each link - [SentinelOne appoints Jason Duerden as ANZ Area Vice President](https://australiancybersecuritymagazine.com.au/sentinelone-appoints-jason-duerden-as-anz-area-vice-president/) - SentinelOne has appointed Jason Duerden as Area Vice President for Australia and New Zealand, as the cybersecurity company increases its focus on government agencies and organisations aligned with Australia’s Security of Critical Infrastructure (SOCI) Act. The company said the leadership change comes as cyber threats increase and organisations in Australia and New Zealand accelerate adoption - [Qualys research details nine AppArmor flaws affecting enterprise Linux systems](https://australiancybersecuritymagazine.com.au/qualys-research-details-nine-apparmor-flaws-affecting-enterprise-linux-systems/) - Researchers at Qualys’ Threat Research Unit (TRU) have disclosed a set of nine vulnerabilities in AppArmor, a Linux security module used to confine application permissions, warning the issues could expose a large number of enterprise systems. Qualys has dubbed the vulnerabilities “CrackArmor” and said the issues have existed since 2017. The company estimates more than - [Identity attacks and unmanaged devices are rising cyber risks](https://australiancybersecuritymagazine.com.au/identity-attacks-and-unmanaged-devices-are-rising-cyber-risks/) - A new threat report from Barracuda has identified identity-based attacks and unmanaged devices as two of the most significant cybersecurity risks facing organisations today. The Barracuda Managed XDR Global Threat Report analysed thousands of real-world incidents and security alerts across enterprise IT environments, revealing that attackers frequently exploit everyday operational gaps rather than relying on complex technical exploits. According - [Macquarie Technology Group secures $200 million NRFC investment](https://australiancybersecuritymagazine.com.au/macquarie-technology-group-secures-200-million-nrfc-investment/) - Macquarie Technology Group has secured a $200 million hybrid investment from the National Reconstruction Fund Corporation (NRFC) to accelerate the development of sovereign digital infrastructure and cybersecurity services in Australia. The NRFC, a government-backed investment body established to support nationally significant technology, digital infrastructure, defence and national security capabilities, will provide the capital through the - [ACS appoints Interim Chief Executive Officer](https://australiancybersecuritymagazine.com.au/acs-appoints-interim-chief-executive-officer/) - The Australian Computer Society (ACS) has appointed Dr Prins Ralston as Interim Chief Executive Officer following the departure of Josh Griggs from the role. The leadership change was announced by the ACS Management Committee and takes effect from 10 March 2026. Dr Ralston is a Fellow and former President of ACS and brings extensive executive - [Zero Trust World - Threatlocker](https://australiancybersecuritymagazine.com.au/zero-trust-world-threatlocker/) - Zero Trust World is held annually in Orlando, Florida with IT professionals from 28 countries in attendance. Zero Trust World aims to empower IT professionals to embrace a default-deny security posture and build stronger, more resilient cybersecurity frameworks. Attendees gain a deeper understanding of both known and unknown cyber threats and gain actionable strategies to - [Furthering Submarine Cable Supply Chains](https://australiancybersecuritymagazine.com.au/furthering-submarine-cable-supply-chains/) - The Australia India Institute has secured funding under the Australia–India Cyber and Critical Technology Partnership (AICCTP) to lead a new initiative focused on strengthening submarine cable supply chains across the Indo-Pacific. The project, titled Furthering Submarine Cable Supply Chains, will support a Track 1.5 dialogue aimed at advancing cooperation between Australia and India to improve - [Zero Trust approach moves to cloud services and enterprise networks](https://australiancybersecuritymagazine.com.au/zero-trust-approach-moves-to-cloud-services-and-enterprise-networks/) - ThreatLocker has expanded its cybersecurity platform with new Zero Trust network and cloud access capabilities designed to reduce the impact of credential-based cyberattacks. The update extends the company’s Zero Trust approach beyond endpoint protection to include cloud services and enterprise networks. The system enforces device-based verification, meaning access is denied by default unless a connection - [Wollongong academic secures Fulbright for international cybersecurity research](https://australiancybersecuritymagazine.com.au/wollongong-academic-secures-fulbright-for-international-cybersecurity-research/) - A University of Wollongong (UOW) cybersecurity researcher has been awarded a 2026 Fulbright Scholar Award to undertake international research in the United States, as the university simultaneously prepares to host a US academic through the same program. Distinguished Professor Willy Susilo, Director of UOW’s Institute of Cybersecurity and Cryptology, will collaborate with Florida Polytechnic University - [Malicious insider incidents rising faster than negligence-based threats in Australia](https://australiancybersecuritymagazine.com.au/malicious-insider-incidents-rising-faster-than-negligence-based-threats-in-australia/) - A growing number of Australian organisations are reporting increases in malicious insider activity, with intentional threats now rising faster than incidents caused by employee negligence for the first time. The finding comes from Mimecast’s 2026 State of Human Risk Report, released on 5 March, which surveyed 2,500 IT security and decision-makers globally, including 250 in - [Exploitation of Cisco SD-WAN appliances](https://australiancybersecuritymagazine.com.au/exploitation-of-cisco-sd-wan-appliances/) - Australian and allied cyber security agencies have warned that malicious actors are actively targeting organisations’ SD-WAN infrastructure by exploiting a critical vulnerability in Cisco Catalyst controllers, prompting the Australian Government to issue a rare mandatory security direction across the Commonwealth. The flaw, tracked as CVE-2026-20127, enables an authentication bypass in Cisco Catalyst SD-WAN controllers. According - [Rising AI responsibility and accountability in ANZ](https://australiancybersecuritymagazine.com.au/rising-ai-responsibility-and-accountability-in-anz/) - Cisco has released findings from Splunk’s annual CISO Report, From Risk to Resilience in the AI Era, highlighting how the chief information security officer role is expanding as organisations accelerate AI adoption and face a more complex threat landscape. Globally, 53% of CISOs say their responsibilities and expectations have become harder over the past year, - [Bastion and Astralas to merge](https://australiancybersecuritymagazine.com.au/bastion-and-astralas-to-merge/) - Bastion Security Group has signed an agreement to merge with Melbourne-based cybersecurity consultancy Astralas, in a move that further consolidates Australia’s mid-market security services sector. The transaction, expected to complete in February 2026, marks Bastion’s fourth strategic combination in Australia, following earlier integrations of managed services providers Cythera and Seamless Intelligence, and professional services firm - [Australian healthcare industry most targeted, followed by manufacturing](https://australiancybersecuritymagazine.com.au/australian-healthcare-industry-most-targeted-followed-by-manufacturing/) - Healthcare services was the most targeted industry in Australia in the second half of 2025, according to the latest OT and IoT Security Report from Nozomi Networks Labs. The report found that manufacturing ranked second in Australia, while transportation remained the most targeted industry globally, followed by manufacturing and the public sector. Australia also recorded the third - [Critical infrastructure compliance upgrades highlight greater physical security needs for key electricity, AI, and data assets](https://australiancybersecuritymagazine.com.au/critical-infrastructure-compliance-upgrades-highlight-greater-physical-security-needs-for-key-electricity-ai-and-data-assets/) - Smart electricity grids supporting vital AI, data centres and national infrastructure require new physical and cyber security standards to address increasingly distributed threats as Australia enters a new electrical revolution By Mike Fisher, Managing Director, Boon Edam Australia Global and Australian demand for greater on-site protection of electricity generation infrastructure and key users dependent upon - [Three-into-one security budgets deliver solid savings for high stakes data centre development](https://australiancybersecuritymagazine.com.au/three-into-one-security-budgets-deliver-solid-savings-for-high-stakes-data-centre-development/) - By Michael Fisher* When it comes to securing data centres, there is no room for compromise by designers, builders, managers and owners. The average cost of building one of these facilities in Australasia can be up around $10,000 a square metre, according to local project managers. This value is just the tip of the iceberg, - [Australia and APAC in Scope as OT Threats Mature](https://australiancybersecuritymagazine.com.au/australia-and-apac-in-scope-as-ot-threats-mature/) - Dragos has identified a shift from reconnaissance to operationally focused cyber activity across industrial infrastructure, alongside a sharp increase in ransomware activity affecting operational technology (OT) environments. In its 2026 OT/ICS Cybersecurity Report and Year in Review, the company said adversaries are increasingly mapping entire industrial control systems rather than targeting isolated devices. The report, now in - [Growth in Data Extortion Incidents and Continued Dominance of Ransomware](https://australiancybersecuritymagazine.com.au/growth-in-data-extortion-incidents-and-continued-dominance-of-ransomware/) - Arctic Wolf has reported an 11-fold increase in data-only extortion incidents over the past year, alongside the continued dominance of ransomware, according to its 2026 Threat Report. The report, based on hundreds of incident response engagements and threat intelligence investigations conducted in 2025, found that ransomware, business email compromise (BEC) and data-related incidents accounted for 92% - [Mobile and internet reliability complaints spike in Quarter 2](https://australiancybersecuritymagazine.com.au/mobile-and-internet-reliability-complaints-spike-in-quarter-2/) - The Telecommunications Industry Ombudsman (TIO) received 14,017 complaints between October and December 2025, a 3.6% increase on the previous quarter, with service reliability emerging as the primary concern. According to the TIO’s Quarter 2 report for 2025–26, complaints from consumers without a working mobile or internet service rose 41.6% to 1,961 nationally. The Ombudsman attributed - [Virtual IT Group Appoints New CEO](https://australiancybersecuritymagazine.com.au/virtual-it-group-appoints-new-ceo/) - Virtual IT Group (VITG) has appointed Maurice McCarthy as Chief Executive Officer, as the managed services provider enters what it describes as its next phase of growth across Australia and New Zealand. Founder Christian Pacheco will transition to the role of Founding Director, where he will continue to focus on the company’s long-term vision, service - [New phishing campaign weaponises fake video conference invites](https://australiancybersecuritymagazine.com.au/new-phishing-campaign-weaponises-fake-video-conference-invites/) - Netskope Threat Labs has identified a new phishing campaign using fake video conference invitations to deliver remote access tools into corporate environments. According to research, the campaign targets enterprise users with spoofed meeting invites for widely used platforms including Zoom, Microsoft Teams and Google Meet. Victims are prompted to install what is presented as a - [BeyondTrust appoints new Partner Manager for Australia and New Zealand](https://australiancybersecuritymagazine.com.au/beyondtrust-appoints-new-partner-manager-for-australia-and-new-zealand/) - BeyondTrust has appointed Frank Cesarini as Partner Manager for Australia and New Zealand, expanding its regional channel leadership as demand for identity security services continues to grow. Based in Melbourne, Cesarini will be responsible for managing and enabling BeyondTrust’s channel partners across ANZ, supporting go-to-market strategies and sales engagement with system integrators, managed service providers - [CISOs driving growth through cyber resilience, but AI and supply chain visibility cause lingering gaps](https://australiancybersecuritymagazine.com.au/cisos-driving-growth-through-cyber-resilience-but-ai-and-supply-chain-visibility-cause-lingering-gaps/) - A new global study of chief information security officers (CISOs) suggests that while cyber resilience is increasingly seen as a driver of business growth, significant gaps remain in AI readiness and software supply chain visibility. The report, Persona Spotlight: CISO, released by managed security services provider LevelBlue, draws on insights from cybersecurity leaders and builds on earlier research - [Regulators watch as Optus works to restore mobile services for affected users](https://australiancybersecuritymagazine.com.au/regulators-watch-as-optus-works-to-restore-mobile-services-for-affected-users/) - Optus continues to work through a mobile network software issue that has left around 35,000 customers without full service, according to its latest service status information and statements from the company’s communications team. The company says it has identified all affected users and is contacting them directly with instructions to restart their devices, which it - [Cyber security awareness initiative for Australian parliamentarians](https://australiancybersecuritymagazine.com.au/cyber-security-awareness-initiative-for-australian-parliamentarians/) - The National Industry Innovation Network has launched a new cyber security awareness initiative for Australian parliamentarians, aimed at strengthening resilience within the parliamentary environment as cyber threats continue to escalate. Developed in collaboration with Cisco and the University of Canberra, the Securing Our Future: Cyber Essentials for Parliamentarians series is designed to provide practical, everyday - [Technology assurance appointment at Logicalis](https://australiancybersecuritymagazine.com.au/technology-assurance-appointment-at-logicalis/) - Logicalis Australia has strengthened its technology assurance and advisory capability with the appointment of Luke Gardiner as principal of its Technology Assurance Services (TAS) group, a move aimed at supporting organisations operating in increasingly regulated environments. Announced in Melbourne, the appointment forms a central part of technical services director Peter Cardassis’s strategy to evolve Logicalis - [State-aligned cyber campaign targeting national security, economic and diplomatic institutions](https://australiancybersecuritymagazine.com.au/state-aligned-cyber-campaign-targeting-national-security-economic-and-diplomatic-institutions/) - Palo Alto Networks’ threat intelligence unit, Unit 42, has released new research detailing the activities of a highly sophisticated state-aligned cyber actor that has compromised government and critical infrastructure organisations across 37 countries. The actor, tracked as TGR-STA-1030, is assessed to have affected nearly one in five nations worldwide, with targets including national security, economic - [Inconsistent action leaving children exposed to online sexual exploitation](https://australiancybersecuritymagazine.com.au/inconsistent-action-leaving-children-exposed-to-online-sexual-exploitation/) - UNICEF Australia has warned that inconsistent action by technology companies is leaving children exposed to online sexual exploitation, following the release of the eSafety Commissioner’s latest transparency report on Basic Online Safety Expectations. Responding to the report, UNICEF Australia said the findings highlight ongoing shortcomings in how major platforms are addressing the most serious forms - [Analysis: Dangerous web traffic hijacking campaign](https://australiancybersecuritymagazine.com.au/analysis-dangerous-web-traffic-hijacking-campaign/) - Datadog Security Research has uncovered an active web traffic hijacking campaign that abuses malicious NGINX configurations to intercept and reroute legitimate user traffic through attacker-controlled infrastructure. According to Datadog, the campaign is linked to threat actors previously associated with the React2Shell exploitation and is actively targeting NGINX installations across Asia, with a particular focus on - [DeepSeek V4 - Is this China's Bid to Reshape the AI Landscape?](https://australiancybersecuritymagazine.com.au/deepseek-v4-is-this-chinas-bid-to-reshape-the-ai-landscape/) - The anticipated release of DeepSeek V4 in mid-February is sharpening debate about whether China is positioning itself to reshape the global artificial intelligence landscape, with implications that extend well beyond model benchmarks and into national strategy, energy policy and technology sovereignty. According to new analysis from ACI Research Affiliate Evan Freidin, DeepSeek V4 could represent - [Government Cyber Security Showcase Victoria 2026](https://australiancybersecuritymagazine.com.au/government-cyber-security-showcase-victoria-2026/) - Registrations have opened for the Government Cyber Security Showcase Victoria 2026, a one-day event aimed at helping public sector leaders address accelerating cyber threats and strengthen whole-of-government resilience as digital risk continues to rise. The Showcase will be held on 25 March 2026 at the Grand Hyatt Melbourne as part of Government Innovation Week Victoria, - [Cybercriminals hijack AI hosting service to compromise users](https://australiancybersecuritymagazine.com.au/cybercriminals-hijack-ai-hosting-service-to-compromise-users/) - Bitdefender researchers have uncovered an Android remote access trojan campaign that highlights how legitimate developer platforms can be repurposed as part of large-scale mobile malware operations, with attackers abusing Hugging Face hosting to stage and distribute malicious payloads. The campaign centres on an Android RAT delivered through a two-stage infection chain that combines social engineering, - [Command injection in Apache bRPC heap profiler](https://australiancybersecuritymagazine.com.au/command-injection-in-apache-brpc-heap-profiler/) - The CyberArk Labs team have identified Apache bRPC users are exposed to a critical command injection flaw in the /pprof/heap endpoint (CVE‑2025‑60021, CVSS 9.8) that enables unauthenticated remote code execution whenever this profiler is reachable. The research can be attributed to Simon Kosman, senior cyber researcher at CyberArk Labs. CVE‑2025‑60021, a critical command injection issue - [Privacy Teams Are Shrinking, Increasingly Stressed: New ISACA study](https://australiancybersecuritymagazine.com.au/privacy-teams-are-shrinking-increasingly-stressed-new-isaca-study/) - ISACA’s newly released State of Privacy 2026 survey warns that privacy teams across Oceania are under increasing pressure as resources shrink and risk continues to grow, turning privacy into a broader business and governance issue. The survey, based on responses from more than 1,800 privacy professionals globally, found that nearly two-thirds (63 per cent) of respondents in - [Quantum batteries could supercharge the future of quantum computing ](https://australiancybersecuritymagazine.com.au/quantum-batteries-could-supercharge-the-future-of-quantum-computing/) - Researchers have unveiled a new approach to powering quantum computers using quantum batteries, a development that could significantly improve the performance, efficiency and scalability of future quantum systems. In a study published in Physical Review X, scientists from Australia’s national science agency CSIRO, the University of Queensland and the Okinawa Institute of Science and Technology have - [Network Attacks Outpace Malware in Australia](https://australiancybersecuritymagazine.com.au/network-attacks-outpace-malware-in-australia/) - Australian businesses are now facing significantly more network-based attacks than traditional malware, according to WatchGuard Technologies’ Q4 2025 Threat Landscape Report, highlighting a marked shift in the country’s cyber threat profile. Between October and December 2025, WatchGuard blocked 96,049 network attacks targeting Australian organisations, compared with 8,510 malware attacks over the same period. This contrasts - [Rapid7 Appoints New APJ GM](https://australiancybersecuritymagazine.com.au/rapid7-appoints-new-apj-gm/) - Rapid7 has appointed Simon Ractliffe (pictured) as General Manager for its Asia Pacific and Japan (APJ) business, strengthening regional leadership as the company accelerates growth and expands its threat detection and exposure management capabilities. In the role, Ractliffe will lead Rapid7’s commercial strategy and operations across APJ, with a focus on helping organisations shift from - [Analysis of Poland electricity sector attack](https://australiancybersecuritymagazine.com.au/analysis-of-poland-electricity-sector-attack/) - Dragos has released a detailed threat intelligence report providing the first in-depth operational technology (OT) security analysis of the 29 December cyberattack on Poland’s electric sector, offering new insights beyond previous government statements and public malware research. The report examines one of approximately 30 compromised sites affected during the incident and represents the most comprehensive - [Cythera Appoints new Australian Managing Director](https://australiancybersecuritymagazine.com.au/cythera-appoints-new-australian-managing-director/) - Cythera has appointed cybersecurity industry veteran Jason Whyte (pictured) as Managing Director for Australia, signalling a major step in the company’s national expansion and operational integration strategy. Based in Melbourne, Whyte will oversee Cythera’s Australian operations and lead the strategic integration of Seamless Intelligence and Phronesis Security under the Cythera brand, which now serves as - [Call for Comments on NIST SP 800-82, Guide to Operational Technology (OT) Security](https://australiancybersecuritymagazine.com.au/call-for-comments-on-nist-sp-800-82-guide-to-operational-technology-ot-security/) - NIST has initiated the process of revising Special Publication (SP) 800-82, Guide to Operational Technology (OT) Security, to incorporate lessons learned, align with relevant NIST guidance (e.g., Cybersecurity Framework (CSF) 2.0, NIST IR 8286 Rev. 1, NIST SP 800-53 Rev. 5.2.0) and OT cybersecurity standards and practices, and address changes in the OT threat landscape. NIST invites the public - [Latest email threats - from QR code deception to callback phishing](https://australiancybersecuritymagazine.com.au/latest-email-threats-from-qr-code-deception-to-callback-phishing/) - Over the last month, Barracuda threat analysts have investigated the following email threats targeting organisations and their employees: Tycoon phishing kit using QR codes built out of HTML tables Callback phishing through Microsoft Teams Facebook-themed ‘infringement warnings’ using fake pop-ups How using (∕) instead of (/) can sneak malicious links past detection Tycoon phishing kit using QR - [Cost of High-Impact IT Outages for Financial Services Companies](https://australiancybersecuritymagazine.com.au/cost-of-high-impact-it-outages-for-financial-services-companies/) - New Relic has released its Observability Forecast for Financial Services, revealing that high-impact IT outages cost financial services organisations an average of US$1.8 million per hour, underscoring the growing operational and financial risks facing the sector. The report draws on insights from 156 IT and engineering leaders across banks, fintechs, insurers, investment firms and credit unions, - [Automated decision-making and public reporting under the Freedom of Information Act](https://australiancybersecuritymagazine.com.au/automated-decision-making-and-public-reporting-under-the-freedom-of-information-act/) - The Office of the Australian Information Commissioner (OAIC) has released a new report examining how transparently Australian Government agencies disclose their use of automated decision-making under the Freedom of Information Act. Titled Automated decision-making and public reporting under the Freedom of Information Act, the report assesses how agencies communicate their use of automated decision-making (ADM) - [Hexnode Expands into ANZ](https://australiancybersecuritymagazine.com.au/hexnode-expands-into-anz/) - Hexnode has expanded into Australia and New Zealand with the launch of Hexnode XDR, positioning the platform as a response to growing cyber-alert fatigue facing IT teams responsible for increasingly connected smart city environments. Hexnode XDR is designed to help organisations cut through high alert volumes by unifying detection, investigation and response in a single - [New WhatsApp Scam Hijacks Accounts Without Stealing Passwords](https://australiancybersecuritymagazine.com.au/new-whatsapp-scam-hijacks-accounts-without-stealing-passwords/) - Security researchers at Avast have uncovered a new WhatsApp takeover scam that does not rely on stolen passwords, broken encryption or SIM-swapping. Instead, it tricks users into granting access to their own accounts. Dubbed “GhostPairing”, the attack abuses WhatsApp’s legitimate device-linking feature. It typically begins with a message that appears to come from a trusted - [The Vibe Coding Security Gap](https://australiancybersecuritymagazine.com.au/the-vibe-coding-security-gap/) - Security researchers are warning that the rapid mainstream adoption of AI-assisted “vibe coding” is introducing new risks into software development pipelines, with insecure code now being generated faster than many organisations can detect or remediate. In new analysis from Unit 42, AI agents are now used in software development by 99 per cent of organisations, - [Three Cybersecurity Predictions That Will Define The CISO Agenda in 2026](https://australiancybersecuritymagazine.com.au/future-mobility-group-to-support-autonomous-vehicle-deployment/) - By: Sam Salehi, Managing Director ANZ, Qualys As we head into 2026, cybersecurity leaders are facing a paradox. Organisations have never invested more in security tools, data and talent – yet many CISOs admit they have less confidence in their true risk posture than ever before. The problem isn’t a lack of signals. It’s an - [Cyber security risks exposed in NSW Local Health Districts, Auditor-General finds](https://australiancybersecuritymagazine.com.au/cyber-security-risks-exposed-in-nsw-local-health-districts-auditor-general-finds/) - NSW Health is not effectively managing cyber security risks to clinical systems used across Local Health Districts, according to a performance audit released today by the NSW Auditor-General. The report, Cyber security in Local Health Districts, examines whether systems critical to healthcare delivery are adequately protected from cyber threats. It concludes that Local Health Districts - [ISACA authorised to lead global credentialing for US DoW’s CMMC Cybersecurity program](https://australiancybersecuritymagazine.com.au/isaca-authorised-to-lead-global-credentialing-for-us-dows-cmmc-cybersecurity-program/) - ISACA has been appointed as the exclusive CMMC Assessor and Instructor Certification Organisation (CAICO) for the United States Department of War’s Cybersecurity Maturity Model Certification (CMMC) program, a move expected to have significant implications for defence and critical-infrastructure suppliers across Australia and New Zealand. Under the appointment, ISACA will oversee the global training, examination and - [Fortinet CVEs exploited in the wild](https://australiancybersecuritymagazine.com.au/fortinet-cves-exploited-in-the-wild/) - Security teams are being urged to act immediately following confirmation that two newly disclosed Fortinet vulnerabilities are being actively exploited in the wild, according to a critical emergent threat alert issued by Rapid7. The vulnerabilities, tracked as CVE-2025-59718 and CVE-2025-59719, carry critical CVSSv3 severity ratings and allow unauthenticated remote attackers to bypass authentication through the - [Bastion mergers with Phronesis Security](https://australiancybersecuritymagazine.com.au/bastion-mergers-with-phronesis-security/) - Bastion Security Group has entered into an agreement to acquire Melbourne-based cyber security professional services firm Phronesis Security, further expanding its presence in the Australian market. The acquisition, which is expected to complete in December 2025, marks Bastion’s third Australian transaction, following its recent acquisitions of Melbourne-based managed services provider Cythera and Perth-based cyber intelligence - [HPE and Spark NZ Partner for Hybrid Cloud Operations](https://australiancybersecuritymagazine.com.au/hpe-and-spark-nz-partner-for-hybrid-cloud-operations/) - HPE and Spark New Zealand have completed a major hybrid cloud modernisation program aimed at improving the speed, reliability and resilience of digital services across New Zealand’s largest telecommunications provider. The multi-stage transformation has overhauled Spark NZ’s legacy cloud management environment, replacing it with a unified hybrid cloud architecture built around HPE GreenLake and HPE - [Australians Eligible for Cambridge Analytica Payments Must Register by 31 December](https://australiancybersecuritymagazine.com.au/australians-eligible-for-cambridge-analytica-payments-must-register-by-31-december/) - Australian Facebook users affected by the Cambridge Analytica data misuse scandal have until 31 December 2025 to register for compensation under a $50 million payment program arising from a landmark settlement with the Office of the Australian Information Commissioner (OAIC). The scheme was established by Meta Platforms under an enforceable undertaking accepted by the Australian Information Commissioner - [Quarter of industrial and critical infrastructure orgs don't do OT cybersecurity training](https://australiancybersecuritymagazine.com.au/quarter-of-industrial-and-critical-infrastructure-orgs-dont-do-ot-cybersecurity-training/) - A quarter of industrial and critical infrastructure organisations have never conducted OT cybersecurity training, according to new research from Secolve, which warns that Australia's OT security culture remains weak and immature. The report surveyed senior professionals across energy, manufacturing, water, mining, oil and gas, and critical infrastructure supply chains. It found that OT cybersecurity training - [New gamified tool helps defend satellite supply chains from cyber threats](https://australiancybersecuritymagazine.com.au/new-gamified-tool-helps-defend-satellite-supply-chains-from-cyber-threats/) - As global dependence on satellites grows, so too does the cyber risk. Nearly 240 cyberattacks have targeted the space sector in the past two years alone, according to the Centre for Security Studies in Zurich, highlighting escalating threats to space-based systems and critical infrastructure. In response to this emerging form of "space terrorism", researchers at - [DXC launches AdvisoryX](https://australiancybersecuritymagazine.com.au/dxc-launches-advisoryx/) - DXC Technology has launched AdvisoryX, a new global advisory and consulting group designed to help enterprises close the widening gap between AI ambition and effective AI execution. The company has also released new global research showing most organisations still struggle to operationalise AI at scale, despite strong leadership pressure to implement it. The AdvisoryX launch - [Industry veteran Wendy Komadina joins Darktrace as new VP ANZ](https://australiancybersecuritymagazine.com.au/industry-veteran-wendy-komadina-joins-darktrace-as-new-vp-anz/) - Darktrace has appointed Wendy Komadina as Vice President for Australia and New Zealand, tasking the experienced technology executive with driving the company's next phase of partner-led growth across the region. Based in Sydney, Komadina will focus on expanding adoption of Darktrace's self-learning AI cybersecurity platform, particularly among organisations facing sophisticated and fast-evolving cyber threats. Komadina - [Critical vulnerabilities in multiple Fortinet products - FortiCloud SSO Login Authentication Bypass](https://australiancybersecuritymagazine.com.au/critical-vulnerabilities-in-multiple-fortinet-products-forticloud-sso-login-authentication-bypass/) - The Australian Cyber Security Centre has issued a technical alert advising business and government organisations to take immediate action following the discovery of multiple critical vulnerabilities affecting several Fortinet products. The flaws, disclosed by Fortinet, relate to improper verification of cryptographic signatures and could allow unauthenticated attackers to bypass FortiCloud single sign-on authentication using crafted - [Final Patch Tuesday of 2025 with Zero-Day](https://australiancybersecuritymagazine.com.au/final-patch-tuesday-of-2025-with-zero-day/) - Microsoft has released its final Patch Tuesday of 2025, addressing 56 CVEs, including two publicly disclosed vulnerabilities and one zero-day that was exploited in the wild. Elevation of privilege flaws made up half of all patches this month, followed by remote code execution vulnerabilities at nearly 34 per cent. Satnam Narang, Senior Staff Research Engineer - [The Great Australian scroll-back: social media ban in place](https://australiancybersecuritymagazine.com.au/the-great-australian-scroll-back-social-media-ban-in-place/) - Australia's under-16s social media ban begins today, raising urgent questions about how young people will stay connected, where online risks may shift and what support teenagers and parents will need as the new rules come into effect. Curtin University experts across internet safety, psychology and child wellbeing say the ban may reduce some harms but - [Australia experienced highest ransomware rate globally, second highest in ransom payments](https://australiancybersecuritymagazine.com.au/australia-experienced-highest-ransomware-rate-globally-second-highest-in-ransom-payments/) - Rubrik Zero Labs has released new global research indicating that Australian organisations report the highest level of concern worldwide about identity-driven cyberattacks, as local businesses rapidly adopt AI-enabled identity systems. The study, "Identity Crisis: Understanding & Building Resilience Against Identity-Driven Threats," highlights both rising risk exposure and persistent gaps in resilience across Australian enterprises. According to the - [Australian Data Centres acquires data centre campus in Canberra](https://australiancybersecuritymagazine.com.au/australian-data-centres-acquires-data-centre-campus-in-canberra/) - Australian Data Centres (ADC) has expanded its national footprint with the acquisition of a data centre campus in Fyshwick, Canberra, marking a new phase in the company's growth strategy. The site has been integrated into ADC's operations and is certified as Strategic under the Hosting Certification Framework, positioning it to support government and enterprise workloads. - [Why Local, Automated SOCs Beat Global Giants](https://australiancybersecuritymagazine.com.au/why-local-automated-socs-beat-global-giants/) - Luke Taylor, CEO of New Zealand–based managed security provider SSS, joins us on the sidelines of Canalys APAC Forum 2025, held in Da Nang, Vietnam to discuss the company’s sharp focus on identity, access, PKI and privileged access management. He outlines how SSS is building capability through its automated SOC in Wellington, its partnership with - [Extortion only attacks surge for Manufacturers](https://australiancybersecuritymagazine.com.au/extortion-only-attacks-surge-for-manufacturers/) - Sophos has released its State of Ransomware in Manufacturing and Production 2025 report, revealing a significant shift in attacker behaviour as manufacturers improve their early-stage defences. The global study, based on a survey of 332 organisations hit by ransomware in the past year, shows that although data encryption rates have fallen sharply, adversaries are increasingly turning to - [Fujitsu appoints Kendy Hau as Head of Defence, Oceania](https://australiancybersecuritymagazine.com.au/fujitsu-appoints-kendy-hau-as-head-of-defence-oceania/) - Fujitsu has appointed Kendy Hau (pictured) as its new Head of Defence for Oceania, bringing more than 20 years of experience across Defence, national security and complex technology environments. Hau joins Fujitsu after a career that has included operational deployments in the Middle East, oversight of major Defence portfolios and senior roles supporting the modernisation - [Tech giants driving sharp rise in digital platforms complaints](https://australiancybersecuritymagazine.com.au/tech-giants-driving-sharp-rise-in-digital-platforms-complaints/) - The Telecommunications Industry Ombudsman (TIO) has reported a sharp rise in complaints involving social media and digital platforms, with more than 1,500 people approaching the organisation since 2023 about issues ranging from account lockouts to disputes over fees and faulty services. The findings, published in the TIO’s new Digital platforms complaints insights report, show that 71 per - [Southern Phone penalised $2.5M for anti-scam breaches](https://australiancybersecuritymagazine.com.au/southern-phone-penalised-2-5m-for-anti-scam-breaches/) - Southern Phone Company Limited has paid a $2,500,560 penalty for breaching anti-scam laws following an Australian Communications and Media Authority (ACMA) crackdown on mobile number fraud. The ACMA investigation found Southern Phone breached the rules on 168 occasions over an 8-month period between July 2024 and February 2025, when scammers were able to manipulate the telco's systems - [3 Zero Day Vulnerabilities Found in PickleScan](https://australiancybersecuritymagazine.com.au/3-zero-day-vulnerabilities-found-in-picklescan/) - The JFrog security research team has disclosed three zero-day vulnerabilities in PickleScan, a widely used tool for scanning Python pickle files, warning that the flaws could enable large-scale software supply chain attacks, particularly for organisations using the PyTorch machine-learning framework. All three vulnerabilities are rated Critical with a CVSS score of 9.3. According to JFrog, - [Age assurance must not become data collection by another name](https://australiancybersecuritymagazine.com.au/age-assurance-must-not-become-data-collection-by-another-name/) - With the Social Media Minimum Age Act 2024 and updated privacy legislation set to take effect on 10 December 2025, privacy specialists warn that many organisations remain unprepared for the law's new age-assurance obligations and stricter data-handling standards. The new rules require social media platforms to verify that users are aged over 16, while the - [Ausgrid cuts Java vulnerabilities by 99% in major security uplift](https://australiancybersecuritymagazine.com.au/ausgrid-cuts-java-vulnerabilities-by-99-in-major-security-uplift/) - Ausgrid has reduced its Java licensing exposure and strengthened its cybersecurity posture after migrating from Oracle Java to Azul Platform Core, cutting potential licensing costs by 80 per cent and reducing Java-related vulnerabilities by 99 per cent, according to an announcement from Azul. Ausgrid, which supplies electricity to more than 1.8 million customers across Sydney, - [ACMA cancels phone numbers used in scams](https://australiancybersecuritymagazine.com.au/acma-cancels-phone-numbers-used-in-scams/) - The ACMA has cancelled 31 smartnumbers linked to scams being undertaken in Australia. Smartnumbers are distinct numbers that might have a pattern, like 1300 121 212, or spell words, such as 13 ZOOS (13 9667). The cancelled numbers closely resembled those used by legitimate businesses, predominantly airlines and cruise operators, and were being used to - [New lead for national digital transformation at Kinetic IT](https://australiancybersecuritymagazine.com.au/new-lead-for-national-digital-transformation-at-kinetic-it/) - Kinetic IT has appointed Jacqui Adams as its new Head of Digital Transformation and National Services, adding senior leadership to the company's efforts to modernise service delivery and strengthen national operating capability. Adams has more than two decades of experience across enterprise strategy, digital transformation, AI and automation, and major program governance. She has worked - [Deep insight to how your systems are configured and what needs fixing](https://australiancybersecuritymagazine.com.au/deep-insight-to-how-your-systems-are-configured-and-what-needs-fixing/) - We cross to Orlando, Florida and speak with Yuriy Tsibere, Product Manager at ThreatLocker. We dive into the ThreatLocker DAC dashboard, built right into the ThreatLocker agent. DAC is a powerful tool that shows you exactly how your systems are configured and what needs fixing. Think of it as your ultimate resilience assessment center. #MysecurityTV - [Acronis names OpSys as its first MSSP partner in Australia](https://australiancybersecuritymagazine.com.au/acronis-names-opsys-as-its-first-mssp-partner-in-australia/) - Acronis has appointed Adelaide-based Operational Systems (OpSys) as its first certified managed security service provider (MSSP) partner in Australia, enabling the company to deliver Managed Detection and Response (MDR) services built on the Acronis platform to MSPs and their customers. The partnership reflects the growing demand for MDR capabilities among MSPs responding to increasingly complex - [AI fake nudes, sextortion and scams surge to record highs as Netsafe calls for urgent NZ law reform](https://australiancybersecuritymagazine.com.au/ai-fake-nudes-sextortion-and-scams-surge-to-record-highs-as-netsafe-calls-for-urgent-nz-law-reform/) - New Zealand is facing a new era of digital harm driven by AI-generated abuse, deception and harassment, according to new data released by Netsafe in its 2024–2025 Annual Review. The organisation reports the highest levels of harmful digital communications since the Harmful Digital Communications Act (HDCA) came into force nearly a decade ago — exposing - [Australian businesses at high-risk with critical holiday cyber gap](https://australiancybersecuritymagazine.com.au/australian-businesses-at-high-risk-with-critical-holiday-cyber-gap/) - Semperis has released new global research confirming that ransomware actors continue to time their attacks for weekends, public holidays and major corporate events—precisely when security teams are least prepared to respond. The findings highlight an urgent need for Australian and New Zealand organisations to strengthen identity systems and maintain vigilance during periods of reduced staffing. The 2025 - [ACS elects new President](https://australiancybersecuritymagazine.com.au/acs-elects-new-president/) - The Australian Computer Society (ACS), has elected Beau Tydd (pictured) as President of ACS for the 2026–27 term, following a vote by the ACS Congress. Mr Tydd succeeds Helen McHugh, who has served as President since 2024.. In acknowledging Ms McHugh's contribution, Mr Tydd said: "Helen's leadership has been instrumental in driving ACS's mission to - [Australia's Boards Embrace AI, but Governance Gaps are Widening](https://australiancybersecuritymagazine.com.au/australias-boards-embrace-ai-but-governance-gaps-are-widening/) - A new survey from the Diligent Institute, conducted with the Governance Institute of Australia (GIA) and the Singapore Institute of Directors (SID), shows Australian boards are accelerating their adoption of AI but widening the gap between technology rollout and governance oversight. While AI and digital transformation are rapidly climbing boardroom agendas, most organisations lack the structures, skills - [New self-propagating SSC worm hits GitHub](https://australiancybersecuritymagazine.com.au/new-self-propagating-ssc-worm-hits-github/) - JFrog's Security Research team has identified a major escalation in the ongoing "Shai-Hulud" software supply chain attack, uncovering a new self-propagating worm actively targeting npm and GitHub repositories. So far, 181 newly compromised packages have been confirmed. The attackers, referring to this wave as "Sha1-Hulud: The Second Coming," have significantly advanced their tactics since the - [CyberPath Program Launches to Strengthen and Professionalise Australia's Cyber Workforce](https://australiancybersecuritymagazine.com.au/cyberpath-program-launches-to-strengthen-and-professionalise-australias-cyber-workforce/) - Australia has taken a significant step toward strengthening its national cyber capability with the launch of CyberPath: Paving the Way Forward for Cyber Professionals, a new initiative under the Growing & Professionalising Cyber Security Industry Pilot Program. The program is co-funded by the Department of Home Affairs and delivered through a consortium led by the Australian - [Darktrace APJ Threat Report shows supply chain at increasing risk](https://australiancybersecuritymagazine.com.au/darktrace-apj-threat-report-shows-supply-chain-at-increasing-risk/) - Darktrace has released new findings on cyber threats affecting the Asia–Pacific and Japan (APJ) region, reporting a sharp escalation in email compromise, cloud-targeted intrusions and third-party supply chain attacks over the 12 months to July 2025. The company says geopolitical tensions, rapid cloud adoption and the growing use of generative AI by threat actors are - [Optus penalised $826K for breaching anti-scam rules](https://australiancybersecuritymagazine.com.au/optus-penalised-826k-for-breaching-anti-scam-rules/) - Optus Mobile has been fined $826,320 after an investigation by the Australian Communications and Media Authority (ACMA) found the company breached anti-scam rules on 44 occasions, allowing scammers to take control of customer mobile numbers and access bank accounts. The breaches occurred in September and October 2024 while Optus was operating the Coles Mobile service. - [Australian-made Agentic AI transforms fibre & broadband management](https://australiancybersecuritymagazine.com.au/australian-made-agentic-ai-transforms-fibre-broadband-management/) - Astrotel has launched a new AI-driven connectivity platform designed to autonomously monitor, secure and maintain commercial network environments. Developed in partnership with Australian firm Canopus Networks, the platform combines SuperNetflow technology—providing deep observability into telco network data—with agentic AI capable of autonomous reasoning and decision-making. The system is designed to operate as a unified layer - [Cloudflare Outage takes out ChatGPT, X, Canva and more](https://australiancybersecuritymagazine.com.au/cloudflare-outage-takes-out-chatgpt-x-canva-and-more/) - A widespread Cloudflare outage temporarily blocked access to major online services including OpenAI's ChatGPT, X (formerly Twitter), Canva and League of Legends, highlighting once again how heavily the modern internet depends on a small number of infrastructure providers. Although the affected sites themselves remained operational, millions of users worldwide were unable to reach them because - [Average ransomware payment almost halves](https://australiancybersecuritymagazine.com.au/average-ransomware-payment-almost-halves/) - McGrathNicol's latest ransomware survey shows a continued decline in ransom payments by Australian organisations, even as attack volumes remain high and smaller businesses continue to face disproportionate risk. The 2025 report, released on 13 November, found that 69 per cent of business leaders have experienced a ransomware incident in the past five years, with SMEs - [Managing risks and maintaining resilience for critical infrastructure entities](https://australiancybersecuritymagazine.com.au/managing-risks-and-maintaining-resilience-for-critical-infrastructure-entities/) - Mitchell Loughlin, Director of Risk and Resilience at Thales Cyber, explores the growing complexity of managing supply chain risks in today’s global environment. He discusses the importance of an all-hazards approach to identify material risks, shaped by geopolitical tensions, the impacts of COVID-19, and evolving security threats. Mitchell explains why understanding critical suppliers and aligning - [Global shift from traditional perimeter-based defenses to a comprehensive zero-trust framework](https://australiancybersecuritymagazine.com.au/global-shift-from-traditional-perimeter-based-defenses-to-a-comprehensive-zero-trust-framework/) - Omer Grossman, Chief Trust Officer at CyberArk, discusses the evolving landscape of identity security, noting the global shift from traditional perimeter-based defenses to a comprehensive zero-trust framework. He emphasises the importance of maintaining strong cyber hygiene, applying least privilege principles, and managing the full lifecycle of digital identities to reduce risk. Grossman also highlights the - [Cybertify secures new Head of Offensive Security](https://australiancybersecuritymagazine.com.au/cybertify-secures-new-head-of-offensive-security/) - Cybertify has appointed Arni Hardarson (pictured) as its new Head of Offensive Security, marking a significant expansion of the company's senior cybersecurity leadership team. Based in Melbourne, the appointment brings one of Australia's most experienced offensive security specialists into a key role as Cybertify continues to grow its national presence. Hardarson has more than 20 - [Palo Alto Networks Uncovers Commercial Spyware Targeting Samsung Galaxy Phones](https://australiancybersecuritymagazine.com.au/palo-alto-networks-uncovers-commercial-spyware-targeting-samsung-galaxy-phones/) - Palo Alto Networks' threat intelligence team, Unit 42, has uncovered a sophisticated spyware campaign that exploited a previously unknown zero-day vulnerability in Samsung Galaxy smartphones, allowing attackers to conduct full-scale surveillance on targeted users. The spyware, dubbed LANDFALL, was discovered during an investigation into a series of covert attacks that began in mid-2024. The campaign - [Bitdefender launches data lake security tools](https://australiancybersecuritymagazine.com.au/bitdefender-launches-data-lake-security-tools/) - Bitdefender has unveiled a new product for collecting and analysing cybersecurity data, launching its GravityZone Security Data Lake and companion Data Lake for Managed Detection and Response (MDR) solutions. The tools are designed to unify security telemetry across multiple sources — from endpoints and networks to cloud environments — to help organisations detect threats faster and reduce - [HackedGPT: Seven Critical Vulnerabilities Expose ChatGPT to Data Theft and Persistent Hijacking](https://australiancybersecuritymagazine.com.au/hackedgpt-seven-critical-vulnerabilities-expose-chatgpt-to-data-theft-and-persistent-hijacking/) - Cyber researchers at Tenable have uncovered seven major vulnerabilities affecting OpenAI's ChatGPT, exposing users to potential data theft, safety bypass, and long-term compromise through a new class of attacks targeting artificial intelligence systems. The flaws, collectively dubbed HackedGPT, were identified during testing of OpenAI's ChatGPT-4o, with several still present in ChatGPT-5. While OpenAI has addressed some - [Landmark Community Services Warns of Fake Online Job Scam Exploiting Its Name](https://australiancybersecuritymagazine.com.au/landmark-community-services-warns-of-fake-online-job-scam-exploiting-its-name/) - An Australian disability service provider has issued a public warning after discovering that scammers are fraudulently using its name and logo to target unsuspecting jobseekers through fake online employment offers. Landmark Community Services, a registered NDIS provider based in Melbourne's inner west, has alerted the public to a growing identity theft scam in which criminals - [Social Media Platforms Face New Age Restrictions from December 2025](https://australiancybersecuritymagazine.com.au/social-media-platforms-face-new-age-restrictions-from-december-2025/) - The eSafety Commissioner has released updated guidance to help the online industry and the public prepare for Australia's new Social Media Minimum Age obligation, which comes into effect on 10 December 2025. The update outlines which platforms are expected to be classified as "age-restricted social media platforms" and therefore required to take reasonable steps to - [OAIC Reports Continued Rise in Notifiable Data Breaches in First Half of 2025](https://australiancybersecuritymagazine.com.au/oaic-reports-continued-rise-in-notifiable-data-breaches-in-first-half-of-2025/) - The Office of the Australian Information Commissioner (OAIC) has released its latest Notifiable Data Breaches (NDB) report and dashboard for January to June 2025, showing that the number of reported data breaches remains elevated across Australia's public and private sectors. The updated dashboard highlights ongoing challenges for organisations in protecting personal information, with cyber incidents continuing to - [Microsoft Azure Outage Hits Globally](https://australiancybersecuritymagazine.com.au/microsoft-azure-outage-hits-globally/) - In the early hours of Wednesday, 30 October 2025 (AEDT), Microsoft Azure suffered a significant outage caused by a configuration change to its cloud infrastructure. The disruption affected a wide range of services worldwide, including productivity applications, content delivery systems, and airline check‑in platforms. While the outage originated overseas, its ripple effects have implications for - [What's keeping Oceania's tech leaders up at night in 2026](https://australiancybersecuritymagazine.com.au/whats-keeping-oceanias-tech-leaders-up-at-night-in-2026/) - Artificial intelligence, ransomware and regulatory complexity will dominate the agendas of Australia's technology and security leaders in 2026, according to new research from ISACA. More than two-thirds (67%) of respondents from Oceania say AI-driven cyber threats and deepfakes will keep them up at night next year, while 45% worry most about irreparable harm caused by - [Cognizant and Rubrik expand partnership](https://australiancybersecuritymagazine.com.au/cognizant-and-rubrik-expand-partnership/) - Cognizant has expanded its partnership with Rubrik to provide Business Resilience-as-a-Service (BRaaS) for mutual customers. "The relentless pace of cyberattacks demands a fundamental shift from simple prevention to true resilience," said Bipul Sinha, CEO, Chairman, and Co-founder of Rubrik. "Rubrik's expanded partnership with Cognizant and the introduction of our joint Business Resilience-as-a-Service model is that - [Microsoft Faces Federal Court Action Over Alleged Misleading Conduct in Microsoft 365 Subscription Communications](https://australiancybersecuritymagazine.com.au/microsoft-faces-federal-court-action-over-alleged-misleading-conduct-in-microsoft-365-subscription-communications/) - The Australian Competition and Consumer Commission (ACCC) has initiated proceedings in the Federal Court against Microsoft Australia Pty Ltd and its parent company, Microsoft Corporation, alleging that millions of Australian consumers were misled about their options following the integration of the company's AI assistant into Microsoft 365 subscription plans. According to the ACCC, around 2.7 million - [Critical WSUS Vulnerability Prompts ACSC Alert](https://australiancybersecuritymagazine.com.au/critical-wsus-vulnerability-prompts-acsc-alert/) - The Australian Signals Directorate's (ASD) Australian Cyber Security Centre (ACSC) has issued a high-priority alert to business and government organisations following the disclosure of a critical vulnerability affecting Microsoft Windows Server Update Service (WSUS). Microsoft has identified the flaw, tracked as CVE-2025-59287, that could allow an unauthenticated actor to execute remote code with system-level privileges. - [Singapore International Cyber Week 2025: Shaping the Future of Cyber Resilience in the Indo-Pacific](https://australiancybersecuritymagazine.com.au/singapore-international-cyber-week-2025-shaping-the-future-of-cyber-resilience-in-the-indo-pacific/) - Singapore International Cyber Week (SICW) 2025 opened this week with a powerful message — cybersecurity has become the defining currency of trust in the digital economy, and cooperation across governments, industries, and technologies is essential for a secure Indo-Pacific. Held from 20 to 24 October, the annual event — organised by the Cyber Security Agency of - [AI Disruption and Quantum Risks Emerge as Top Concerns for Critical Infrastructure Security](https://australiancybersecuritymagazine.com.au/ai-disruption-and-quantum-risks-emerge-as-top-concerns-for-critical-infrastructure-security/) - Thales has released the findings of its 2025 Data Threat Report: Critical Infrastructure Edition, which reveals that operators in energy, utilities, telecommunications and transportation are entering a new era of cybersecurity risk. According to the report, nearly three-quarters (73%) of respondents said the fast-changing AI ecosystem is their leading AI-related security challenge, while almost two-thirds - [How ransomware economics drives the global cybercrime industry](https://australiancybersecuritymagazine.com.au/how-ransomware-economics-drives-the-global-cybercrime-industry/) - Cybercrime has matured into a highly structured global economy, rivalling legitimate industries in sophistication and profitability. The World Economic Forum projects that cybercrime will cost the global economy $10.5 trillion in 2025, effectively making it one of the largest economies in the world. (1) Ransomware is a key growth driver which has transformed from opportunistic - [Mukherjee promoted at Rapid 7](https://australiancybersecuritymagazine.com.au/mukherjee-promoted-at-rapid-7/) - Rapid7 has announced the promotion of Soumi Mukherjee to the role of Sales Director for Australia and New Zealand (ANZ). With more than 20 years' experience leading sales teams and driving growth for technology organisations across Asia-Pacific and ANZ, Mukherjee is responsible for accelerating Rapid7's regional growth and supporting organisations in securing their environments across - [Insight to Acquire Sekuro](https://australiancybersecuritymagazine.com.au/insight-to-acquire-sekuro/) - Insight Enterprises subsidiary, Insight Enterprises Australia Pty Limited, has signed a definitive agreement to acquire Sekuro. The acquisition wis intended to expand Insight's cybersecurity capabilities in the Asia Pacific region. "Cybersecurity is no longer just an IT issue; it's a critical business imperative. Clients across the APAC region are looking for a trusted partner to - [Australia faces rising cyber risk as threat actors surge ahead](https://australiancybersecuritymagazine.com.au/australia-faces-rising-cyber-risk-as-threat-actors-surge-ahead/) - In a year defined by ever escalating cyber risks, the 2025 Microsoft Digital Defense Report offers a stark look at how threat actors — from cyber criminals to nation-state adversaries — are evolving faster than ever. According to the report, authored in part by Amy Hogan-Burney, Corporate Vice President for Customer Security & Trust at Microsoft, organisations - [Banking scams up 65% globally in last year](https://australiancybersecuritymagazine.com.au/banking-scams-up-65-globally-in-last-year/) - A new report from BioCatch points to the explosive and exponential growth of scams all around the world. The research pulls data from financial institutions serving nearly 350 million consumers on five different continents and finds scam attempts increased by 65% in the last year. That includes a 100% spike in voice phishing (vishing) scam - [F5 Cybersecurity Breach Sparks National Security Concerns, ASD Issues Urgent Advisory](https://australiancybersecuritymagazine.com.au/f5-cybersecurity-breach-sparks-national-security-concerns-asd-issues-urgent-advisory/) - The Australian Signals Directorate's (ASD) Australian Cyber Security Centre (ACSC) has issued an urgent advisory following a significant cybersecurity incident involving global technology provider F5. The breach has been described by experts as one of the most serious in recent memory, with national security implications. F5 confirmed the incident in its October 2025 quarterly security - [Noosa Council confirms $2.3 million cyber fraud during 2024 Christmas period](https://australiancybersecuritymagazine.com.au/noosa-council-confirms-2-3-million-cyber-fraud-during-2024-christmas-period/) - Noosa Shire Council has publicly acknowledged it was the target of a major fraud incident during the 2024 Christmas period, resulting in the loss of $2.3 million. The crime is under active investigation by the Australian Federal Police and Interpol. In a message released on 13 October 2025, the CEO stated that the perpetrator was - [High Alert Volume and Downtime Challenge Security Teams](https://australiancybersecuritymagazine.com.au/high-alert-volume-and-downtime-challenge-security-teams/) - Illumio has released The 2025 Global Cloud Detection and Response Report, based on a global survey of 1,150 cybersecurity leaders, including 150 from Australia. The findings show that while Australia leads the world in detecting incidents involving lateral movement, organisations face disproportionate operational strain from alert fatigue, false positives, and downtime. In the past year, - [Australian Government Annual Cyber Threat Report released](https://australiancybersecuritymagazine.com.au/australian-government-annual-cyber-threat-report-released/) - The Australian Signals Directorate's Australian Cyber Security Centre's (ASD's ACSC's) Annual Cyber Threat Report (ACTR) 2024–25 is now available. The average Australian household has over a dozen internet-connected devices and Australians are spending more time online than ever before. This year's report found that malicious cyber activity continues to affect Australians in terms of frequency, cost and - [How to tackle the rising threat of shadow AI](https://australiancybersecuritymagazine.com.au/how-to-tackle-the-rising-threat-of-shadow-ai/) - By Philippa Cogswell, Vice President & Managing Partner, Unit 42, Asia Pacific and Japan, Palo Alto Networks It took around 23 years for the internet to accumulate a billion users, and mobile technology about 16 years to attain the same usership. For Generative artificial intelligence (GenAI), it's going to be closer to seven years, according - [Stolen Qantas Customer Records Surface on Dark Web](https://australiancybersecuritymagazine.com.au/stolen-qantas-customer-records-surface-on-dark-web/) - Qantas has confirmed that personal data stolen in a mid-2025 cyberattack has been released by hackers on the dark web, escalating the breach into one of Australia's most serious data incidents to date. The airline originally detected unusual activity on a third-party call centre platform on 30 June 2025 and moved to contain the breach. Qantas had - [Fake bank scam emails flood Aussie inboxes](https://australiancybersecuritymagazine.com.au/fake-bank-scam-emails-flood-aussie-inboxes/) - A sophisticated callback scam is underway where criminals are impersonating Australian Big Four banks in an attempt to extract money from unsuspecting Australian companies in the education, legal, and insurance sectors. During July 2025 alone, over 70,000 attempts were detected, with many more possibly going undetected, and the attacks are continuing. Mimecast's Threat Research Team - [Social Media Minimum Age obligation guidance](https://australiancybersecuritymagazine.com.au/social-media-minimum-age-obligation-guidance/) - The Office of the Australian Information Commissioner (OAIC) has published regulatory guidance for age-restricted social media platforms and age assurance providers on compliance with the privacy provisions for the Social Media Minimum Age (SMMA) scheme, due to take effect on 10 December. Privacy Commissioner Carly Kind said that the guidance reflects the stringent legal obligations - [Boost in cyber budgets this year - AI tops the agenda](https://australiancybersecuritymagazine.com.au/boost-in-cyber-budgets-this-year-ai-tops-the-agenda/) - Australian organisations are accelerating AI‑enabled cybersecurity, with three in four planning budget increases over the next 12 months as AI becomes their top priority, according to new research released by PwC Australia. Surveying over 100 Australian businesses and tech leaders, the 2026 Digital Trusts Insights report found organisations are increasingly concerned about AI-powered cyberattacks. AI - [Australian Clinical Labs ordered to pay penalties in relation to Medlab Pathology data breach](https://australiancybersecuritymagazine.com.au/australian-clinical-labs-ordered-to-pay-penalties-in-relation-to-medlab-pathology-data-breach/) - The Federal Court yesterday ordered that Australian Clinical Labs (ACL) pay $5.8 million in civil penalties in relation to a data breach by its Medlab Pathology business in February 2022. The breach resulted in the unauthorised access and exfiltration of the personal information of over 223,000 individuals. These are the first civil penalties ordered under - [DevOps1 acquires Innablr](https://australiancybersecuritymagazine.com.au/devops1-acquires-innablr/) - Australian consultancy DevOps1 has acquired cloud engineering firm Innablr. The acquisition lifts DevOps1's headcount to 130, with plans to more than double within two years. Building on 90 per cent growth over the past two years, the deal combines DevOps1's enterprise expertise in cloud, security and engineering with Innablr's decade of cloud, data and platform - [Configurable Peer Benchmarking for CISO Decision-Making](https://australiancybersecuritymagazine.com.au/configurable-peer-benchmarking-for-ciso-decision-making/) - Exabeam has announced security posture benchmarking for proactive security within Exabeam Nova, a core agentic AI component of the New-Scale Security Operations Platform. For the first time, security leaders can anonymously compare their security posture against similar organisations based on configurable parameters like industry, region, and company size. This release is a significant leap forward - [Fewer Australian Enterprises Are Training Staff For Security Roles Despite Understaffed Teams](https://australiancybersecuritymagazine.com.au/fewer-australian-enterprises-are-training-staff-for-security-roles-despite-understaffed-teams/) - Cybersecurity teams in Australia remain stretched thin, with more than half (54 percent) understaffed and 58 percent reporting unfilled positions. Yet despite this shortage, only a third of enterprises (34 percent) are training non-security staff to move into cyber roles, according to ISACA's 2025 State of Cybersecurity Report. The survey also shows that many of today's - [Cisco devices vulnerable and targeted](https://australiancybersecuritymagazine.com.au/cisco-devices-vulnerable-and-targeted/) - The Australian Cyber Security Centre has issued a critical alert following reports that threat actors are targeting multiple vulnerabilities impacting Cisco ASA 5500-X Series models, running Cisco ASA Software or FTD software: CVE-2025-20333 (Critical) – A vulnerability in the VPN web server of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat - [Splunk and Australian Signals Directorate commence Cyber Threat Intelligence Sharing](https://australiancybersecuritymagazine.com.au/splunk-and-australian-signals-directorate-commence-cyber-threat-intelligence-sharing/) - Splunk has partnered with the Australian Signals Directorate (ASD) to deliver a new plug-in that integrates Splunk Enterprise Security with ASD's Cyber Threat Intelligence Sharing (CTIS) platform. This integration allows Splunk customers who are also ASD CTIS community partners to share and receive cyber threat intelligence at the speed and scale needed to defend against today's increasingly - [Insicon Cyber opens expanded SOC](https://australiancybersecuritymagazine.com.au/insicon-cyber-opens-expanded-soc/) - Insicon Cyber has officially opened its expanded office and security operations centre and launched services in New Zealand, marking the company's evolution from cybersecurity advisory to a comprehensive managed security service provider (MSSP), with planned expansion into selected ASEAN markets. The larger facility houses Insicon Cyber's adaptive Security Operations Centre (aSOC), which includes Google SecOps, - [Four million scam calls: Buroserv directed to comply](https://australiancybersecuritymagazine.com.au/four-million-scam-calls-buroserv-directed-to-comply/) - The Australian Communications and Media Authority (ACMA) has directed telco provider Buroserv Australia Pty Ltd (Buroserv) to comply with phone scam rules after it breached information sharing and reporting obligations on multiple occasions. Telcos are required to share information about identified scam traffic with other telcos and the ACMA under the Reducing Scam Calls and - [New regulatory guidance on social media minimum age](https://australiancybersecuritymagazine.com.au/new-regulatory-guidance-on-social-media-minimum-age/) - eSafety has published regulatory guidance for the online industry, outlining the reasonable steps age-restricted social media platforms must take to prevent Australian children under 16 from having accounts on their services from 10 December. The guidance is informed by the Age Assurance Technology Trial commissioned by the Australian Government and outlines how platforms can meet their obligations through deploying - [Norton Unveils Advanced Deepfake Protection](https://australiancybersecuritymagazine.com.au/norton-unveils-advanced-deepfake-protection/) - Norton has teamed up with Intel® to provide powerful detection against AI-powered scams on the newest generation of Intel® Core™ Ultra processors. Norton 360 customers with Norton Genie Scam Protection now have advanced deepfake protection on AI PCs with the latest Intel processors, enabling faster, always-on detection that proactively protects against today's most sophisticated scams. - [NIST invites comment on Migration to Post-Quantum Cryptography](https://australiancybersecuritymagazine.com.au/nist-invites-comment-on-migration-to-post-quantum-cryptography/) - The NIST National Cybersecurity Center of Excellence (NCCoE) has published an initial public draft of NIST Cybersecurity White Paper (CSWP) 48, Mappings of Migration to PQC Project Capabilities to Risk Framework Documents. Cryptographic algorithms are vital for safeguarding confidential electronic information from unauthorized access. For decades, these algorithms have proved strong enough to defend against attacks - [Optus errors result in multiple fatalities; Independent Review Launched](https://australiancybersecuritymagazine.com.au/optus-errors-result-in-multiple-fatalities-independent-review-launched/) - Australian telco Optus is under intense scrutiny following a major technical failure that left parts of the country unable to access Triple Zero (000) emergency services, resulting in at least three deaths. CEO Stephen Rue issued a public apology on 21 September 2025 and announced a suite of measures to address what he described as "unacceptable" errors. - [C-Suite Survey Reveals Software Innovation driving revenue](https://australiancybersecuritymagazine.com.au/c-suite-survey-reveals-software-innovation-driving-revenue/) - GitLab Inc has released its 2025 executive research report, The Economics of Software Innovation: AUD$6B Opportunity at a Crossroads. Conducted by The Harris Poll, the study surveyed 259 C-level executives in Australia on the role of software innovation* in business success. "AI-fuelled software innovation is an undeniable source of competitive advantage and economic impact, with - [Staggering cost of outages to businesses](https://australiancybersecuritymagazine.com.au/staggering-cost-of-outages-to-businesses/) - New Relic has released its 2025 Observability Forecast, surveying over 1,700 IT and engineering leaders and team members across 23 countries and 11 industries. The report highlights key focus areas, challenges, and trends influencing observability investments like the growing adoption of enterprise AI. The data showed that the cost of any digital business downtime is - [Data Sovereignty Emerges as Critical Business Risk](https://australiancybersecuritymagazine.com.au/data-sovereignty-emerges-as-critical-business-risk/) - Pure Storage has released new insights on data sovereignty in collaboration with the University of Technology Sydney (UTS). The analysis reveals how geopolitical uncertainty and regulatory evolution are transforming data sovereignty from a compliance issue into a fundamental business risk affecting competitiveness, innovation, and customer trust. A qualitative pulse-survey of industry leaders across nine countries - [Brisbane Office Opening for ThreatLocker](https://australiancybersecuritymagazine.com.au/brisbane-office-opening-for-threatlocker/) - ThreatLocker has a new office in Brisbane, Australia. ThreatLocker CEO and Co-Founder Danny Jenkins and COO and Co-Founder Sami Jenkins joined staff in marking this significant step in the company's growth across the Asia-Pacific region. The ThreatLocker Brisbane office serves as a hub for expanding its support of Australian organizations in line with the Australian - [Infostealer Malware and the Cartelisation of Cybercrime](https://australiancybersecuritymagazine.com.au/infostealer-malware-and-the-cartelisation-of-cybercrime/) - By Jordan Cadzow and James van Rooyen Introduction The uncomfortable truth of our modern digital lives is that infostealer malware has become one of the most pervasive and damaging threats in the global cyber landscape. This point has been showcased in sources ranging from Verizon’s 2025 Data Breach Investigations Report (DBIR), IBM’s X-Force Threat Intelligence - [Eat your cyber vegetables!](https://australiancybersecuritymagazine.com.au/eat-your-cyber-vegetables/) - We speak with Mick Baccio, Global Security Strategist at Splunk in Boston at .conf25. Mick outlines the evolution of the Splunk SURGe team into Foundation AI, emphasising their response to the SolarWinds attack and their collaboration with Cisco and Robust Intelligence to build large language models for cybersecurity. Baccio highlighted the importance of consistency in - [Ransomware Hits New Peak: Data Theft Nearly Doubles to 238TB](https://australiancybersecuritymagazine.com.au/ransomware-hits-new-peak-data-theft-nearly-doubles-to-238tb/) - Ransomware attacks globally are intensifying at an alarming rate, with attempted attacks blocked in the Zscaler cloud up 146% year-over-year. This escalation reflects a strategic shift: ransomware groups are increasingly prioritising data theft and extortion over data encryption, with sensitive data leaked online when victims fail to pay. Accordingly, the report details a 92% increase - [Why Australia is a prime target for geopolitical cyber espionage](https://australiancybersecuritymagazine.com.au/why-australia-is-a-prime-target-for-geopolitical-cyber-espionage/) - Cybercrime has become a structured, global enterprise, operating at a scale that rivals some of the world's largest economies and influencing strategic risk conversations across government and industry. Many threat groups have adopted commercial structures, offering ransomware kits, stolen credentials, and remote access tools through established distribution models. This level of professionalisation has lowered the - [Cisco Elevates the SOC with Agentic AI](https://australiancybersecuritymagazine.com.au/cisco-elevates-the-soc-with-agentic-ai/) - Cisco today introduced Splunk Enterprise Security Essentials Edition and Splunk Enterprise Security Premier Edition, providing two agentic AI-powered SecOps options that unify security workflows across threat detection, investigation, and response (TDIR). Delivered within Splunk Enterprise Security 8.2, these advancements streamline offerings and empower customers with faster threat response and simplified security solutions. Cisco also unveiled - [AI attackers on adoption curve with first report of a novel malware strain](https://australiancybersecuritymagazine.com.au/ai-attackers-on-adoption-curve-with-first-report-of-a-novel-malware-strain/) - We speak with Ryan Fetterman of Foundation AI with Splunk in Boston at .conf25. For the past three years, Ryan has been part of the SURGe security research team at Splunk. This team focuses on strategic security research and the modern-day problems of the blue team. Recently, SURGe has joined with intelligence researchers who have - [Australian CIOs surge ahead in AI adoption](https://australiancybersecuritymagazine.com.au/australian-cios-surge-ahead-in-ai-adoption/) - New data from an OpenText–Ponemon study of nearly 1,900 global CIOs and IT security leaders highlight while AI adoption is surging, the governance and security gaps remain a barrier for CIOs and technology executives. Key findings for Australia include: More than half (54%) say reducing AI security and legal risks is "very" or "extremely" difficult. - [New Australian Managing Director for Cohesity](https://australiancybersecuritymagazine.com.au/new-australian-managing-director-for-cohesity/) - Cohesity has appointed James Eagleton as Managing Director for Australia and New Zealand (ANZ). In this role, Eagleton will be responsible for driving Cohesity's overall business strategy, sales operations, and growth initiatives across the ANZ region. "I am honoured to lead the Cohesity teams across ANZ, especially following the integration of the well-established regional Veritas - [Cybersecurity burnout high in Australia in 2025](https://australiancybersecuritymagazine.com.au/cybersecurity-burnout-high-in-australia-in-2025/) - The 5th edition of the Sophos report The Future of Cybersecurity in Asia Pacific and Japan (APJ), produced in collaboration with Tech Research Asia (now part of Omdia). The findings reveal that cybersecurity burnout remains high in Australia, with 78% of organisations surveyed experiencing issues – primarily driven by increased threat activity, lack of resources, - [Critical Alert issued for NetScaler ADC and NetScaler Gateway devices](https://australiancybersecuritymagazine.com.au/critical-alert-issued-for-netscaler-adc-and-netscaler-gateway-devices/) - The Australian Signals Directorate's Australian Cyber Security Centre has issued a critical alert for technical IT services supporting organisations, such as critical infrastructure, and government. Multiple vulnerabilities have been reported, impacting NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway) products: CVE-2025-7775 (Critical) involves a memory overflow vulnerability leading to Remote Code Execution - [NIST Releases Revision to the Security and Privacy Control Catalogue](https://australiancybersecuritymagazine.com.au/nist-releases-revision-to-the-security-and-privacy-control-catalogue/) - A revision to NIST's catalogue of security and privacy controls, Special Publication (SP) 800-53, Security and Privacy Controls for Information Systems and Organizations, is available. This revision focuses on improving the security and reliability of software updates and patches in response to Executive Order 14306 on strengthening the Nation's cybersecurity. SP 800-53 Release 5.2.0 addresses multiple aspects of the - [Study examines how AI can ease workloads for frontline cybersecurity teams](https://australiancybersecuritymagazine.com.au/study-examines-how-ai-can-ease-workloads-for-frontline-cybersecurity-teams/) - CSIRO, Australia's national science agency, has analysed data from a 10-month trial conducted by global cybersecurity firm eSentire exploring how large language models (LLMs) like ChatGPT-4 can support cybersecurity analysts to detect and stop threats while reducing fatigue. The anonymised data was collected at eSentire's Security Operations Centres (SOCs) in Ireland and Canada, where analysts identify, investigate - [Insider Threats, Supercharged by AI, Set for Explosive Growth in Australia](https://australiancybersecuritymagazine.com.au/insider-threats-supercharged-by-ai-set-for-explosive-growth-in-australia/) - A new multinational report, From Human to Hybrid: How AI and the Analytics Gap Are Fueling Insider Risk, based on a global survey of 1,010 cybersecurity professionals across key sectors, reveals that insider threats have overtaken external attacks as the top security concern, with AI accelerating the shift. Australia stands out globally in insider risk - [Australian workers clicking on phishing links doubles in nine months](https://australiancybersecuritymagazine.com.au/australian-workers-clicking-on-phishing-links-doubles-in-nine-months/) - An average of 1.2% of Australian workers clicked on a phishing link each month in the last 12 months–a 140% increase since the last count, accorded to Netskope Threat Labs. Nearly one in five clicks (19%) were driven by phishing messages impersonating Microsoft or Google, with attackers aiming to steal workers' corporate credentials, and access - [Draft CSF 2.0 Quick-Start Guide on Emerging Cybersecurity Risks](https://australiancybersecuritymagazine.com.au/draft-csf-2-0-quick-start-guide-on-emerging-cybersecurity-risks/) - NIST has released the initial public draft (IPD) of Special Publication (SP) 1331, Quick-Start Guide for Using CSF 2.0 to Improve the Management of Emerging Cybersecurity Risks, for public comment. The document highlights the topic of emerging cybersecurity risks and explains how organisations can improve their ability to address such risks through existing practices within the cyber risk - [BioCatch Trust wins best scam-prevention solution](https://australiancybersecuritymagazine.com.au/biocatch-trust-wins-best-scam-prevention-solution/) - BioCatch Trust has won the 2025 Fraud Impact Award for Best Scam and APP Fraud Prevention Solution. Launched in Australia in November of 2024 and then Argentina in May of 2025, BioCatch Trust™ enables member banks to assess risk on the receiving side of a transaction before any money leaves the sender's account. This allows - [AI Crawlers majority of AI Bot Traffic](https://australiancybersecuritymagazine.com.au/ai-crawlers-majority-of-ai-bot-traffic/) - Fastly, Inc. has released its Q2 2025 Threat Insights Report, exposing a striking shift in the nature and scale of automated web traffic. Analysis of traffic from mid-April to mid-July shows that AI crawlers made up almost 80% of all AI bot traffic observed, with Meta generating more than half and eclipsing both Google and OpenAI - [Aussies embracing AI in the workplace](https://australiancybersecuritymagazine.com.au/aussies-embracing-ai-in-the-workplace/) - Australian workers are optimistic about artificial intelligence adoption and the impact it will have in the workplace, with a new report from the Tech Council of Australia (TCA) finding most workers believe technology has improved their working lives. Future Ready: Australians and AI Workplace Tech (the report) found 93% of Australian workers believe AI will - [iiNet Confirms Cyber Breach Exposing Customer Contact Details](https://australiancybersecuritymagazine.com.au/iinet-confirms-cyber-breach-exposing-customer-contact-details/) - Australian internet service provider iiNet has confirmed a cyber incident that exposed the contact details of hundreds of thousands of customers, after an unauthorised third party gained access to its order management system. The Perth-headquartered company, part of the TPG Telecom group, said the breach was identified and contained on Saturday, 16 August 2025. The compromised system - [Accenture to Acquire CyberCX](https://australiancybersecuritymagazine.com.au/accenture-to-acquire-cybercx/) - Accenture has agreed to acquire CyberCX, a move that represents Accenture's largest cybersecurity acquisition to date and is set to bolster Accenture's cybersecurity services in the Asia Pacific. Established in Melbourne, Australia in 2019, CyberCX operates a network of security operations centers across Australia and New Zealand, with additional offices in London and New York. - [NIST Releases Control Overlays for Securing AI Systems Concept Paper](https://australiancybersecuritymagazine.com.au/nist-releases-control-overlays-for-securing-ai-systems-concept-paper/) - NIST has released a concept paper and proposed action plan for developing a series of NIST SP 800-53 Control Overlays for Securing AI Systems, as well as a launching a Slack channel for this community of interest. The concept paper outlines proposed AI use cases for the control overlays to manage cybersecurity risks in the use and - [As Agentic AI Gains Traction - Enterprises Anticipate Heightened Risks](https://australiancybersecuritymagazine.com.au/as-agentic-ai-gains-traction-enterprises-anticipate-heightened-risks/) - With 95% of enterprises facing incidents, Infosys research reveals a wide gap between AI adoption and responsible AI readiness, exposing most enterprises to reputational risks and financial loss. For insights into the state of responsible AI (RAI) implementation across enterprises, particularly with the advent of agentic AI, a survey of over 1,500 business executives and - [Australian organisations not adequately prepared to secure AI-driven future](https://australiancybersecuritymagazine.com.au/australian-organisations-not-adequately-prepared-to-secure-ai-driven-future/) - A new report from Accenture reveals that a staggering 97% of Australian organisations are not adequately prepared to secure their AI-driven future. The "State of Cybersecurity Resilience 2025" report also reveals a widespread cybersecurity immaturity across regions, highlighting a critical gap between ambition and readiness. The research reveals that the rapid AI adoption has dramatically accelerated the speed, scale - [Optus facing civil penalty action over 2022 data breach](https://australiancybersecuritymagazine.com.au/optus-facing-civil-penalty-action-over-2022-data-breach/) - The Australian Information Commissioner (AIC) has filed civil penalty proceedings in the Federal Court against Singtel Optus Pty Limited and Optus Systems Pty Limited (together, Optus), following an investigation in relation to the data breach made public by Optus on 22 September 2022. The data breach involved unauthorised access to the personal information of millions - [ACS backs digital productivity vision](https://australiancybersecuritymagazine.com.au/acs-backs-digital-productivity-vision/) - The Australian Computer Society (ACS) has welcomed the Productivity Commission's interim report on Harnessing Data and Digital Technology as a timely acknowledgment of the central role digital capability plays in Australia's economic resilience and future prosperity. ACS is officially supporting many of the Commission's findings, particularly the emphasis on improving digital skills, encouraging innovation, and - [One in Three Australian Ransomware Victims Hit Multiple Times](https://australiancybersecuritymagazine.com.au/one-in-three-australian-ransomware-victims-hit-multiple-times/) - Barracuda Networks, Inc. has released new research showing one in three Australian organisations affected by ransomware have been hit multiple times in the last 12 months. The findings are detailed in the Ransomware Insights Report 2025, which also reveals the situation in Australia is particularly concerning, with 67% of repeat victims saying they are juggling - [Bastion to broaden its presence in Australia, merges with Seamless Intelligence](https://australiancybersecuritymagazine.com.au/bastion-to-broaden-its-presence-in-australia-merges-with-seamless-intelligence/) - New Zealand headquartered Bastion Security Group has signed an agreement to merge with Seamless Intelligence, a specialist cyber security managed services provider headquartered in Perth, Australia. This marks Bastion's second acquisition in Australia, having recently acquired and integrated Melbourne-based cyber security managed services provider Cythera. The acquisition of Seamless Intelligence is expected to complete in - [Australians losing trust as system failures surge](https://australiancybersecuritymagazine.com.au/australians-losing-trust-as-system-failures-surge/) - New research reveals that 41% of Australians have experienced a system failure, incident or outage with a telecommunications provider in the past 12 months, followed closely by financial services (38%) and retail (29%). These failures are not just inconvenient and frustrating; they're costly. Australians lost an estimated 73 million hours and $5.3 billion in the - [Australian Appointed Vice Chair of ISACA Global Board](https://australiancybersecuritymagazine.com.au/australian-appointed-vice-chair-of-isaca-global-board/) - ISACA has announced the appointment of Australian cybersecurity expert Jamie Norton (pictured) as Vice Chair of its 2025–2026 Board of Directors. Norton, currently Chief Information Security Officer (CISO) for the Australian Securities and Investments Commission (ASIC), steps into the Vice Chair role as part of ISACA's continued focus on strengthening leadership across its global community. - [Sektor to distribute SentinelOne](https://australiancybersecuritymagazine.com.au/sektor-to-distribute-sentinelone/) - Sektor has announced a new distribution agreement with SentinelOne across Australia and New Zealand. The partnership will see Sektor offer SentinelOne's AI-powered Singularity® Platform, powered by Purple AI—spanning EPP/EDR, identity threat detection, AI SIEM, Hyperautomation and cloud security—to resellers and MSSPs across enterprise, government and mid-market sectors. "SentinelOne is a standout addition to our cybersecurity - [Free Assessment Tool to Navigate Child Safety Age Assurance Compliance](https://australiancybersecuritymagazine.com.au/free-assessment-tool-to-navigate-child-safety-age-assurance-compliance/) - AU10TIX has launched a free Child Safety Age Assurance Risk and Readiness Assessment and Age Assurance Readiness Guide designed to help businesses better understand their risk and tailor their strategy to meet regulatory obligations. They support AU10TIX's Selfie-based Age Estimation service, which delivers the industry's most precise and unbiased age assessment in just two seconds. - [Shadow AI risks proliferate](https://australiancybersecuritymagazine.com.au/shadow-ai-risks-proliferate/) - Netskope has released new research showing a 50% spike in genAI platform usage among enterprise end-users in the three months ended May 2025. Despite an ongoing shift toward safe enablement of SaaS genAI apps and AI agents, the growth of shadow AI—unsanctioned AI applications in use by employees—continues to compound potential security risks, with over - [Security learnings from developing the NCCoE Chatbot](https://australiancybersecuritymagazine.com.au/security-learnings-from-developing-the-nccoe-chatbot/) - The NIST National Cybersecurity Center of Excellence (NCCoE) has re-issued NIST Internal Report (IR) 8579, Developing the NCCoE Chatbot: Technical and Security Learnings from the Initial Implementation. Originally published in June, the document was revised to improve the document's demonstration of the enhanced abilities of an RAG-based LLM tool over a generic LLM. The public comment - [NIST releases Second Public Draft for Supply Chain Traceability](https://australiancybersecuritymagazine.com.au/nist-releases-second-public-draft-for-supply-chain-traceability/) - The NIST National Cybersecurity Center of Excellence (NCCoE) has released a second public draft of NIST Internal Report 8536, Supply Chain Traceability: Manufacturing Meta-Framework for public comment. The paper presents a framework to improve traceability across complex and distributed manufacturing ecosystems. It enables structured recording, linking, and querying of traceability data across trusted repositories. This research is - [NIST Secure Software DevSecOps Practices Publication](https://australiancybersecuritymagazine.com.au/nist-secure-software-devsecops-practices-publication/) - To support the creation of software that is secure against cyber breaches and free of malicious code, the U.S. Department of Commerce's National Institute of Standards and Technology (NIST) is working with industry partners through a consortium focused on improving software security. The Software Supply Chain and DevOps Security Practices Consortium is part of NIST's response to - [Australia Ranks Fourth Globally for Cyber Threats in Critical Infrastructure](https://australiancybersecuritymagazine.com.au/australia-ranks-fourth-globally-for-cyber-threats-in-critical-infrastructure/) - Australia has retained its position as the fourth most targeted country in the world for cyberattacks on operational technology (OT) and Internet of Things (IoT) systems, according to the latest OT & IoT Security Report from Nozomi Networks Labs. The semi-annual report draws on data from a global network of honeypots, wireless monitoring, and telemetry sources to - [New Country Manager for NinjaOne](https://australiancybersecuritymagazine.com.au/new-country-manager-for-ninjaone/) - NinjaOne appoints Geoff Davies (pictured) as the new Vice President and Country Manager for Australia and New Zealand (ANZ). Davies brings more than 15 years of experience leading high-performance sales teams across the region. As VP and Country Manager, Davies will be responsible for growing NinjaOne's business across Australia and New Zealand and continuing to - [Ransomware Risk Management framework released for comment](https://australiancybersecuritymagazine.com.au/ransomware-risk-management-framework-released-for-comment/) - Earlier this year, the NIST National Cybersecurity Center of Excellence published an initial public draft of NIST Interagency Report (NIST IR) 8374 Revision 1, Ransomware Risk Management: A Cybersecurity Framework 2.0 Community Profile. The project team is interested in gathering additional comments and feedback prior to publishing the final version. The public comment period for this publication - [Notable email-based threats targeting organisations around the world](https://australiancybersecuritymagazine.com.au/notable-email-based-threats-targeting-organisations-around-the-world/) - During July, Barracuda threat analysts identified several notable email-based threats targeting organisations around the world. Many of them leveraged popular phishing-as-a-service (PhaaS) kits. The threats include: Tycoon PhaaS impersonating the Autodesk Construction Cloud for a credential phishing attack A fake toll violation scam targeting U.S.-based drivers Phishing emails mimicking the Zix Secure Message service EvilProxy attacks impersonating RingCentral - [Agent-driven automation deployed in the Oracle Database](https://australiancybersecuritymagazine.com.au/agent-driven-automation-deployed-in-the-oracle-database/) - MyRISK has launched CyberFLOWS, that enables real-time, agent-driven automation entirely within the Oracle Database. Developed in conjunction with Oracle, CyberFLOWS delivers an Oracle-native orchestration layer that allows AI agents, business workflows, and analytic engines to coordinate autonomously via Oracle Transactional Event Queues (TEQ). The architecture supports sub-second event routing, guaranteed delivery, and full in-database auditability - [Kinetic IT appoints Defence leader Murray Thompson AM CSC](https://australiancybersecuritymagazine.com.au/kinetic-it-appoints-defence-leader-murray-thompson-am-csc/) - Kinetic IT has announced the appointment of Major General (Retired) Murray Thompson AM CSC as Group Executive Advisory & Transformation, marking a significant step forward in the company's growth and transformation strategy. In this newly created executive leadership role, Thompson will lead Kinetic IT's Advisory & Transformation portfolio, encompassing digital transformation, automation, cyber security and - [Cybersecurity Still Misaligned with Business Risk Priorities](https://australiancybersecuritymagazine.com.au/cybersecurity-still-misaligned-with-business-risk-priorities/) - Qualys has released The 2025 State of Cyber Risk Assessment Report, revealing that many organisations are still approaching cyber risk as a technical rather than a business problem. The study, commissioned by Qualys and conducted by Dark Reading, draws on insights from over 100 IT and cybersecurity leaders across industries. It finds that although nearly - [U.S.-Based Cybersecurity and Defence Experts hired to Accelerate Expansion](https://australiancybersecuritymagazine.com.au/u-s-based-cybersecurity-and-defence-experts-hired-to-accelerate-expansion/) - archTIS Limited has appointed two U.S.-based professionals, Erik Hanson and Darroll Walsh, to support the Company's expansion into the North American defence and government sectors. These appointments are the first major deployment of capital from the recently completed A$7.5 million placement and signal archTIS' intent to scale its operations and customer engagement efforts in the - [Critical Alert issued on Microsoft Office SharePoint Server vulnerability](https://australiancybersecuritymagazine.com.au/critical-alert-issued-on-microsoft-office-sharepoint-server-vulnerability/) - The Australian Signals Directorate's Australian Cyber Security Centre issued a critical alert over the weekend concerning a vulnerability impacting Microsoft Office SharePoint Server products (CVE-2025-53770). Microsoft announced its awareness of an exploit for CVE-2025-53770 that exists in the wild and has observed active attacks targeting on-premises SharePoint Server customers. Microsoft is preparing and fully testing a - [Australia political parties hit with ransomware attack](https://australiancybersecuritymagazine.com.au/australia-political-parties-hit-with-ransomware-attack/) - Australia political parties started by mining billionaire Clive Palmer, the United Australia Party, and Trumpets of Patriots have confirmed in a statement on its website that a data breach occurred on 23 June 2025 and has potentially accessed "all emails to and from the Political Parties (including their attachments) and documents and records created and or held electronically - [Chinese Threat Actors Target Taiwan's Semiconductor Industry](https://australiancybersecuritymagazine.com.au/chinese-threat-actors-target-taiwans-semiconductor-industry/) - Researchers from cybersecurity company Proofpoint have released new insights uncovering a significant escalation in China-aligned cyber espionage operations targeting Taiwan's critical semiconductor industry. The findings reveal a concerted and expanding effort by multiple state-sponsored threat actors to infiltrate and gather intelligence from this vital sector which could have some impact on Australian businesses. Between March and June 2025, - [Backdoor discovered to SonicWall Secure Mobile Access](https://australiancybersecuritymagazine.com.au/backdoor-discovered-to-sonicwall-secure-mobile-access/) - Google Threat Intelligence Group (GTIG) has published new research that uncovers a previously unknown backdoor that threat actors are deploying on fully patched SonicWall Secure Mobile Access (SMA) 100 series appliances. GTIG has identified UNC6148, a sophisticated threat actor, opportunistically exploiting fully patched, end-of-life SonicWall Secure Mobile Access (SMA) 100 series appliances. The actor is deploying - [Fake Internal Emails Dominate Phishing Simulation Clicks](https://australiancybersecuritymagazine.com.au/fake-internal-emails-dominate-phishing-simulation-clicks/) - KnowBe4 has released its Q2 2025 Simulated Phishing Roundup report. The roundup highlights a continued trend of employee susceptibility to social engineering techniques that exploit familiarity and trust, as seen in dominant interactions with internal communications and well-known brands, making up 98% of top email subject lines. All data for this roundup was taken from - [Qantas gains interim injunction in the NSW Supreme Court](https://australiancybersecuritymagazine.com.au/qantas-gains-interim-injunction-in-the-nsw-supreme-court/) - Following a Qantas contact centre being hit by a 'significant' cyber breach, with stolen data including customers' names, emails, phone numbers, dates of birth and Frequent Flyer numbers, Qantas has obtained an interim injunction in the NSW Supreme Court. In a statement, Qantas advised: This prevents the stolen data from being accessed, viewed, released, used, transmitted or - [Critical Flaw in Windows Server 2025 exposed](https://australiancybersecuritymagazine.com.au/critical-flaw-in-windows-server-2025-exposed/) - Semperis has released new research detailing Golden dMSA, a critical design flaw active in delegated Managed Service Accounts (dMSAa) in Windows Server 2025. The flaw can result in high-impact attacks, enabling cross-domain lateral movement and persistent access to all managed service accounts and their resources across Active Directory indefinitely. To help further understanding of how - [The MSP Customer Insight Report 2025](https://australiancybersecuritymagazine.com.au/the-msp-customer-insight-report-2025/) - The MSP Customer Insight Report 2025 reveals organisations are now relying on MSPs and channel partners not just for technical expertise, but for strategic guidance and long-term resilience. The survey, undertaken by Barracuda with Vanson Bourne, gathered insights from 2,000 IT and security decision makers across the Americas, Europe and Asia-Pacific. The findings highlight a - [Cybersecurity Risks of Portable Storage Media in OT Environments](https://australiancybersecuritymagazine.com.au/cybersecurity-risks-of-portable-storage-media-in-ot-environments/) - The NIST National Cybersecurity Center of Excellence has developed the draft NIST Special Publication (SP) 1334, Reducing the Cybersecurity Risks of Portable Storage Media in OT Environments. The cybersecurity considerations in this two-pager are intended to help operational technology (OT) operators and manufacturers use Universal Serial Bus (USB) devices securely. Portable storage media can be used to - [SMB cybersecurity: Gap between perceived confidence and actual preparedness](https://australiancybersecuritymagazine.com.au/smb-cybersecurity-gap-between-perceived-confidence-and-actual-preparedness/) - A global study on Information Technology security among small and medium-sized businesses, entitled The State of IT security in SMBs in 2025, aimed to identify the progress that SMBs have made over the past year in terms of their security posture, while taking into account the risks and persistent gaps that continue to threaten their - [auDA grant issued to protect DNS](https://australiancybersecuritymagazine.com.au/auda-grant-issued-to-protect-dns/) - auDA has award $2.5 million over three years (2025-2028) for a research and development (R&D) grant to fund two projects to safeguard the encryption used by the Domain Name System (DNS) against the threat of quantum computing, and reduce the impact of scams among people with cognitive disability. The two projects were selected from a - [Comment Period Extension for NIST HPC Security Overlay](https://australiancybersecuritymagazine.com.au/comment-period-extension-for-nist-hpc-security-overlay/) - The initial public draft (IPD) of NIST Special Publication (SP) 800-234, High-Performance Computing (HPC) Security Overlay, is available for public comment with a new due date for submitting public comment of August 4, 2025. High-performance computing (HPC) systems provide fundamental computing infrastructure for large-scale artificial intelligence (AI) and machine learning (ML) model training, big data analysis, and - [Criminal playbook for deepfake-enabled cybercrime](https://australiancybersecuritymagazine.com.au/criminal-playbook-for-deepfake-enabled-cybercrime/) - A new report is exposing the scale and maturity of deepfake-enabled cybercrime. As generative AI tools become more powerful, affordable, and accessible, cybercriminals are rapidly adopting them to support attacks, ranging from business fraud to extortion and identity theft. The report shows how deepfakes have moved beyond hype into real-world exploitation, undermining digital trust, exposing - [July Patch Tuesday](https://australiancybersecuritymagazine.com.au/july-patch-tuesday/) - Microsoft has addressed 128 CVEs in its July 2025 Patch Tuesday release, with 12 rated critical, and 115 rated important and one rated as moderate. Tenable's Satnam Narang, sr. staff research engineer noted the release omitted nine vulnerabilities reported by AMD and MITRE. Elevation of Privilege (EoP) vulnerabilities accounted for 41.4% of the vulnerabilities patched - [Australian Organisations Must Get Battle-Ready to Prevent AI-Powered Cyberwarfare Attacks](https://australiancybersecuritymagazine.com.au/australian-organisations-must-get-battle-ready-to-prevent-ai-powered-cyberwarfare-attacks/) - By Nadir Izrael, Co-Founder and CTO, Armis The threat of cyber warfare against Australia has escalated, driving a significant increase in investment to strengthen national cyber capabilities. The shift reflects the rapidly evolving nature of cyber threats and the growing recognition that conventional cybersecurity strategies are no longer sufficient. As government and business alike face - [ADF partner with Philippine Army on defensive cyber](https://australiancybersecuritymagazine.com.au/adf-partner-with-philippine-army-on-defensive-cyber/) - The Australian Defence Force (ADF) and the Philippine Army have participated in a combined defensive cyber activity to enhance regional cybersecurity. Conducted in Manila, Philippines, the bilateral activity brought together Australian cyber warfare officers and specialists from the ADF's Cyber Command and members from the Philippines Army Cyber and Network Enterprise Battalions to strengthen cyber - [Critical vulnerabilities in Citrix Products](https://australiancybersecuritymagazine.com.au/critical-vulnerabilities-in-citrix-products/) - The ASD's ACSC has issued a critical alert to its subscriber community concerning vulnerabilities in Citrix Netscaler ADC and NetScaler Gateway Products with recommendations to update affected products to the latest versions and follow the advice detailed in the Citrix Security Advisory. Update 4 July 2025 Citrix has identified exploitation of a separate vulnerability (CVE-2025-6543) in - [Scattered Spider: Insights, Observations, and Recommendations](https://australiancybersecuritymagazine.com.au/scattered-spider-insights-observations-and-recommendations/) - Overview of Scattered Spider and recent activity Scattered Spider (also tracked as UNC3944, Scatter Swine, Muddled Libra, among other aliases) is a financially motivated cybercriminal group active since at least May 2022. The group is notorious for targeting large enterprises — especially telecommunications, outsourcing firms, cloud/tech companies, and more recently, retail, finance, and the airline sector - [Qantas contact centre hit by 'significant' cyber incident](https://australiancybersecuritymagazine.com.au/qantas-contact-centre-hit-by-significant-cyber-incident/) - Qantas has confirmed that a cyber incident has been contained in one of its contact centres, impacting customer data. In a statement, the company advised, "On Monday 30 June 2025, we detected unusual activity on a third-party platform used by a Qantas airline contact centre. We then took immediate steps and contained the incident. We can - [Recommendation for Key Management | NIST Requests Public Comment](https://australiancybersecuritymagazine.com.au/recommendation-for-key-management-nist-requests-public-comment/) - NIST maintains its cryptography standards and guidelines using a periodic review process. Currently, NIST seeks your feedback on all aspects of these two publications: NIST Special Publication (SP) 800-57 Part 2, Revision 1, Recommendation for Key Management: Part 2 – Best Practices for Key Management Organizations (2019) NIST SP 800-57 Part 3, Rev. 1, Recommendation for Key Management: - [Virtual IT Group and The Instillery announce trans-Tasman merger.](https://australiancybersecuritymagazine.com.au/virtual-it-group-and-the-instillery-announce-trans-tasman-merger/) - Australian-based Virtual IT Group and New Zealand's The Instillery have announced they are joining forces to form one of the largest integrated trans-Tasman managed services and security providers in the market. "The addition of The Instillery strengthens our platform across both geography and service offering," said VITG CEO Christian Pacheco (pictured). "Their leadership team and - [ACMA Moves to Protect Vulnerable Telco Consumers](https://australiancybersecuritymagazine.com.au/acma-moves-to-protect-vulnerable-telco-consumers/) - Protections for telco consumers facing domestic and family violence will be a strong focus for the Australian Communications and Media Authority (ACMA) over the next 12 months, with the regulator cracking down on telcos that fail to meet their obligations under new industry rules. The ACMA's 2025–26 compliance and enforcement priorities, which also include tackling - [Report by Audit Office of New South Wales Examines State's Cyber Policy](https://australiancybersecuritymagazine.com.au/report-by-audit-office-of-new-south-wales-examines-states-cyber-policy/) - The Audit Office of New South Wales has published a report that presents its analysis of the NSW Cyber Security Policy compliance data submitted by State agencies to Cyber Security New South Wales in 2024, along with insights into the cyber security environment drawn from selected reports published between 2018 and 2025. This analysis includes - [Check Point Research Identifies New Malware Techniques](https://australiancybersecuritymagazine.com.au/check-point-research-identifies-new-malware-techniques/) - Check Point Research has identified the first documented case of malware embedding prompt injection to evade AI detection. The malware embedded natural-language text into the code that was designed to influence AI models into misclassifying it as benign. While the evasion attempt did not succeed, it signals the emergence of a new category of threats. - [Report Finds Workplace AI Policies Lag AI Use](https://australiancybersecuritymagazine.com.au/report-finds-workplace-ai-policies-lag-ai-use/) - Despite soaring use of artificial intelligence in the workplace, most organisations remain critically unprepared to manage the risks, according to ISACA's annual AI Pulse Poll, which surveyed 3,029 digital trust professionals worldwide. The 2025 poll reveals that 81% of respondents believe employees within their organisation use AI, whether it is permitted or not, yet only - [Sophos Releases Sixth Annual Ransomware Report](https://australiancybersecuritymagazine.com.au/sophos-releases-sixth-annual-ransomware-report/) - Cybersecurity company Sophos has released its sixth annual State of Ransomware report, a vendor-agnostic survey of IT and cybersecurity leaders across 17 countries that studies the impact of ransomware attacks on businesses. This year's survey found that 41% of Australian organisations paid the ransom to get their data back – a considerable decrease from last - [Expert Issues Alert About End of Fiscal Year Online Security Threats](https://australiancybersecuritymagazine.com.au/expert-issues-alert-about-end-of-fiscal-year-online-security-threats/) - The director of security strategy for Asia Pacific and Japan at Akamai Technologies says the end of the financial year means it's more important now than ever for businesses to be even more vigilant and take stock of their online security. "While the types of threats remain similar, they have become more sophisticated due to - [Report Reveals Gen AI Adoption Divides C-Suite Leaders](https://australiancybersecuritymagazine.com.au/report-reveals-gen-ai-adoption-divides-c-suite-leaders/) - NTT DATA has launched its new report, The AI Security Balancing Act: From Risk to Innovation, highlighting the opportunities and risks AI presents in cybersecurity. The findings show a misalignment among C-Suite leaders when it comes to business goals and operational readiness for GenAI deployment. The report, which includes data from an NTT DATA survey - [TAFE Queensland Partners With OneAdvanced to Improve Digital Literacy](https://australiancybersecuritymagazine.com.au/tafe-queensland-partners-with-oneadvanced-to-improve-digital-literacy/) - With the revised standards for registered training organisations (RTOs) set to take effect from 1 July 2025, sector-focused SaaS software company OneAdvanced has expanded its offering via its Australia distributor, TAFE Queensland, to help RTOs across Australia meet the new digital literacy assessment regulations. The Basic Key Skills Builder (BKSB) platform is a tool that - [Citrix Identifies Netscaler ADC and Netscaler Gateway Vulnerabilities](https://australiancybersecuritymagazine.com.au/citrix-identifies-netscaler-adc-and-netscaler-gateway-vulnerabilities/) - Citrix has identified critical vulnerabilities in Citrix Netscaler ADC and NetScaler Gateway Products (CVE-2025-5349 and CVE-2025-5777). The Australian Signals Directorate's ACSC recommends organisations update affected products to the latest versions and follow the advice detailed in the Citrix Security Advisory. You can read the advisory here. This alert has been written primarily for; but is - [NCCoE Invites Comments on Internal Chatbot Report](https://australiancybersecuritymagazine.com.au/nccoe-invites-comments-on-internal-chatbot-report/) - The NIST National Cybersecurity Center of Excellence (NCCoE) has published NIST Internal Report (IR) 8579, Developing the NCCoE Chatbot: Technical and Security Learnings from the Initial Implementation. The public comment period for the publication will close at 1:59 pm (AEST) on August 45, 2025. The NCCoE identified a potential application for a chatbot to support - [Qualys Uncovers Local Privilege Escalation Flaws](https://australiancybersecuritymagazine.com.au/qualys-uncovers-local-privilege-escalation-flaws/) - The Qualys Threat Research Unit has discovered two linked local privilege escalation flaws. The first (CVE-2025-6018) resides in the PAM configuration of openSUSE Leap 15 and SUSE Linux Enterprise 15. Using this vulnerability, an unprivileged local attacker, for example, via SSH, can elevate to the "allow_active" user and invoke polkit actions normally reserved for a - [Secure Code Warrior Releases AI Security Rules on GitHub](https://australiancybersecuritymagazine.com.au/secure-code-warrior-releases-ai-security-rules-on-github/) - Secure Code Warrior has released AI Security Rules on GitHub, a first-of-its-kind, free resource to help developers generate more secure code when working with AI coding tools like GitHub Copilot, Cline, Roo, Cursor, Aider and Windsurf. These security-focused AI coding rulesets provide developers with structured, security-minded guidance that is purpose-built for real-world agent-assisted development. Secure - [BeyondTrust Appoints New Regional Sales Director](https://australiancybersecuritymagazine.com.au/beyondtrust-appoints-new-regional-sales-director/) - Roshi Balendran has joined BeyondTrust as regional sales director for Australia and New Zealand. Based in Canberra, Balendran will be responsible for accelerating business growth across the Australian and New Zealand markets while supporting organisations to proactively protect their identities and safeguard critical assets in today's evolving threat landscape. Balendran brings over 18 years of - [Australian Signals Directorate Warns of Cyber Impersonators](https://australiancybersecuritymagazine.com.au/australian-signals-directorate-warns-of-cyber-impersonators/) - The Australian Signals Directorate (ASD) says it is aware of cybercriminals claiming to be them through emails and phone calls, as well as falsely claiming our endorsement of products or services. The content of the scam emails and phone calls vary, but typically ask you to give personal information (such as passwords or bank details), - [Matt Salier Steps Down as Australian Cyber Collaboration Centre CEO](https://australiancybersecuritymagazine.com.au/matt-salier-steps-down-as-australian-cyber-collaboration-centre-ceo/) - Matt Salier has resigned as chief executive officer of the Australian Cyber Collaboration Centre, effective immediately. Salier calls it a difficult decision. "It's been a journey full of highs and lows, and looking after a membership organisation in such a critical industry has been an honour," he said on LinkedIn. "It has, however, been taxing - [Acronis Appoints New Australia & New Zealand GM](https://australiancybersecuritymagazine.com.au/acronis-appoints-new-australia-new-zealand-gm/) - Acronis has named Terry Christie as General Manager for Australia and New Zealand, signalling the company's ongoing investment in the region and its focus on growth. With more than 25 years of experience in IT and cybersecurity, Christie will lead the regional team in accelerating business growth, deepening relationships with partners and customers, and expanding - [Cisco Tackles Agentic AI Era With Security Upgrades](https://australiancybersecuritymagazine.com.au/cisco-tackles-agentic-ai-era-with-security-upgrades/) - Tech company Cisco has released improvements to help enterprises improve security for the AI era, fusing security capabilities deeper into its networking infrastructure, helping companies implement zero trust architectures, innovating on security for AI apps and models, and delivering breakthrough AI tools that improve threat detection and remediation. Key advancements announced at Cisco Live include - [A New Social Contract for the Age of AI: Who Owns Our Data?](https://australiancybersecuritymagazine.com.au/a-new-social-contract-for-the-age-of-ai-who-owns-our-data/) - In the age of rapidly advancing artificial intelligence, where powerful algorithms can predict human behaviour and model global patterns, we face a paradox: we believe our personal data belongs to us, yet we have little real control over how it is collected and used. According to Dr Paulius Jurčys of Vilnius University's Faculty of Law, - [End of the Road for the Australian Cyber Network](https://australiancybersecuritymagazine.com.au/end-of-the-road-for-the-australian-cyber-network/) - The board of directors have announced the winding up of the Australian Cyber Network. The ACN was established to serve as a national industry body focused on advocacy, capability and education for Australia's cyber security industry. "After months of careful consideration and every effort to secure adequate funding for the 2025-26 program of works, the - [SentinelOne Announces 2025 APJ PartnerOne Award Winners](https://australiancybersecuritymagazine.com.au/sentinelone-announces-2025-apj-partnerone-award-winners/) - SentinelOne has announced the Australian winners of its 2025 APJ PartnerOne Awards, recognising their outstanding contributions to innovation in security solutions among the company's partners in the Asia Pacific and Japan region. The awards were presented during the company's annual PartnerOne Summit, where more than 150 strategic partners from the region gathered to celebrate the - [Zenith Live 2025 - Las Vegas](https://australiancybersecuritymagazine.com.au/zenith-live-2025-las-vegas/) - Innovations of Secure AI We speak with Phil Tee, Zscaler, EVP, Head of AI Innovations at Zenith World 2025 in Las Vegas. Phil and his team are developing new AI advancements to better secure the use of AI, enabling organizations to integrate and leverage its potential. Phil is responsible for driving AI innovations at Zscaler, - [Zscaler Launches New Zero Trust Solutions](https://australiancybersecuritymagazine.com.au/zscaler-launches-new-zero-trust-solutions/) - Image Credit: MySecurity Media. Zscaler has announced a new suite of solutions that enable customers to quickly adopt zero trust everywhere. These innovations extend the reach of true zero trust and enable businesses to modernise and scale securely by providing end-to-end segmentation between and inside branches and improve security across multi-cloud environments. Organisations are increasingly - [Google Threat Intelligence Releases New Details on UNC6040](https://australiancybersecuritymagazine.com.au/google-threat-intelligence-releases-new-details-on-unc6040/) - Google Threat Intelligence Group has published new research on UNC6040, a financially motivated threat group specialising in voice phishing (vishing) campaigns. This group has been observed compromising Salesforce instances in Europe and the Americas by tricking employees at various corporations into installing modified Salesforce connected apps in order to steal data. In all observed cases, - [Microsoft Begins Authenticator Password Phase-Out This Weekend](https://australiancybersecuritymagazine.com.au/microsoft-begins-authenticator-password-phase-out-this-weekend/) - This weekend, Microsoft will start turning off password management functionality in its Authenticator app. If you use the app, from June 1, 2025, you will no longer be able to save new passwords. In July, autofill will stop working and a month later, saved passwords will no longer be accessible. Microsoft is phasing out the - [ATSE Welcomes Coalition Shadow Ministry Appointments](https://australiancybersecuritymagazine.com.au/atse-welcomes-coalition-shadow-ministry-appointments/) - The Australian Academy of Technological Sciences and Engineering (ATSE) welcomed Melissa Price's appointment as shadow minister for cybersecurity and the coalition shadow ministry's strong focus on innovation, industry, and energy. ATSE says it looks forward to working with Price again to advance Australia's science and technology agenda and acknowledges the critical role the shadow portfolio - [CrowdStrike Partners With AARNet to Safeguard Education Sector](https://australiancybersecuritymagazine.com.au/crowdstrike-partners-with-aarnet-to-safeguard-education-sector/) - CrowdStrike and Australia's Academic and Research Network (AARNet) today announced an expanded partnership to deliver CrowdStrike Falcon Complete Next-Gen MDR to Australia's research and education sector through a new managed service. This service will provide institutions with industry-leading, 24/7 managed detection and response to defend against advanced cyber threats powered by CrowdStrike's Falcon Complete for - [FBI Disrupts Large Scale Chinese State Backed Botnet Activity](https://australiancybersecuritymagazine.com.au/fbi-disrupts-large-scale-chinese-state-backed-botnet-activity/) - The Justice Department has released details of a court-authorised law enforcement operation that disrupted a botnet inside more than 200,000 consumer devices in the United States and elsewhere, including Australia. This follows the FBI, Cyber National Mission Force (CNMF), and National Security Agency (NSA) assessing that China-linked cyber actors have compromised internet-connected devices, including small - [Configuration compromise leads to 90 bounties - Hack the Hacker Series](https://australiancybersecuritymagazine.com.au/configuration-compromise-leads-to-90-bounties-hack-the-hacker-series/) - We speak with Ethical Hacker Juan Francisco 'Fran' Bolivar and Sajeeb Lohani, Global TISO for Bugcrowd. Fran successfully claimed 90 bounties as a result of a ServiceNow configuration compromise, with bounties ranging between $100K and $3K. Fran provides insight into his methodologies, learning outcomes and the challenges of being an ethical hacker. For more information - [ACMA Partners With Ireland's ComReg to Combat Phone Scams](https://australiancybersecuritymagazine.com.au/acma-partners-with-irelands-comreg-to-combat-phone-scams/) - Australia and Ireland are furthering their strategic alliance to crack down on phone scams and unsolicited communications following the signing of a new memorandum of understanding (MOU) between the ACMA and Ireland's Commission for Communications Regulation (ComReg). The MoU will facilitate greater intelligence-sharing between the agencies and assist to combat scam and spam communications where - [BT Helps Get More Women Into Cyber](https://australiancybersecuritymagazine.com.au/bt-helps-get-more-women-into-cyber/) - When Radhika started her Bachelor of Data Engineering degree at UTS, she didn't yet see herself working in cyber security. Like many students in STEM, she was curious, driven, and uncertain of where she fitted within the vast landscape of technical careers. Today, Radhika is a lead cyber security analyst at BT, on the frontline - [GitHub Releases Copilot Coding Agent](https://australiancybersecuritymagazine.com.au/github-releases-copilot-coding-agent/) - GitHub Copilot now includes an asynchronous coding agent embedded directly in GitHub and accessible from VS Code—creating a powerful Agentic DevOps loop across the world's most widely adopted coding environments. Anchored on its core principle of developer choice and access, GitHub is also open-sourcing Copilot Chat in VS Code, improving its platform with new functionality - [SonicWall Confirms Encoded URL Server-Side Request Forgery Vulnerability](https://australiancybersecuritymagazine.com.au/sonicwall-confirms-encoded-url-server-side-request-forgery-vulnerability/) - SonicWall PSIRT has confirmed an Encoded URL Server-Side Request Forgery vulnerability affecting SMA 1000 appliances, including SMA 6210, SMA 7200, SMA 7210, SMA 8200v & Central Management Server (CMS). SonicWall is not aware of active exploitation in the wild. There have not been any reports of malicious use of this vulnerability reported to SonicWall. This - [Workato Completes Infosec Registered Assessors Program Assessment](https://australiancybersecuritymagazine.com.au/workato-completes-infosec-registered-assessors-program-assessment/) - Workato, the enterprise orchestration platform, has successfully completed an independent Infosec Registered Assessors Program (IRAP) assessment. This assessment evaluated Workato's security posture against the Australian Government Information Security Manual controls at the PROTECTED level. Completing the IRAP assessment adds to Workato's broader global security achievements over the past three months, including the PCI DSS 4.01 - [KnowBe4 Research Reveals Most Phish-Prone Countries](https://australiancybersecuritymagazine.com.au/knowbe4-research-reveals-most-phish-prone-countries/) - KnowBe4 has launched its Phishing by Industry Benchmarking Report 2025, which measures an organisation's Phish-pron percentage, the percentage of employees likely to fall for social engineering or phishing attacks, indicating the organisation's overall susceptibility to phishing threats. This year's report found a baseline Phish-pron percentage of 36.8% in Australia and New Zealand, which is higher - [ASD Issues Alert on Ivanti Endpoint Manager Mobile Vulnerabilities](https://australiancybersecuritymagazine.com.au/asd-issues-alert-on-ivanti-endpoint-manager-mobile-vulnerabilities/) - The Australian Signals Directorate's (ASD) Australian Cyber Security Centre (ACSC) is aware of two vulnerabilities, one medium and one high severity, in Ivanti Endpoint Manager Mobile. This alert is relevant to large Australian businesses, organisations, and government. ASD's ACSC is tracking two vulnerabilities in Ivanti EPMM: CVE-2025-4427: Medium severity Authentication Bypass CVE-2025-4428: High severity Remote - [Cisco Releases 2025 Cybersecurity Readiness Index](https://australiancybersecuritymagazine.com.au/cisco-releases-2025-cybersecurity-readiness-index/) - Only 3% of organisations in Australia have achieved a mature level of readiness required to effectively withstand today's cybersecurity threats, according to Cisco's 2025 Cybersecurity Readiness Index. Cybersecurity preparedness remains low as hyperconnectivity and AI introduce new complexities for security practitioners. AI is revolutionising security and escalating threat levels, with eight in ten organisations (82%) - [OpenText Report Finds Many Government Agencies Still Rely on Legacy Tech](https://australiancybersecuritymagazine.com.au/opentext-report-finds-many-government-agencies-still-rely-on-legacy-tech/) - OpenText has released its intermedium report, Retiring Legacy Applications and Databases: Proven Strategies for Government Agencies. The report provides clear guidance and practical strategies to help government agencies transition from legacy systems to modern digital platforms. The report's findings show that government agencies spent 80% of their budget on running systems, including legacy applications and - [Australian Computer Society Welcomes Albanese Cabinet Announcements](https://australiancybersecuritymagazine.com.au/australian-computer-society-welcomes-albanese-cabinet-announcements/) - The Australian Computer Society (ACS), the professional association for Australia's technology sector, welcomes the announcement of Prime Minister Albanese's new cabinet, highlighting the opportunities for the technology sector to work with the refreshed ministerial team. ACS Chief Executive Officer Josh Griggs said the society looked forward to continuing its productive relationship with the Albanese government - [Security Fears are Holding Back AI in Australia](https://australiancybersecuritymagazine.com.au/security-fears-are-holding-back-ai-in-australia/) - By Katherine Boiciuc, EY Regional Chief Technology and Innovation Officer, Oceania In boardrooms across Australia, executives are asking "is it secure?" whenever artificial intelligence (AI) implementation comes up. While the rest of the world races ahead with artificial intelligence, Australians are tapping the brakes – and hard. Our recently released EY Global AI Sentiment Index - [CPA Australia and ACS Ink IT Skills MOU](https://australiancybersecuritymagazine.com.au/cpa-australia-and-acs-ink-it-skills-mou/) - CPA Australia and Australian Computer Society (ACS) have signed a memorandum of understanding having decided to collaborate to improve the career prospects of both IT and accounting and finance professionals. The two leading professional associations intend to co-design, develop and deliver training programs and thought leadership to improve career development opportunities in the growing areas - [Report Finds Businesses Investing in Data Integrity Systems Reap Rewards](https://australiancybersecuritymagazine.com.au/report-finds-businesses-investing-in-data-integrity-systems-reap-rewards/) - New research from Iron Mountain, in partnership with FT Longitude, finds that nine out of 10 organisations globally have seen revenues and profitability grow over the last 12 months because they invested in their information management systems and strategies. The survey of senior leaders at 500 large organisations worldwide highlights AI-readiness as critical to organisational - [CyberArk Releases 2025 Identity Security Landscape Report](https://australiancybersecuritymagazine.com.au/cyberark-releases-2025-identity-security-landscape-report/) - CyberArk has released its 2025 Identity Security Landscape, a global study revealing how organisations are inadvertently creating a new identity-centric attack surface through the growing use of AI and cloud. In Australia, the findings reveal a notable disconnect between rising cyber risk and business priorities, with three in four organisations (75%) admitting to prioritising business - [NIST Invites Comments on High-Performance Computing Security Overlay](https://australiancybersecuritymagazine.com.au/nist-invites-comments-on-high-performance-computing-security-overlay/) - The initial public draft of NIST Special Publication (SP) 800-234, High-Performance Computing Security Overlay, is now available for public comment. High-performance computing systems provide fundamental computing infrastructure for large-scale artificial intelligence and machine learning model training, big data analysis, and complex simulations at exceptional speeds. Securing high-performance computing systems is essential for safeguarding AI models, - [Australia Invests in World First Anti Scam Frameworks](https://australiancybersecuritymagazine.com.au/australia-invests-in-world-first-anti-scam-frameworks/) - Australian enterprises are accelerating investment in trust, safety, and security - outpacing global markets in fraud detection, KYC and ID verification - as world-first scam prevention frameworks are rolled out, according to a new report from Telus Digital. The report, Safety In Numbers, investigates challenges leaders face maintaining safe and secure digital environments, limiting factors - [Bitdefender Research Highlights Mystery Box Subscription Scams](https://australiancybersecuritymagazine.com.au/bitdefender-research-highlights-mystery-box-subscription-scams/) - Bitdefender researchers have uncovered a surge in subscription scams, both in scale and sophistication, spurred by a massive campaign involving hundreds of fraudulent websites. What sets this campaign apart is the significant investment cybercriminals have undertaken to make these fake sites look convincingly legitimate. Gone are the days when a suspicious email, SMS, or basic - [Commvault Expands CrowdStrike Partnership](https://australiancybersecuritymagazine.com.au/commvault-expands-crowdstrike-partnership/) - Commvault has announced an expanded partnership with CrowdStrike. Through this expanded partnership, the two companies will deliver coordinated cyber recovery and incident response services to help joint customers improve readiness, respond faster, and achieve cleaner recoveries. With ransomware attacks happening every 14 seconds and average recovery times spanning 24 days, Commvault says IT and security - [Organisations Unprepared for Quantum Computing Cyber Risks](https://australiancybersecuritymagazine.com.au/organisations-unprepared-for-quantum-computing-cyber-risks/) - New research from ISACA reveals despite mounting concern among 62% of technology and cybersecurity professionals that quantum computing could shatter current internet encryption, most organisations remain critically unprepared. A further 63% of tech professionals expect quantum computing to increase or shift cybersecurity risks. However, only 5% say it is a high priority for their organisation, - [SonicWall Releases New Firmware for SonicOS GEN7 and TZ80 Vulnerability](https://australiancybersecuritymagazine.com.au/sonicwall-releases-new-firmware-for-sonicos-gen7-and-tz80-vulnerability/) - SonicWall has released new firmware for SonicOS GEN7 and TZ80 on April 24, 2025. This firmware includes mitigation for a high severity vulnerability and should be applied immediately. SonicOS versions 7.1.1-7040 and above are impacted. The firmware addresses a null pointer dereference vulnerability in the SonicOS SSLVPN Virtual office interface allows a remote, unauthenticated attacker - [Akamai Releases Latest State of Internet Report](https://australiancybersecuritymagazine.com.au/akamai-releases-latest-state-of-internet-report/) - Cloud computing company Akamai Technologies has released its latest state of the internet report, State of Apps and API Security 2025: How AI Is Shifting the Digital Terrain. Now in its 11th year, Akamai's report series offers expert insights into cybersecurity and web performance based on data gathered from our network infrastructure that processes over - [Cloudflare Issues First Quarter 2025 Internet Disruptions Report](https://australiancybersecuritymagazine.com.au/cloudflare-issues-first-quarter-2025-internet-disruptions-report/) - Connectivity cloud company Cloudflare has released its Q1 Internet Disruptions report, detailing the impacts and causes of internet outages around the world – including a 7.7 magnitude earthquake in March with recovery efforts still ongoing, an island-wide outage caused by a monkey, cyberattacks on Russian networks, and the surprising absence of government-directed shutdowns. Overseeing roughly - [Zscaler Identifies New Mustang Panda Cyber Activity](https://australiancybersecuritymagazine.com.au/zscaler-identifies-new-mustang-panda-cyber-activity/) - Following a recent US-led court-authorised operation that removed malware from over 4,200 infected networks, new activity has emerged from the same Chinese state-sponsored threat group called Mustang Panda (also known as Twill Typhoon). The Zscaler ThreatLabz team has discovered new activity associated with Mustang Panda, originating from two machines from a targeted organisation in Myanmar. - [NIST National Cybersecurity Center Calls for Comment on Latest White Paper](https://australiancybersecuritymagazine.com.au/nist-national-cybersecurity-center-calls-for-comment-on-latest-white-paper/) - The NIST National Cybersecurity Center of Excellence has released NIST Cybersecurity White Paper 42, Towards Automating IoT Security: Implementing Trusted Network-Layer Onboarding, for public comment. The comment period is open until 1:59 PM (AEST) on May 30, 2025. The NIST National Cybersecurity Center of Excellence, in collaboration with 11 technology vendors, has developed several technical - [Hertz Customer Data Stolen in Third-Party Vendor Cyber Attack](https://australiancybersecuritymagazine.com.au/hertz-customer-data-stolen-in-third-party-vendor-cyber-attack/) - Australian customers of car rental company Hertz, which also operates the Thrifty and Dollar brands, may have had their personal information stolen during a cyber attack on a third-party vendor that handles file transfers for Hertz. Hackers breached systems at Cleo Communications late last year. "On February 10, 2025, we confirmed that Hertz data was - [Episode 451 - Connecting & Protecting in the Age of AI](https://australiancybersecuritymagazine.com.au/episode-451-connecting-protecting-in-the-age-of-ai/) - In today’s security world, there are numerous security solutions that can limit access to company data and IT resources and lock down access. Your browser does not support the audio element. Download Now - [Episode 450 - Connecting and protecting in the age of AI](https://australiancybersecuritymagazine.com.au/episode-450-connecting-and-protecting-in-the-age-of-ai/) - We speak with Carl Solder, Chief Technology Officer - Cisco Australia/New Zealand and get his insights into the challenge that Cisco saw looming on the horizon years ago and has culminated in a brand-new solution called Cisco AI Defence. Your browser does not support the audio element. Download Now - [Episode 449 - CISO applying and securing an enterprise-ready trust management platform](https://australiancybersecuritymagazine.com.au/episode-449-ciso-applying-and-securing-an-enterprise-ready-trust-management-platform/) - We speak with Jadee Hanson, Chief Information Security Officer (CISO) for Vanta. Security is at the heart of what Vanta does —helping customers improve their security and compliance posture - and this starts with their own. Your browser does not support the audio element. Download Now - [Adobe Acrobat Sign Secures PROTECTED Level After IRAP Assessment](https://australiancybersecuritymagazine.com.au/adobe-acrobat-sign-secures-protected-level-after-irap-assessment/) - The demand for secure digital experiences continues to soar, with recent Adobe research showing a correlation between reliable, accessible, efficient and secure public services and higher citizen usage volumes. In recognition of the demand for more secure, efficient, and compliant digital document solutions, Adobe Acrobat Sign completed the Infosec Registered Assessors Program (IRAP) assessment at - [WatchGuard Technologies Report Reveals Rising Network Malware Threat](https://australiancybersecuritymagazine.com.au/watchguard-technologies-report-reveals-rising-network-malware-threat/) - US-headquartered cybersecurity company WatchGuard Technologies has released the findings of its latest Internet Security Report. The analysis details the top malware, network, and endpoint security threats observed by the WatchGuard Threat Lab researchers during the fourth quarter of 2024. The report reveals a 94% increase in network malware as cybercriminals exploit advanced, encrypted connections. Other - [Zscaler Releases ThreatLabz 2025 VPN Risk Report](https://australiancybersecuritymagazine.com.au/zscaler-releases-threatlabz-2025-vpn-risk-report/) - Cloud security company Zscaler has released its ThreatLabz 2025 VPN Risk Report, commissioned by Cybersecurity Insiders. The report highlights the widespread security, user experience and operational challenges posed by VPN services. The findings are based on insights from a survey of 600-plus IT and security professionals. The results are stark. Maintaining security and compliance is - [Fortinet Uncovers Exploitation of Existing Vulnerabilities](https://australiancybersecuritymagazine.com.au/fortinet-uncovers-exploitation-of-existing-vulnerabilities/) - An investigation by Fortinet has uncovered a post-exploitation technique used by a threat actor. During this investigation, a threat actor was observed using known vulnerabilities (e.g. FG-IR-22-398, FG-IR-23-097, FG-IR-24-015) to gain access to Fortinet devices. The targeting of known, unpatched vulnerabilities by a threat actor is not new and has been previously examined. This specific - [CyberArk Debuts Machine Identity Security Solution](https://australiancybersecuritymagazine.com.au/cyberark-debuts-machine-identity-security-solution/) - Identity security company CyberArk has released a first-of-its-kind machine identity security solution, the Secure Workload Access Solution. The company says its service will deliver comprehensive protection for all non-human identities. It will enable security teams to gain visibility and control over the entire machine identity lifecycle, from creation and governance to automated rotation and renewal. - [Semperis Study Reveals 62% of Water and Electricity operators targeted by cyberattacks in the past year](https://australiancybersecuritymagazine.com.au/semperis-study-reveals-62-of-water-and-electricity-operators-targeted-by-cyberattacks-in-the-past-year/) - Semperis has published the results of a new study looking at cyberattacks against water and electricity operators across the U.S. and UK, which has important implications for the Australian industry. The report, titled The State of Critical Infrastructure Resilience, Evaluating Cyber Threats to Water and Electric Utilities revealed: 62% of operators have been targeted by cyberattacks - [China's Surveillance Push via Android Apps](https://australiancybersecuritymagazine.com.au/chinas-surveillance-push-via-android-apps/) - A coalition of international government cyber security agencies have released a technical analysis and mitigations against spyware variants known as BADBAZAAR and MOONSHINE. Full advisory here - BADBAZAAR and MOONSHINE: Technical analysis and mitigations With support from the UK Cyber League, the advisory was jointly produced by the National Cyber Security Centre (NCSC UK) and partners: The - [SonicWall issues warning after exploitation POCs released](https://australiancybersecuritymagazine.com.au/sonicwall-issues-warning-after-exploitation-pocs-released/) - On January 7, 2025, SonicWall notified customers and partners about multiple vulnerabilities in SonicWall firewalls that needed to be patched in order mitigate. Since that time, a number of security research teams have published exploitation proof of concepts (POC) for CVE -2024-53704 that may enable threat actors to more quickly and effectively exploit the vulnerability. Because the - [Australian superannuation funds hacked and defrauded](https://australiancybersecuritymagazine.com.au/australian-superannuation-funds-hacked-and-defrauded/) - Australia's National Cyber Crime Coordinator Michelle McGuinness has confirmed cyber criminals are targeting individual account holders of a number of superannuation funds. In a statement, McGuinness confirmed, "I am working with agencies across the Australian Government including with the financial system regulators, and with industry stakeholders to provide cyber security advice and coordinate the whole-of-government response to - [Critical Alert issued on Ivanti vulnerability](https://australiancybersecuritymagazine.com.au/critical-alert-issued-on-ivanti-vulnerability/) - Ivanti have released information regarding active exploitation of a critical vulnerability in Ivanti Connect Secure, Policy Secure and Neurons for ZTA gateways (CVE-2025-22457). ASD's ACSC recommends customers follow the advice contained in Ivanti's Security Advisory and assess their environments for malicious activity. This Alert is relevant to Australian Organisations who utilise Ivanti products. This alert is intended - [NIST Revises Incident Response for Cybersecurity Risk Management](https://australiancybersecuritymagazine.com.au/nist-revises-incident-response-for-cybersecurity-risk-management/) - Incident response is a critical part of cybersecurity risk management and should be integrated across organizational operations. The six Functions of the NIST Cybersecurity Framework (CSF) 2.0 all play vital roles in incident response. NIST has finalized Special Publication (SP) 800-61r3 (Revision 3), Incident Response Recommendations and Considerations for Cybersecurity Risk Management: A CSF 2.0 Community Profile, which - [AI-driven Attacks to Become Faster, More Sophisticated, and Harder to Detect by 2026](https://australiancybersecuritymagazine.com.au/ai-driven-attacks-to-become-faster-more-sophisticated-and-harder-to-detect-by-2026/) - Delinea has released its inaugural Cybersecurity and the AI Threat Landscape report. The report, based on Delinea Labs research and an analysis of several third-party studies and real-world cyber incidents, reveals critical insights into the rapidly evolving threat landscape. With AI reshaping both attack and defence strategies, the findings underscore the urgent need for organisations to adapt - [NIST CSF 2.0 Profile for Semiconductor Manufacturing - Comment Period Extended & Workshop Recording Available](https://australiancybersecuritymagazine.com.au/nist-csf-2-0-profile-for-semiconductor-manufacturing-comment-period-extended-workshop-recording-available/) - The National Cybersecurity Center of Excellence (NCCoE), along with the SEMI Semiconductor Manufacturing Cybersecurity Consortium, has released for public comment the draft of NIST Internal Report (NIST IR) 8546, Cybersecurity Framework (CSF) 2.0 Semiconductor Manufacturing Community Profile. The public comment period for this draft has been extended until 11:59 p.m. EDT on May 30, 2025. All comments - [Tanium and DXC Technology Partner on AEM](https://australiancybersecuritymagazine.com.au/tanium-and-dxc-technology-partner-on-aem/) - Tanium will partner with DXC Technology to implement Tanium's Autonomous Endpoint Management (AEM) platform. "At Tanium, our mission is to redefine the collaboration between IT and security teams by introducing the industry's first autonomous endpoint management platform to customers," says Stewart McDonald, Director of Channel and Alliances at Tanium. "By leveraging AI capabilities, powered by - [Multiple Bypasses in Ubuntu discovered](https://australiancybersecuritymagazine.com.au/multiple-bypasses-in-ubuntu-discovered/) - The Qualys Threat Research Unit (TRU) has reported three security bypasses in Ubuntu's unprivileged user namespace restrictions. Qualys confirmed it responsibly disclosed these vulnerabilities to the Ubuntu Security Team in January, 2025. Qualys TRU uncovered three distinct bypasses of these namespace restrictions, each enabling local attackers to create user namespaces with full administrative capabilities. These - [New Country Manager for Tenable Australia and New Zealand](https://australiancybersecuritymagazine.com.au/new-country-manager-for-tenable-australia-and-new-zealand/) - Tenable has appointed Scott Magill as Country Manager for Australia and New Zealand. In this role, Magill will lead Tenable's operations and strategy in the region, driving business growth and strengthening channel partnerships. Magill's appointment comes as Tenable accelerates the expansion of its cloud capabilities and exposure management platform. The platform helps organisations identify and - [Detectives Investigate NSW Gov't Agency Data Breach](https://australiancybersecuritymagazine.com.au/detectives-investigate-nsw-govt-agency-data-breach/) - Cybercrime detectives are investigating a major data breach involving the New South Wales Department of Communities and Justice (DCJ). On March 25, 2025, officers attached to the State Crime Command's Cybercrime Squad were alerted of the breach to the NSW Online Registry website, a secure online platform that provides access to information involved in both - [New ACMA Initiatives to Stop Phone Scams](https://australiancybersecuritymagazine.com.au/new-acma-initiatives-to-stop-phone-scams/) - The ACMA is taking the next step to rebuild confidence in the use of telephone numbers and brands by commencing consultation on new regulatory arrangements for using SMS sender IDs. This follows an announcement earlier this week that the ACMA had made a new Telecommunications Numbering Plan. In establishing protections for the use of SMS - [Sydney Tools Cyber Breach Exposes Customer and Employee Data](https://australiancybersecuritymagazine.com.au/sydney-tools-cyber-breach-exposes-customer-and-employee-data/) - Cybernews' research team recently discovered that Sydney Tools, one of the largest professional tools resellers in Australia, has exposed 34 million online order entries, revealing purchase data including customer names, home addresses, and other details. The exposed Clickhouse database also contained over 5,000 entries with data on the company's past and present employees. Worryingly, despite - [Next.js Authentication Bypass Vulnerability](https://australiancybersecuritymagazine.com.au/next-js-authentication-bypass-vulnerability/) - The Australian Cyber Security Centre is advising users of certain Next.js versions to upgrade to the latest version after the company issued an advisory detailing a vulnerability that could allow a remote attacker to bypass security checks, including many forms of authentication. Next.js uses an internal header x-middleware-subrequest to prevent recursive requests from triggering infinite - [Connecting & Protecting in the Age of AI](https://australiancybersecuritymagazine.com.au/connecting-protecting-in-the-age-of-ai/) - In today’s security world, there are numerous security solutions that can limit access to company data and IT resources and lock down access. However, when it comes to using AI apps and their back-end models, the answer is not so simple. In this session we take a deep-dive into the challenge that Cisco saw looming - [Pure Storage Appoints Altay Ayyuce as ANZ Area VP](https://australiancybersecuritymagazine.com.au/pure-storage-appoints-altay-ayyuce-as-anz-area-vp/) - IT company Pure Storage has appointed Altay Ayyuce as area vice president of Australia and New Zealand. He replaces Amy Rushall who will return to the US as area vice president, strategy and development, Americas region for Pure Storage after over two years in Australia and New Zealand. Reporting to Nathan Hall, vice president and - [KnowBe4 Report Highlights Latest Phishing Threats](https://australiancybersecuritymagazine.com.au/knowbe4-report-highlights-latest-phishing-threats/) - Cybersecurity company KnowBe4 had released its Phishing Threat Trend Report, detailing key trends, new data, and threat intelligence insights surrounding phishing threats targeting organisations at the start of 2025. Based on data generated by KnowBe4 Defend, this edition highlights the growing threat of ransomware and explores how cybercriminals are using sophisticated tactics to bypass native - [AI Demand Drives Server and Storage Component Revenue Growth](https://australiancybersecuritymagazine.com.au/ai-demand-drives-server-and-storage-component-revenue-growth/) - Server and storage component revenues grew to a record USD244 billion in 2024, fuelled by strong AI demand, according to a recently published report by Dell'Oro Group. The growth was primarily driven by GPUs, custom accelerators, HBM, and storage solutions tailored for AI workloads. Additionally, memory and storage demand for the general-purpose server market saw - [Cloudflare Completes IRAP Assessment at PROTECTED Level](https://australiancybersecuritymagazine.com.au/cloudflare-completes-irap-assessment-at-protected-level/) - Cloud company Cloudflare has successfully completed its InfoSec Registered Assessors Program (IRAP) assessment at the PROTECTED level. This results in the company complying with Australian Government security standards, enabling Cloudflare to provide connectivity, cybersecurity, and developer services to government agencies in Australia. "Completing the IRAP assessment is a crucial step in our focus on protecting - [Dynamic Standards International Partners on Cybersecurity Training](https://australiancybersecuritymagazine.com.au/dynamic-standards-international-partners-on-cybersecurity-training/) - Dynamic Standards International has made a significant step towards improving global cybersecurity training based on the SMB1001 dynamic standard for small and medium businesses through an alliance with Pax8 Academy and the Global Technology Industry Association (GTIA), the global vendor-neutral, non-profit membership association for the IT and managed service providers ecosystem. By joining DSI's Global - [Bitdefender Releases March 2025 Threat Debrief](https://australiancybersecuritymagazine.com.au/bitdefender-releases-march-2025-threat-debrief/) - Ransomware is a moving target, constantly changing its tactics, but the recently released monthly Bitdefender Threat Debrief can help you stay ahead of the curve. To do this, Bitdefender combined information from openly available sources, things like news reports and research, with data they gather by analysing data leak portals, websites where ransomware groups post - [Organisations More Vulnerable to Attacks With Rapid Growth of Machine Identities](https://australiancybersecuritymagazine.com.au/organisations-more-vulnerable-to-attacks-with-rapid-growth-of-machine-identities/) - Identity security company CyberArk has released its 2025 State of Machine Identity Report. It reveals that machine identity-related security incidents are on the rise as the volume and complexity of machine identities continue to multiply. The report found that while the majority of Australian organisations have some form of machine identity security program, many are - [DEWC Service Research Tackles Hybrid Moving Target Defence](https://australiancybersecuritymagazine.com.au/dewc-service-research-tackles-hybrid-moving-target-defence/) - DEWC Services, in collaboration with the University of Adelaide and Defence Trailblazer, is leading an advanced research initiative into hybrid moving target defence (MTD) for container-based cloud environments. This project leverages reinforcement learning to develop an AI-driven cyber defence framework that adapts dynamically to evolving threats. As cyber threats grow in sophistication, traditional static defence - [Connecting and protecting in the age of AI](https://australiancybersecuritymagazine.com.au/connecting-and-protecting-in-the-age-of-ai/) - In today’s security world, there are numerous security solutions that can limit access to company data and IT resources and lock down access. However, when it comes to using AI apps and their back-end models, the answer is not so simple. We speak with Carl Solder, Chief Technology Officer - Cisco Australia/New Zealand and get - [Telstra's Scam Protect Helps Thwart Unwanted Callers](https://australiancybersecuritymagazine.com.au/telstras-scam-protect-helps-thwart-unwanted-callers/) - Telstra has launched Scam Protect, a new feature that warns you when an incoming call might be suspicious, prompting you to reconsider answering. Telstra Scam Protect has been developed to give customers more control by helping them make more informed decisions on which calls to answer and which are better off ringing through to voicemail. - [Calls to Improve Deepfake Detection Technologies](https://australiancybersecuritymagazine.com.au/calls-to-improve-deepfake-detection-technologies/) - An international team of researchers is calling for urgent improvements in deepfake detection technologies after uncovering critical flaws in widely used detection tools. A study by CSIRO, Australia's national science agency, and South Korea's Sungkyunkwan University (SKKU), assessed 16 leading detectors and found none could reliably identify real-world deepfakes. Deepfakes are artificial intelligence-generated synthetic media - [Spotlight on Microsoft's March Patch Tuesday](https://australiancybersecuritymagazine.com.au/spotlight-on-microsofts-march-patch-tuesday/) - By Adam Barnett, Lead Software Engineer at Rapid 7. Microsoft is addressing 57 vulnerabilities this March 2025 Patch Tuesday, which is a similar volume to last month. However, Microsoft has evidence of in-the-wild exploitation for as many as six of the vulnerabilities published today, and CISA KEV already lists all of them. Microsoft is also aware of public - [Musk Claims Ukrainian IP Addresses Linked to Cyber Attack on X](https://australiancybersecuritymagazine.com.au/musk-claims-ukrainian-ip-addresses-linked-to-cyber-attack-on-x/) - X, formerly known as Twitter, experienced significant outages on March 10, 2025, due to a cyberattack. Elon Musk claimed that the IP addresses involved in the attack were linked to Ukraine, though he provided no hard evidence to support this claim. More than 40,000 reports of an outage at X were received on Monday morning - [CISA Releases Updated NICE Framework](https://australiancybersecuritymagazine.com.au/cisa-releases-updated-nice-framework/) - The US Cybersecurity and Infrastructure Security Agency (CISA) has released an updated version of the NICE Framework, a nationally focused resource to help employers develop their cybersecurity workforce. The NICE Workforce Framework for Cybersecurity establishes a standard approach and common language for describing cybersecurity work and learner capabilities. The NICE Framework seeks to improve communication - [CISO applying and securing an enterprise-ready trust management platform](https://australiancybersecuritymagazine.com.au/ciso-applying-and-securing-an-enterprise-ready-trust-management-platform/) - Vanta is the first ever enterprise-ready trust management platform – one place to automate compliance workflows, centralize and scale your security program, and build and manage trust with customers and partners. We speak with Jadee Hanson, Chief Information Security Officer (CISO) for Vanta. Security is at the heart of what Vanta does —helping customers improve - [IT Bosses Want More Government Help to Manage Cybersecurity](https://australiancybersecuritymagazine.com.au/it-bosses-want-more-government-help-to-manage-cybersecurity/) - Australian IT leaders want more government intervention and information sharing to help them manage cybersecurity, according to new research from KnowBe4. As cyber-attacks and data breaches continue to rise, IT leaders across Australia are calling for government to provide more support and information sharing to help fight back against cyber criminals. According to the research, - [Darktrace Report Reveals Impact of AI-Powered Cyber Threats](https://australiancybersecuritymagazine.com.au/darktrace-report-reveals-impact-of-ai-powered-cyber-threats/) - Cybersecurity company Darktrace has released its latest State of AI Cybersecurity Report. The report reveals that 78% of Australian organisations are significantly impacted by AI-powered cybersecurity threats and 54% are not prepared to defend against AI attacks. However, Australian organisations are responding with stronger governance frameworks, with 46.7% having already implemented formal AI safety policies. - [IT Team Research Reveals Cost of Fixing Human Errors](https://australiancybersecuritymagazine.com.au/it-team-research-reveals-cost-of-fixing-human-errors/) - New research released this week by Tanium highlights the need for automation to mitigate human error, improve security, and reduce burnout. The Impact of IT Operations Automation on the Morale, Productivity, and Security Posture of IT Teams report reveals that 43% of Australian IT teams are wasting up to 20 hours per month fixing human - [Australia Has More to do Says National Cybersecurity Coordinator](https://australiancybersecuritymagazine.com.au/australia-has-more-to-do-says-national-cybersecurity-coordinator/) - By David Gee In an address at a cybersecurity conference in Sydney, the National Cybersecurity Coordinator Michelle McGuinness outlined Australia's ambitious plan to become a world leader in cyber security by 2030. The strategy, embedded within the broader 2030 Australian national security framework, recognises that achieving this goal requires not only technical prowess but also - [Aryaka Partners With ASV Platforms to Drive Growth in Australia and New Zealand](https://australiancybersecuritymagazine.com.au/aryaka-partners-with-asv-partners-to-drive-growth-in-australia-and-new-zealand/) - Secure access service edge (SASE) company Aryaka has announced a partnership with ASV Platforms for the Australia and New Zealand markets. Aryaka's unified SASE as a service enables organisations to consolidate network and security teams, simplify operations, eliminate integration costs, reduce vendor management overheads and improve application performance and security posture. The company has leveraged - [Security Company SoSafe Opens for Business in Australia](https://australiancybersecuritymagazine.com.au/security-company-sosafe-opens-for-business-in-australia/) - Security company SoSafe has announced its Australia launch, bringing its human-centric approach to cybersecurity to Australian businesses. As Australian firms continue to be battered by cybercrime, this latest expansion is a result of identifying an urgent need for a better approach to mitigating human-related security risks locally. By using behavioural science and learning psychology, SoSafe - [Fortinet Promotes Dale Nachman to ANZ Regional Director](https://australiancybersecuritymagazine.com.au/fortinet-promotes-dale-nachman-to-anz-regional-director/) - Cybersecurity company Fortinet has promoted Dale Nachman to regional director for Australia and New Zealand. Nachman will lead Fortinet's strategic direction across the region, driving business growth and strengthening customer and partner engagement. Nachman's promotion is part of a broader realignment of Fortinet's Australia and New Zealand structure to continue maximising investments in people and - [Data Stolen from Australia IVF Company Genea Published on Dark Web](https://australiancybersecuritymagazine.com.au/data-stolen-from-australia-ivf-company-genea-published-on-dark-web/) - Australian IVF company Genea has confirmed that stolen data from its systems has been published on the dark web after a cyber attack earlier this year. Genea says it is working to understand what details have been published. The attack was attributed to the Termite ransomware group and the 940.7GB trove of stolen data includes - [Broadcom Warns of ESXi, Workstation, and Fusion Zero-Day Vulnerabilities](https://australiancybersecuritymagazine.com.au/broadcom-warns-of-esxi-workstation-and-fusion-zero-day-vulnerabilities/) - Broadcom published a critical security advisory (VMSA-2025-0004) on March 4, 2025, about three new zero-day vulnerabilities affecting multiple VMware products, including ESXi, Workstation, and Fusion. The most severe of the vulnerabilities is CVE-2025-22224, a critical vulnerability in ESXi and Workstation. Notably, these are not remotely exploitable vulnerabilities - they require an attacker to have existing - [Report Reveals Wireless Networks Remain Exposed to Cyber Attacks](https://australiancybersecuritymagazine.com.au/report-reveals-wireless-networks-remain-exposed-to-cyber-attacks/) - Cybersecurity company Nozomi Networks has released its latest OT and IoT security report, OT/IoT Cybersecurity Trends and Insights, February 2025. It reveals that wireless networks remain woefully unprotected as threat actors continue to gain deep access to critical infrastructure. In the second half of 2024, critical infrastructure organisations in the US saw the highest number - [Triskele Labs Opens Perth Office](https://australiancybersecuritymagazine.com.au/triskele-labs-opens-perth-office/) - Australian cyber security company Triskele Labs has opened an office in Perth. The Perth team will be led by WA State Manager Steve Simpson and includes a digital forensics and incident response analyst, detection and threat hunting engineer, security operations centre analysts, a governance, risk and compliance consultant, and offensive consultants, as well as local - [Australian Businesses Need A Better Approach to DevSecOps](https://australiancybersecuritymagazine.com.au/australian-businesses-need-a-better-approach-to-devsecops/) - By Josh Lemos, chief information security officer, GitLab. For years, DevSecOps has promised to bolster security by removing silos between development, security, and operations teams and integrating security throughout the entire development lifecycle. When implemented correctly, this approach can increase speed, reduce costs, and minimise security incidents. Many Australian organisations believe they are practicing DevSecOps - [Novera Digital Risk Management Advisory Service Launches](https://australiancybersecuritymagazine.com.au/novera-digital-risk-management-advisory-service-launches/) - A new Australian digital risk management advisory firm has just launched. Sydney-based Novera will specialise in cyber security, privacy, and artificial intelligence risk management. The Novera suite of advisory and consulting services include: AI Risk Management: AI risk assessments to ensure compliance with international standards such as ISO/IEC 42001, while providing cybersecurity and privacy advisory - [Kaspersky Banned on Australian Government Devices](https://australiancybersecuritymagazine.com.au/kaspersky-banned-on-australian-government-devices/) - Australia's Department of Home Affairs has issued a directive banning the use of Kaspersky products on federal government devices. Kaspersky is a Russian cyber security firm. "After considering threat and risk analysis, I have determined that the use of Kaspersky Lab, Inc. products and web services by Australian Government entities poses an unacceptable security risk - [D-Link Debuts Multi-Gigabit Switch for Enterprise Networks](https://australiancybersecuritymagazine.com.au/d-link-debuts-multi-gigabit-switch-for-enterprise-networks/) - Networking solutions company D-Link Australia has launched its DMS-3130-30PS 30-Port Stackable Multi-Gigabit PoE++ Layer 3 Switch, designed to provide a cost-effective upgrade path for organisations looking to improve their network performance beyond 1GB without the full expense of 10GB infrastructure. "The DMS-3130-30PS offers a strategic balance of performance and affordability," said D-Link Australia Managing Director - [LexisNexis Risk Solutions Acquires IDVerse](https://australiancybersecuritymagazine.com.au/lexisnexis-risk-solutions-acquires-idverse/) - LexisNexis Risk Solutions has closed its acquisition of IDVerse. The company is now part of the Business Services segment of LexisNexis Risk Solutions and will continue to be available within its LexisNexis RiskNarrative platform, LexisNexis IDU, and will be offered within its LexisNexis Dynamic Decision Platform as a stand-alone solution later this year. Once integration - [Rapid7 Discovers High-Severity SQL Injection Vulnerability](https://australiancybersecuritymagazine.com.au/rapid7-discovers-high-severity-sql-injection-vulnerability/) - Cybersecurity company Rapid7 has discovered a high-severity SQL injection vulnerability, CVE-2025-1094, affecting the PostgreSQL interactive tool psql. This discovery was made while Rapid7 was performing research into the recent exploitation of CVE-2024-12356 - an unauthenticated remote code execution vulnerability that affects both BeyondTrust privileged remote access and BeyondTrust remote support. This vulnerability was discovered by - [ACCC Welcomes Passing of Scams Prevention Framework Bill](https://australiancybersecuritymagazine.com.au/accc-welcomes-passing-of-scams-prevention-framework-bill/) - The Australian Competition and Consumer Commission (ACCC) has welcomed the passage of the Scams Prevention Framework Bill in the Australian Parliament on February 13, 2025. This world-first legislation improves protections across the economy by setting out consistent and enforceable obligations for businesses in key sectors where scammers operate. "The financial crime type, scams, present an - [Akamai technologies Releases Defenders' Guide 2025](https://australiancybersecuritymagazine.com.au/akamai-technologies-releases-defenders-guide-2025/) - Akamai Technologies has released the Defenders' Guide 2025: Fortify the Future of Your Defense. This first-of-its-kind state of the internet report delivers practical research around risk management to identify, assess, and mitigate threats; how to reinforce network architecture to create defence barriers and contain potential breaches; and guidance around implementing host security to prevent unauthorised - [Microsoft Patches 55 CVEs in Patch Tuesday](https://australiancybersecuritymagazine.com.au/microsoft-patches-55-cves-in-patch-tuesday/) - Microsoft has patched 55 CVEs in its February 2025 Patch Tuesday release, with three rated critical and 52 rated as important. Two of the vulnerabilities were exploited in the wild. The update included patches for: Active Directory Domain Services Azure Active Directory Azure Firmware Azure Network Watcher Microsoft AutoUpdate (MAU) Microsoft Digest Authentication Microsoft High - [The Cyber Gap Shortage](https://australiancybersecuritymagazine.com.au/the-cyber-gap-shortage/) - By David Gee. Board Risk Advisor, Non-Executive Director & Author We are constantly reminded that there is a cyber skills gap shortage in every country that impacts every industry. I've written and spoken about this over the years at industry events and hypothesised how this is to be addressed. Our industry does have a fundamental gap - [Apple Releases Zero Day Vulnerability Patch for iPads and iPhones](https://australiancybersecuritymagazine.com.au/apple-releases-zero-day-vulnerability-patch-for-ipads-and-iphones/) - Apple has released emergency security updates to patch a zero-day vulnerability that may disable USB restricted mode on locked iPads and iPhones. "Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals," the company says in a February 10, 2025, advisory. The devices - [Women Should Play a Bigger Role in Cyber Says AUSCERT's Bek Cheb](https://australiancybersecuritymagazine.com.au/women-should-play-a-bigger-role-in-cyber-says-auscerts-bek-cheb/) - A 2023 RMIT University report found that women make up just 17% of Australia's cybersecurity workforce, with many leaving the field after four years due to work-life balance struggles and industry culture. The 24/7 culture in cyber security, job design, and work commitments continue to make it difficult for women with domestic or child-rearing responsibilities to achieve work-life balance, which - [Fortinet Opens New Australian HQ](https://australiancybersecuritymagazine.com.au/fortinet-opens-new-australian-hq/) - Cybersecurity company Fortinet has opened its new, company-owned Australian headquarters in North Sydney. The facility is also Fortinet's first innovation hub in the Asia-Pacific region. Fortinet says its new Australian headquarters underscores the its strategic commitment to the Australian market, where business has tripled over the past five years. The AUD75 million facility joins Fortinet's - [How is Australia Impacted by Dora?](https://australiancybersecuritymagazine.com.au/how-is-australia-impacted-by-dora/) - By David Gee. Board Risk Advisor, Non-Executive Director & Author First, what is DORA? This is the Digital Operational Resilience Act, which is a European Union regulation that aims to strengthen the financial sector's IT security. This new legislation is now live and operational in the European Union. The purpose of the Act was to - [Tim Niblett Appointed Head of Security Operations at The Missing Link](https://australiancybersecuritymagazine.com.au/tim-niblett-appointed-head-of-security-operations-at-the-missing-link/) - Cyber security company The Missing Link has appointed Tim Niblett as its head of security operations. Having lived and worked in the UK, France, Spain, and Australia, Niblett brings a global perspective on security risk management and has led teams across the Americas and Asia. With 30 years in IT, including two decades specialising in - [Australia Bans DeepSeek on Government Devices](https://australiancybersecuritymagazine.com.au/australia-bans-deepseek-on-government-devices/) - Australia's Department of Home Affairs has issued a directive banning the use or installation of DeepSeek products, applications and web services on all government devices. The directive, PSPF Direction 001-2025, was signed by Home Affairs Secretary Stephanie Foster on February 4, 2025. The Protective Security Policy Framework (PSPF) applies to non-corporate Commonwealth entities subject to - [Scammers Impersonate ASD and Australian Cyber Security Centre](https://australiancybersecuritymagazine.com.au/scammers-impersonate-asd-and-australian-cyber-security-centre/) - The Australian Signal Directorate's Australian Cyber Security Centre (ACSC) is warning of scam emails and phone calls from cyber criminals claiming to work for either organisation. The content of the scam emails and phone calls vary, but typically ask you to give personal information (such as passwords or bank details), money, or ask you to - [Aus3C Calls for Businesses to Participate in Framework Consultation Process](https://australiancybersecuritymagazine.com.au/aus3c-calls-for-businesses-to-participate-in-framework-consultation-process/) - The Australian Cyber Collaboration Centre (Aus3C), in partnership with CSIRO’s Data61 and the Australian Department of Home Affairs, continues its call for the Australian business community to participate in the consultation process for the Voluntary Data Classification Framework (VDCF). The VDCF is being developed as a key part of the 2023-2030 Australian Cyber Security Strategy. - [Australian Gov't Offers Grants for Smart Devices Labelling Scheme](https://australiancybersecuritymagazine.com.au/australian-govt-offers-grants-for-smart-devices-labelling-scheme/) - Australia's Department of Home Affairs is accepting applications for grants to participate in the Labelling Scheme for Smart Devices program. The program will contribute towards building cyber security protections for consumers under the 2023-2030 Australian Cyber Security Strategy and Horizon 1 Action Plan. The objectives of the program are to: Co-design and implement an industry-led - [NCCoE Seeking Comments on 5G Cybersecurity](https://australiancybersecuritymagazine.com.au/nccoe-seeking-comments-on-5g-cybersecurity/) - The National Cybersecurity Center of Excellence is inviting comment on its latest 5G cyber security white paper. The series targets technology, cybersecurity, and privacy program managers within commercial mobile network operators, potential private 5G network operators, and organisations using and managing 5G-enabled technology who are concerned with how to identify, understand, assess, and mitigate risk - [University of Notre Dame Australia investigating cyber incident](https://australiancybersecuritymagazine.com.au/university-of-notre-dame-australia-investigating-cyber-incident/) - The University of Notre Dame Australia is investigating a cyber incident. In a statement released to the Australian Cyber Security Magazine, the University confirmed they have "reported the incident to the Australian Cyber Security Centre and relevant government agencies, and are working closely with them as part of our response." The University stated, "We are taking this incident seriously - [Thousands of SonicWall Firewalls Remain Vulnerable to Attack](https://australiancybersecuritymagazine.com.au/thousands-of-sonicwall-firewalls-remain-vulnerable-to-attack/) - Bishop Fox researchers have successfully exploited CVE-2024-53704, an authentication bypass affecting the SSL VPN component of unpatched SonicWall firewalls. According to SonicWall, SonicOS versions 7.1.x (7.1.1-7058 and older), 7.1.2-7019, and 8.0.0-8035 are affected. The researchers confirmed that the attack can be performed remotely, without authentication, and enables hijacking of active SSL VPN client sessions. An - [Searchlight Cyber Acquires Assetnote](https://australiancybersecuritymagazine.com.au/searchlight-cyber-acquires-assetnote/) - Searchlight Cyber has acquired Brisbane-based attack surface management (ASM) company Assetnote. The acquisition, the first by Searchlight Cyber, will integrate Assetnote's ASM solution with its dark web intelligence and monitoring capabilities, creating a holistic continuous threat exposure management platform that enables customers to zero in on the highest-priority threats and take action to prevent cyberattacks. - [CI-ISAC Australia Debuts Health Cyber Sharing Network](https://australiancybersecuritymagazine.com.au/ci-isac-australia-debuts-health-cyber-sharing-network/) - CI-ISAC Australia has been selected as the recipient of an Australian Government AUD6.4 million grant to create a health-specific, information-sharing and analysis centre for Australia's healthcare industry. With the Australian Government grant, CI-ISAC has created a new Health Cyber Sharing Network (HCSN) which will focus on enabling Australia's health sector organisations to collaborate and break - [Forescout Technologies Releases 2024 Threat Roundup Report](https://australiancybersecuritymagazine.com.au/forescout-technologies-releases-2024-threat-roundup-report/) - Cybersecurity company Forescout Technologies has released its 2024 Threat Roundup report that provides an analysis of the evolving threat landscape. The Forescout Vedere Labs research highlights key trends from 2024, including threat actors, vulnerabilities, exploits, top targets and attacker locations, while drawing comparisons to 2023 and offering insights and strategic recommendations for improved defences. Top - [Vonahi Security Secures Australasian CREST Accreditation](https://australiancybersecuritymagazine.com.au/vonahi-security-secures-australasian-crest-accreditation/) - Vonahi Security, an automated network penetration testing company, is proud to announce its recent accreditation by CREST in Australasia. The recognition underscores Vonahi's commitment to delivering the highest standards of cybersecurity services in the region, cementing its position among an exclusive group of 300 CREST-accredited cybersecurity providers worldwide. CREST, the Council for Registered Ethical Security - [ISACA Report Reveals Stress Points for Privacy Professionals](https://australiancybersecuritymagazine.com.au/isaca-report-reveals-stress-points-for-privacy-professionals/) - Privacy professionals are under growing pressure as they face budget cuts, resource challenges and regulatory changes. According to ISACA's State of Privacy 2025 survey report, almost half expect a budget decrease in the next year and 73% indicate expert-level privacy professionals are the most difficult to hire, adding to the stress of keeping data safe - [Tech Policy Design Institute Launches](https://australiancybersecuritymagazine.com.au/tech-policy-design-institute-launches/) - The Tech Policy Design Institute (TPDi) launched his week. It is Australia’s first independent think tank dedicated to technology policy. Founded by three female tech leaders, Johanna Weaver, Zoe Jay Hawkins and Sunita Kumar, TPDi’s mission is to shape technology through independent research, education, and commentary. TPDi’s launch comes as Australia considers regulation of artificial - [ZTW25 - Zero Trust World - Revolutionizing Incident Response](https://australiancybersecuritymagazine.com.au/ztw25-zero-trust-world-revolutionizing-incident-response/) - In the lead up to Zero Trust World 2025 we speak with Rob Allen, Chief Product Officer, ThreatLocker. ThreatLocker protects endpoints and data from zero-day malware, ransomware, and other malicious software, and provides solutions for easy onboarding, management, and eliminates the lengthy approval processes of traditional solutions. Visit https://www.threatlocker.com/why-thre... ZTW provides plenty of opportunity to - [FortiOS and FortiProxy Compromise Alert Issued](https://australiancybersecuritymagazine.com.au/fortios-and-fortiproxy-compromise-alert-issued/) - The Australian Cyber Security Centre (ACSC) has issued an alert about certain Fortinet products. The cybersecurity company has advised of an authentication bypass using an alternative path or channel vulnerability (CWE-288) affecting FortiOS and FortiProxy that may allow a remote attacker to gain super-admin privileges via crafted requests to Node.js websocket module. The Fortinet vulnerability - [New Specialist Jobs Included in Australia's Migration Skills Assessment Program](https://australiancybersecuritymagazine.com.au/new-specialist-jobs-included-in-australias-migration-skills-assessment-program/) - ACS, the professional association for Australia’s technology sector, has announced ten new specialist occupations are now available under its Migration Skills Assessment program. The new occupations increase the number of professional technology roles available to skilled migrants from 25 to 35 ANZSCO codes, with ten new high-demand occupations. Australian employers and skilled migration applicants have - [New Report Identifies Cyber Threats to Operational Technology Products](https://australiancybersecuritymagazine.com.au/new-report-identifies-cyber-threats-to-operational-technology-products/) - Threat actors are successfully targeting particular operational technology products rather than specific organisations when compromising operational technology components, according to the Australian Cyber Security Centre (ACSC). The ACSC says many operational technology products are not designed and developed with secure-by-design principles and commonly have weaknesses. Threat actors can easily exploit these weaknesses across multiple victims - [Yubico Report Reveals Inter-Generational Responses to Cyber Risks](https://australiancybersecuritymagazine.com.au/yubico-report-reveals-inter-generational-responses-to-cyber-risks/) - Nearly half of Gen Z and Millennials have had their social media passwords hacked, according to the recently released 2024 State of Global Authentication Survey. The report, compiled by Yubico, captured a snapshot of the current state of cybersecurity - including how individuals and businesses around the world are tackling authentication and the increasing risks of technologies - [Forescout Report Analyses Hunters International Tactics and Procedures](https://australiancybersecuritymagazine.com.au/forescout-report-analyses-hunters-international-tactics-and-procedures/) - Cybersecurity company Forescout has released a threat briefing that deconstructs the tactics and procedures used by Hunters International, showing how the group exploits victims’ networks, breaking down the group's main industry targets, and shares analysis on detection opportunities to prevent similar breaches. From leaking US Marshals and FBI data to extorting Chinese bank, ICBC, in - [Stephanie Crowe Appointed Head of Australian Cyber Security Centre](https://australiancybersecuritymagazine.com.au/stephanie-crowe-appointed-head-of-australian-cyber-security-centre/) - The Australian Government has appointed Stephanie Crowe as the new Head of the Australian Signals Directorate (ASD) Australian Cyber Security Centre (ACSC). Crowe has an extensive background in cyber security having worked across government and industry to respond to nationally-significant cyber events and strengthen Australia’s cyber defences. Over her 15-year career at ASD, Crowe has - [Mandiant Releases New Details Regarding Ivanti Zero-Day Vulnerability](https://australiancybersecuritymagazine.com.au/mandiant-releases-new-details-regarding-ivanti-zero-day-vulnerability/) - Mandiant has published new details regarding a zero-day vulnerability (CVE-2025-0282) that Ivanti disclosed and simultaneously patched, impacting its Ivanti Connect Secure VPN appliances. Ivanti identified the compromise based on indications from the company-supplied Integrity Checker Tool along with other commercial security monitoring tools. In its current analysis, Mandiant observed CVE-2025-0282 has been exploited in the wild by a - [ACSC Advisory Warns of Critical Ivanti Vulnerabilities](https://australiancybersecuritymagazine.com.au/acsc-advisory-warns-of-critical-ivanti-vulnerabilities/) - The Australian Cyber Security Centre (ACSC) has issued an alert to Australian organisations that use Ivanti Connect Secure, Ivanti Policy Secure, and Ivanti Neurons for ZTA Gateways, warning them of vulnerabilities. This followed Ivanti's release of an update on January 8 that addresses one critical and one high vulnerability. Successful exploitation of CVE-2025-0282 could lead - [Report Finds MSPs Focus on Profit](https://australiancybersecuritymagazine.com.au/report-finds-msps-focus-on-profit/) - Software company Kaseya has released a report, 2025 State of the MSP Industry Look Ahead: Trends, Growth and Strategies for Success, that observes trends among top-earning MSPs that can be emulated by those looking for competitive advantages in the new year. Notably, the report found that MSPs reported profitability as a top focus in 2025 - [Historical Warfare’s Parallels with Cyber Warfare](https://australiancybersecuritymagazine.com.au/historical-warfares-parallels-with-cyber-warfare/) - By Dr Warren Doudle, Edith Cowan University Throughout history we see examples of cunning tacticians and daring commanders who have used unconventional warfare to out-manoeuvre larger, better-equipped forces. The use of deception, the exploitation of the environment, psychological manipulation, and striking at weak points in an adversary’s defences have often turned the tide against seemingly - [Funding Available to Design Cybersecurity Workforce Professionalisation Scheme](https://australiancybersecuritymagazine.com.au/funding-available-to-design-cybersecurity-workforce-professionalisation-scheme/) - The Australian Government’s Department of Home Affairs is making funding available for eligible entities to design, promote and pilot a professionalisation scheme for Australia’s cybersecurity workforce. The Growing and Professionalising the Cyber Security Industry Program was announced as part of the 2023-2030 Australian Cyber Security Strategy. This grant program will provide AUD1.9 million in funding - [NSW Police Partners With ID Support NSW to Fight Identity Crime](https://australiancybersecuritymagazine.com.au/nsw-police-partners-with-id-support-nsw-to-fight-identity-crime/) - Cyber criminals and identity thieves have been put on notice thanks to a new partnership between NSW Police and ID Support NSW which will leverage the expertise of the agencies to fight cybercrime and create a faster and more effective response to identity theft. A Memorandum of Understanding between NSW Police and ID Support NSW - [Australian Computer Society and Digital Transformation Agency Ink Digital Skills MOU](https://australiancybersecuritymagazine.com.au/australian-computer-society-and-digital-transformation-agency-ink-digital-skills-mou/) - The Australian Computer Society (ACS) and the Digital Transformation Agency (DTA) have signed a memorandum of understanding (MOU) aimed at improving the Australian public sector’s digital skills. Signed last week in Canberra, the MOU aims to leverage the expertise of both organisations to enhance the digital skills of public sector employees. The collaboration will focus - [Most People Think Women are Under-Represented in the Tech Sector](https://australiancybersecuritymagazine.com.au/most-people-think-women-are-under-represented-in-the-tech-sector/) - Results from recent ISACA Research suggest that most people believe women are underrepresented in the IT sector. ISACA’s Tech Workplace and Culture Report reveals that 87% of respondents believed women are underrepresented and there is a lack of diversity in workplaces. However, only 41% of businesses have programs in place to hire more women. ISACA’s Tech Workplace - [ACMA Orders NetSIP to Abide by Scam Reporting Obligations](https://australiancybersecuritymagazine.com.au/acma-orders-netsip-to-abide-by-scam-reporting-obligations/) - The Australian Communications and Media Authority (ACMA) has directed telco Netsip Pty Ltd (NetSIP) to comply with Australia’s phone scam rules after an ACMA investigation found it breached monitoring, information-sharing and reporting obligations. Under the Reducing Scam Calls and Scam SMs Industry Code, telcos are required to monitor and disrupt scams, share information about scam traffic with - [Rapid7 Reveals 2024 Threat Landscape Statistics](https://australiancybersecuritymagazine.com.au/rapid7-reveals-2024-threat-landscape-statistics/) - By Rapid7 Labs and Managed Services Now we’ve reached the end of another year, you may be looking around the cybersecurity infosphere and seeing a glut of posts offering hot takes on the 2024 threat landscape and predictions about what’s coming next. At Rapid7, we don’t truck in hot takes, but rather, cold hard facts. - [SentinelOne Appoints New Asia Pacific and Japan SVP](https://australiancybersecuritymagazine.com.au/sentinelone-appoints-new-asia-pacific-and-japan-svp/) - SentinelOne has appointed Kris Day as Senior Vice President and General Manager for Asia Pacific and Japan. Based in Singapore, SentinelOne says Day is a proven leader with an extensive track record of broad-based achievement. At the company, he will focus on charting the company’s go-to-market and growth strategy and support customer, partner and people management. “As the threat - [Authorised Push Payment Fraud Losses to Hit $1.76 Billion in Australia by 2028](https://australiancybersecuritymagazine.com.au/authorised-push-payment-fraud-losses-to-hit-1-76-billion-in-australia-by-2028/) - Authorised push payment (APP) scam losses are on the rise, with losses in Australia predicted to hit AUD1.76 billion by 2028, according to the latest Scamscope report from ACI Worldwide and GlobalData. The report says losses from APP scams are expected to climb to around AUD11.8 billion by 2028 across six leading real-time payment markets: the US, the UK, India, - [Hack the Hacker Series - Release of ITMOAH 2024](https://australiancybersecuritymagazine.com.au/hack-the-hacker-series-release-of-itmoah-2024/) - Learn what ethical hackers can teach us about the next era of artificial intelligence. We speak with Michael Skelton, VP of Operations and Sajeeb Lohani, Global TISO for Bugcrowd on the latest edition of 'Inside The Mind Of A Hacker'. We're also joined by CJ Fairhead who is a Senior Penetration Tester, OSCP Certified, Security - [United States Indicts North Koreans Working in US Companies and NGOs](https://australiancybersecuritymagazine.com.au/united-states-indicts-north-koreans-working-in-us-companies-and-ngos/) - The United States Department of Justice has this week indicted 14 North Korean nationals with long-running conspiracies to violate US sanctions and to commit wire fraud, money laundering, and identity theft. Specifically, the accused, who worked for North Korean-controlled companies Yanbian Silverstar and Volasys Silverstar located in China and Russia, conspired to use false, stolen, and - [Bridging the IT-OT gap in the age of cyber threats](https://australiancybersecuritymagazine.com.au/bridging-the-it-ot-gap-in-the-age-of-cyber-threats/) - Running a business in today’s volatile global economy is challenging enough, but keeping industrial operations secure and functional is becoming even harder... - [How Businesses Can Achieve Effective Cyber Hygiene](https://australiancybersecuritymagazine.com.au/how-businesses-can-achieve-effective-cyber-hygiene/) - Cybercrime rates in Australia have surged, with online attacks averaging out to one every six minutes, according to the Australian Signals Directorate. For organisations, one of the most common attacks is email compromise, which involves manipulating individuals into unauthorised financial transactions or the disclosure of sensitive company data. The rise in cyber incidents translates into - [Australians Question the Ethics of AI](https://australiancybersecuritymagazine.com.au/australians-question-the-ethics-of-ai/) - Women are more likely than men to view AI as being unethical, with around 40% of Australians feeling uncertain about its benefits according to a new report. The findings have been revealed in a supplementary report to the Governance Institute of Australia’s 2024 Ethics Index, an independent survey of 1000 Australians conducted by Ipsos. The survey found only - [Responsible AI Research Centre to Call Adelaide Home](https://australiancybersecuritymagazine.com.au/responsible-ai-research-centre-to-call-adelaide-home/) - The University of Adelaide’s Australian Institute for Machine Learning (AIML) in partnership with the Commonwealth Scientific and Industrial Research Organisation (CSIRO) has launched its Responsible AI Research Centre (RAIR). The new centre will be based at the Lot Fourteen business and technology precinct in Adelaide. RAIR will bring AIML’s world-class researchers in artificial intelligence and - [New Zealand's Bastion Security Group Acquires Cythera](https://australiancybersecuritymagazine.com.au/new-zealands-bastion-security-group-acquires-cythera/) - New-Zealand headquartered Bastion Security Group has signed an agreement to acquire Cythera Cyber Security, a Melbourne-headquartered specialist cyber security managed services provider. A natural fit for Bastion, Cythera provides 24/7 managed cyber protection, threat detection and rapid incident response via its state of the art, in house, security operations centre provided as a modular subscription. - [Visa Looks Beyond OTPs for Payment Authentications](https://australiancybersecuritymagazine.com.au/visa-looks-beyond-otps-for-payment-authentications/) - Card company Visa will require Australian financial institutions to move away from SMS One-Time Passwords (OTPs) as the sole factor for payment authentication - [Home Affairs Issues Cybersecurity Resilience Consultation Package](https://australiancybersecuritymagazine.com.au/home-affairs-issues-cybersecurity-resilience-consultation-package/) - As part of our commitment to uplifting the Australian Government’s cybersecurity, the Department of Home Affairs is giving the Australian public an opportunity to provide input and feedback to help shape policies about Commonwealth cyber security resilience. An initial consultation package, open now, introduces the Guiding Principles to Embed Zero Trust Culture. Feedback on this consultation - [ACSC Issues Joint Advisory on Hardening Communications Infrastructure](https://australiancybersecuritymagazine.com.au/acsc-issues-joint-advisory-on-hardening-communications-infrastructure/) - The Cybersecurity and Infrastructure Security Agency (CISA), National Security Agency (NSA), Federal Bureau of Investigation (FBI), Australian Signals Directorate’s (ASD’s) Australian Cyber Security Centre (ACSC), Canadian Cyber Security Centre (CCCS), and New Zealand’s National Cyber Security Centre (NCSC-NZ) warn that People’s Republic of China (PRC)-affiliated threat actors compromised networks of major global telecommunications providers to - [JFrog Researchers Detail 22 New 0-Day Vulnerabilities](https://australiancybersecuritymagazine.com.au/jfrog-researchers-detail-22-new-0-day-vulnerabilities/) - Open-source security platform JFrog has released the second instalment of its latest research series that details the unique client-side and safe mode software vulnerabilities in 22 ML-related projects. These vulnerabilities allow attackers to hijack ML clients in the organisation, such as data scientists’ tools and MLOps pipelines that can cause code execution when loading an untrusted piece - [SonicWall Issues Partner Notification Flagging Six Vulnerabilities](https://australiancybersecuritymagazine.com.au/sonicwall-issues-partner-notification-flagging-six-vulnerabilities/) - Cybersecurity company SonicWall has issued a partner notification confirming six vulnerabilities in its products, namely: Path Traversal vulnerability (CVE-2024-38475); Heap Buffer Overflow vulnerability (CVE-2024-40763); Stack Buffer Overflow vulnerability (CVE-2024-45318); Apache stack-based buffer overflow vulnerability (CVE-2024-53703); Certificate based authentication could be bypassed vulnerability (CVE-2024-45319); and Insecure Randomness vulnerability (CVE-2024-53702). Each has the following CVSS score: Path - [Experian's 12th Data Breach Industry Forecast Flags Emerging Cyber Threats](https://australiancybersecuritymagazine.com.au/experians-12th-data-breach-industry-forecast-flags-emerging-cyber-threats/) - Experian's just released 12th annual Data Breach Industry Forecast has found that emerging cybersecurity threats may come from unexpected sources as teens and AI-savvy employees may perpetrate more attacks next year. The report includes five predictions for 2025 covering a range of potential trends with AI at the forefront, including growing sources of threats and - [The Negative Impact of AI on Academic Integrity in Tertiary Education](https://australiancybersecuritymagazine.com.au/the-negative-impact-of-ai-on-academic-integrity-in-tertiary-education/) - By Dr Michael Coole, Dr Warren Doudle, Nicola Lockhart, and Simeng Yuan This article reviews the negative impact of artificial intelligence (AI) on academic integrity and learning efficacy in Australian higher education. The progression of AI technologies including ChatGPT has provided students with unprecedented tools capable of generating high-quality academic content with minimal effort or - [Vectra AI Releases 2025 Cybersecurity Predictions](https://australiancybersecuritymagazine.com.au/vectra-ai-releases-2025-cybersecurity-predictions/) - Extended detection and response company Vectra AI has released its 2025 security predictions for Australia and New Zealand, highlighting the significant role artificial intelligence will play in cybersecurity and the growing focus on achieving measurable results. Cybersecurity remains one of the top investments for CIOs in 2025. As organisations integrate AI capabilities into their core - [Australia and UK Partner to Combat Scams](https://australiancybersecuritymagazine.com.au/australia-and-uk-partner-to-combat-scams/) - Australia and the United Kingdom will join forces to combat phone scams, spam and unsolicited calls under a new agreement signed by the two countries’ communications regulators. The Australian Communications and Media Authority (ACMA) and the UK’s Office of Communications (Ofcom) have announced a new Framework for Practical Cooperation to facilitate mutual assistance and information - [Concerns Expressed Over Rushed Social Media Ban](https://australiancybersecuritymagazine.com.au/concerns-expressed-over-rushed-social-media-ban/) - Australia's top officials for children and young people hold concerns about the rushed process and lack of clarity surrounding the federal government's social media legislation, which will place significant restrictions on social media use for under 16s. Meeting late last week, Australian and New Zealand Children's Commissioners, Guardians and Advocates (ANZCCGA) raised concerns about the - [Work Gets Underway on Voluntary Data Classification Framework](https://australiancybersecuritymagazine.com.au/work-gets-underway-on-voluntary-data-classification-framework/) - The Australian Cyber Collaboration Centre (Aus3C), in collaboration with CSIRO's Data 61 and the Australian Department of Home Affairs, has announced that it is working on developing the Voluntary Data Classification Framework (VDCF) as part of Australia's National Cybersecurity Strategy. The initiative aims to establish a unified, standardised approach to assessing and protecting data risk - [Macquarie Government Expands Partnership with Netskope](https://australiancybersecuritymagazine.com.au/macquarie-government-expands-partnership-with-netskope/) - Macquarie Government has expanded its four-year partnership with global SASE (Secure Access Service Edge) leader, Netskope, following a large-scale federal government network security deployment. The Australian sovereign company deployed Netskope’s market-leading single-vendor SASE platform to the Department, ensuring it maintains compliance with the Essential 8 (E8) Maturity Model Level 2 controls. By adopting zero trust principles, - [Rapid7 Labs Identifies Malware Installer Targeting Chinese and Vietnamese Users](https://australiancybersecuritymagazine.com.au/rapid7-labs-identifies-malware-installer-targeting-chinese-and-vietnamese-users/) - In early November, Rapid7 Labs identified a new, highly evasive malware installer, CleverSoar, targeting Chinese and Vietnamese-speaking victims. CleverSoar is designed to deploy and protect multiple malicious components within a campaign, including the advanced Winos4.0 framework and the Nidhogg rootkit. These tools enable capabilities such as keystroke logging, data exfiltration, security bypasses, and covert system - [Parliament Passes Cyber Security Bill](https://australiancybersecuritymagazine.com.au/parliament-passes-cyber-security-bill/) - The Australian Parliament passed a suite of legislative reforms on November 25, 2024, designed to strengthen Australia’s national cyber defences and cyber resilience. The Comprehensive Cyber Security Legislation comprises: The Cyber Security Act 2024 (Cyber Security Act); The Intelligence Services and Other Legislation Amendment (Cyber Security) Act 2024; and The Security of Critical Infrastructure and Other Legislation Amendment (Enhanced - [Cyber Security Protections for Critical Infrastructure](https://australiancybersecuritymagazine.com.au/cyber-security-protections-for-critical-infrastructure/) - Are you prepared for a cyber-attack? Whether you’re managing a national or state-wide critical infrastructure organisation, or you’re a small rural provider with a lean team, the stakes are higher than ever for Australia’s Energy and Utility operators. Recorded on 20 November 2024 this webinar discusses the SOCI Act 2018 and the Essential Eight Framework, - [Bitdefender Announces Cybersecurity Breach Warranty Program](https://australiancybersecuritymagazine.com.au/bitdefender-announces-cybersecurity-breach-warranty-program/) - Cybersecurity company Bitdefender has announced a new cybersecurity breach warranty program for businesses that adopt its managed detection and response (MDR) services. The program, which offers up to USD1 million in financial compensation in the wake of security incidents impacting operations, is delivered through a partnership with Cysurance. The program comes at a time when - [Agencies Release Joint Advisory on Russian Cybercriminal Group BianLian](https://australiancybersecuritymagazine.com.au/agencies-release-joint-advisory-on-russian-cybercriminal-group-bianlian/) - The Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and the Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) have released an updated joint advisory as part of their ongoing efforts to publish advisories for network defenders that detail various ransomware variants and ransomware threat actors. Specifically, the agencies are releasing - [ACSC Annual Report Reveals Surge on Cyber Threats](https://australiancybersecuritymagazine.com.au/acsc-annual-report-reveals-surge-on-cyber-threats/) - Australia is under constant cyberattack, with an increasingly sophisticated and persistent threat environment, according to a new report into cyber incidents and financial losses over the past year that was released this week. The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) Annual Report for FY2023-24 revealed the Australian Cyber Security Hotline received more - [Australian Banks Partner With BioCatch to Stop Fraud and Scams](https://australiancybersecuritymagazine.com.au/australian-banks-partner-with-biocatch-to-stop-fraud-and-scams/) - The Australia and New Zealand Banking Group, Commonwealth Bank, National Australia Bank, Suncorp Bank, and Westpac have joined BioCatch Trust Australia, a pilot of the world’s first inter-bank, behavior- and device-based, fraud and scams intelligence-sharing network. BioCatch Trust adds an additional layer of behavioural and device-based protection for the bank's customers against fraud and scams - [Palo Alto Tracking PAN-OS Authentication Bypass Exploitation Activity](https://australiancybersecuritymagazine.com.au/palo-alto-tracking-pan-os-authentication-bypass-exploitation-activity/) - Palo Alto Networks and Unit 42 are tracking a limited set of exploitation activities related to CVE-2024-0012 and are working with external researchers, partners, and customers to share information transparently and rapidly. An authentication bypass in Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management interface to gain PAN-OS - [Qualys Identifies Five Local Privilege Escalation Vulnerabilities](https://australiancybersecuritymagazine.com.au/qualys-identifies-five-local-privilege-escalation-vulnerabilities/) - The Qualys Threat Research Unit has identified five local privilege escalation (LPE) vulnerabilities within the needrestart component, which is the utility that scans systems to determine whether a restart is necessary for the system or its services. It is installed by default on Ubuntu Servers. These vulnerabilities have the potential to compromise system integrity and - [Australian Signals Directorate Releases Annual Cyber Threat Report](https://australiancybersecuritymagazine.com.au/australian-signals-directorate-releases-annual-cyber-threat-report/) - The Australian Signals Directorate’s (ASD) Annual Cyber Threat Report for 2023-24 highlights Australia’s evolving cyber threat landscape. This threat landscape aligns with the challenging strategic environment outlined in the 2024 National Defence Strategy and the 2023 Cyber Security Strategy, with strategic competition being accompanied by technological developments including in cyber capabilities. This year’s report details - [State of Cybersecurity 2024 report insights with ISACA](https://australiancybersecuritymagazine.com.au/state-of-cybersecurity-2024-report-insights-with-isaca/) - In response to new questions asked by the annual study, sponsored by Adobe—which showcases the feedback of more than 1,800 global cybersecurity professionals on topics related to the cybersecurity workforce and threat landscape—security teams in Oceania noted they are primarily using AI for: Automating threat detection/response (36 percent vs 28 percent globally) Endpoint security (33 - [Social Media Scammers Continue to Target Australian Kids](https://australiancybersecuritymagazine.com.au/social-media-scammers-continue-to-target-australian-kids/) - Social media is being exploited to scam Australian children, with scammers pocketing over AUD129,700 from kids and teens in 2024 so far, according to the latest data from the Australian Government's Scamwatch programme. Analysis by AUCyber, one of Australia's leading cyber security experts, reveals that social media is the primary platform used by criminals to - [2025 Tech Predictions – A Year of Realisation, Regulations and Resilience](https://australiancybersecuritymagazine.com.au/2025-tech-predictions-a-year-of-realisation-regulations-and-resilience/) - By Anthony Spiteri As 2024 draws to a close, Veeam’s Asia Pacific Regional Chief Technology Officer Anthony Spiteri makes several tech predictions for 2025, suggesting the year will be one of realisation, regulations and resilience. AI middleware companies to bridge the gap in AI adoption In 2025, we will see more businesses engaging AI middleware - [CommBank App Introduces New Security Features to Combat Scams](https://australiancybersecuritymagazine.com.au/commbank-app-introduces-new-security-features-to-combat-scams/) - CommBank has launched three new security features in the CommBank app to help combat scams and continue driving down customer losses. In a first for a major Australian bank, customers can now use the CommBank app to see their digital wallets. With 7.3 million digital wallets now having CommBank payment details added, the Review digital - [ASD Names the Top Routinely Exploited Vulnerabilities](https://australiancybersecuritymagazine.com.au/asd-names-the-top-routinely-exploited-vulnerabilities/) - The Australian Signals Directorate and its international partners have published a joint advisory on the top routinely exploited vulnerabilities. The advisory provides details, collected and compiled by the authoring agencies, on the common vulnerabilities and exposures (CVEs) routinely and frequently exploited by malicious cyber actors in 2023 and their associated common weakness enumerations. Malicious cyber - [Government Offers Cyber Security Strategy Challenge Grants](https://australiancybersecuritymagazine.com.au/government-offers-cyber-security-strategy-challenge-grants/) - Australia’s Department of Home Affairs is asking private enterprises to help it determine how to validate the authenticity of the information disseminated by the Australian Government. They have issued two open competitive grant opportunities as part of the problem-solving programme. The first opportunity is a feasibility grant to test the technical and commercial viability of - [Fortifying Australia’s Data Resilience and Security](https://australiancybersecuritymagazine.com.au/fortifying-australias-data-resilience-and-security/) - Fortifying Australia’s Data Resilience and Security Luncheon held 31 October 2024 at the National Press Club in Canberra gathered industry leaders, government officials and cybersecurity experts to explore Australia’s pressing cyber security challenges. As one of the most attacked countries in the world, Australia faces significant threats that demand urgent attention and innovative solutions. This - [Australia's Dynamic Standards Moves Into International Markets](https://australiancybersecuritymagazine.com.au/australias-dynamic-standards-moves-into-international-markets/) - Dynamic Standards International (formerly Cyber Security Certification Australia) has announced its expansion into overseas markets following increased demand for the SMB1001 cybersecurity standard designed for small to medium-sized businesses. DSI Co-founder Professor Ryan Ko said DSI’s move to a globally focused standard reflects growing demand for practical cybersecurity certification for small and medium businesses across - [Liverton Security Opens Cyber Security Consulting Division in Wellington](https://australiancybersecuritymagazine.com.au/liverton-security-opens-cyber-security-consulting-division-in-wellington/) - Liverton Security has opened a new Cyber Security Consulting Division in Wellington. The company says this will improve its suite of security solutions for businesses and organisations across New Zealand and elsewhere. General Manager Murray Wills heads the new division. With a background in resolving complex challenges within the global cyber security industry, Wills will - [New Ransomware Group Sarcoma Targets Australian Companies](https://australiancybersecuritymagazine.com.au/new-ransomware-group-sarcoma-targets-australian-companies/) - A relatively new ransomware group called Sarcoma claims to have stolen data from four Australian companies, including Road Distribution Services, Perfection Fresh, the Plastic Bag Company and Sydney-based Meshworks. Aside from the Australian businesses, Sarcoma has listed another two dozen plus companies it says it has taken data from and posted samples of some on - [New Standard for Machine Identity Security](https://australiancybersecuritymagazine.com.au/new-standard-for-machine-identity-security/) - We speak with Venafi's Chief Innovation Officer, Kevin Bocek following the acquisition by Cyberark, effective as 1 October, 2024. Given Kevin’s role over a decade with Venafi, he gives insight into what the acquisition of Venafi means for the customers of both companies and the market. We also discuss how the IAMs compliment each other - [Data Beyond Borders - Australian Data Stored in Non-Australian Cloud Environments](https://australiancybersecuritymagazine.com.au/data-beyond-borders-australian-data-stored-in-non-australian-cloud-environments/) - By Tafara Mlambo, Helen Arnell, Jason Feinberg, Bethany Newton, and Tanatswa Tuturu. Edith Cowan University. Data sovereignty is a term which has emerged to consider the ownership and control of information generated within the jurisdictional bounds of a sovereign state, but storage may not occur locally. As with many emerging concepts, there is no agreed - [Research Reveals Need for Greater Cybersecurity Team Involvement in AI Solutions](https://australiancybersecuritymagazine.com.au/research-reveals-need-for-greater-cybersecurity-team-involvement-in-ai-solutions/) - Almost half of companies exclude cybersecurity teams when developing, onboarding, and implementing AI solutions according to new ISACA research. Only around a quarter (26%) of cybersecurity professionals or teams in Oceania are involved in developing policy governing the use of AI technology in their enterprise, and nearly half (45%) report no involvement in the development, - [Report Finds Many Australian Businesses Struggle With Technological Change](https://australiancybersecuritymagazine.com.au/report-finds-many-australian-businesses-struggle-with-technological-change/) - New KPMG research suggests the pace of change is leading to rushed technology decisions in Australian businesses. The KPMG Global Tech Report surveyed 2,450 executives from 26 countries, including 138 from Australia. It focused on how tech leaders can avoid purely reactive tech investment by seeing past the hype and effectively balancing speed, security and - [Name Change for Sovereign Cloud Holdings](https://australiancybersecuritymagazine.com.au/name-change-for-sovereign-cloud-holdings/) - ASX-listed Sovereign Cloud Holdings Limited is changing its name to AUCyber Limited and will operate two distinct brands – AUCloud and AUCyber. In a statement to the Australian Stock Exchange, CEO Peter Maloney said the new name reflects the company's emergence as a dynamic provider of cyber security, sovereign private cloud and managed technology services, - [NTT DATA Partners With Palo Alto Networks to Help Keep Digital Infrastructure Safe](https://australiancybersecuritymagazine.com.au/ntt-data-partners-with-palo-alto-networks-to-help-keep-digital-infrastructure-safe/) - Digital business and IT company NTT DATA has expanded its partnership with Palo Alto Networks to help enterprises safeguard their digital infrastructures from emerging cybersecurity threats. The collaboration introduces NTT Data’s Managed Extended Detection Response Service (MXDR), which offers continuous threat monitoring, detection, and rapid response capabilities. The service is powered by Palo Alto Networks Cortex - [OpSys Australia Appoints Inaugural Chief Information Security Officer](https://australiancybersecuritymagazine.com.au/opsys-australia-appoints-inaugural-chief-information-security-officer/) - South Australian cybersecurity company OpSys Australia has appointed Shanna Daly as its inaugural Chief Information Security Officer. Based in Sydney, Daly will lead and manage the company’s cyber operations team and services, supporting the delivery of the highest level of security, according to industry frameworks, across all systems and data for both OpSys and its - [National Anti-Scam Centre Issues Bulk Email Extortion Warning](https://australiancybersecuritymagazine.com.au/national-anti-scam-centre-issues-bulk-email-extortion-warning/) - Criminals are emailing people and falsely claiming they have hacked into their computers or webcams and have access to compromising images and videos of them, according to the Australian Government’s National Anti-Scam Centre. These criminals threaten people by saying they will release the images and videos unless they’re paid. They include personal details such as - [FortiManager Network Management Vulnerability Warning](https://australiancybersecuritymagazine.com.au/fortimanager-network-management-vulnerability-warning/) - Cybersecurity company Fortinet released an advisory on CVE-2024-47575, a critical zero-day vulnerability impacting several versions of their FortiManager network management software. The company says a missing authentication for critical function vulnerability [CWE-306] in FortiManager fgfmd daemon may allow a remote unauthenticated attacker to execute arbitrary code or commands via specially crafted requests. The vulnerability has - [Report Reveals Australia Needs to Boost AI and Cyber Skills](https://australiancybersecuritymagazine.com.au/report-reveals-australia-needs-to-boost-ai-and-cyber-skills/) - The Australian Computer Society (ACS) has today released the tenth edition of the ACS Digital Pulse report, presenting insights into the evolving technology landscape and its workforce in Australia, including a need to boost cyber and AI skills. Launched by Deputy Prime Minister Richard Marles on October 22, 2024, the report marks a decade of - [CxO Perspectives Series with Bugcrowd](https://australiancybersecuritymagazine.com.au/cxo-perspectives-series-with-bugcrowd/) - We speak with Dina Mathers, Chief Information Security Officer, Carvana alongside Nick Mckenzie, Chief Information & Security Officer with Bugcrowd. Dina Mathers, who leads Information Security at Carvana - was recently awarded the CISOs Top 100 Accelerated CISOs Award which recognizes leaders who are shaping the future of cybersecurity. Carvana engages Bugcrowd for bug bounty - [AFP & ACSC Joint Cybersecurity Advisory Flags Iranian Bad Actors](https://australiancybersecuritymagazine.com.au/afp-acsc-joint-cybersecurity-advisory-flags-iranian-bad-actors/) - Multiple agencies have released a joint Cybersecurity Advisory warning network defenders of Iranian cyber actors’ use of brute force and other techniques to compromise organizations across multiple critical infrastructure sectors, including the healthcare and public health, government, information technology, engineering, and energy sectors. The actors likely aim to obtain credentials and information describing the victim’s - [Keeping to the basics in the Shadow World of cybersecurity](https://australiancybersecuritymagazine.com.au/keeping-to-the-basics-in-the-shadow-world-of-cybersecurity/) - We speak with Craig Ford who has over 20+ year ICT and Cyber professional with experience in all three Blue team, Red team and Purple teams across my career with more recently senior consulting and CISO engagements. He is the Head Unicorn (Cofounder and Director) for Cyber Unicorns. Cyber Unicorns is a cyber security consultancy - [Big Rise in Cyber Attacks Affecting CPS Environments](https://australiancybersecuritymagazine.com.au/big-rise-in-cyber-attacks-affecting-cps-environments/) - Cyber-physical systems protection company Claroty has released new research highlighting the significant business impacts of cyber attacks affecting CPS environments. The report, titled The Global State of CPS Security 2024: Business Impact of Disruptions, is based on a global independent survey of 1,100 infosecurity, OT engineering, clinical and biomedical engineering, and facilities management & plant - [Securing Digital Systems in the Resources Industry](https://australiancybersecuritymagazine.com.au/securing-digital-systems-in-the-resources-industry/) - By Riccardo Galbiati, Regional Chief Security Officer, JAPAC, at Palo Alto Networks Integrating new technologies into existing industrial systems is a challenging task. This is due to the inherent differences between Operational Technology (OT) and Information Technology (IT). Unlike IT, which evolves rapidly on innovation and security, OT often consists of legacy systems never designed - [Research Finds SOC's Increasingly Distrust Threat Detection Tools](https://australiancybersecuritymagazine.com.au/research-finds-socs-increasingly-distrust-threat-detection-tools/) - Research by AI extended detection and response company Vectra has revealed growing distrust for threat detection tools as security operation centre (SOC) teams struggle to identify real attacks. The research was contained in a report titled 2024 State of Threat Detection and Response Research Report: The Defenders' Dilemma that was released this week. Among other - [Elastic Releases its 2024 Global Threat Report](https://australiancybersecuritymagazine.com.au/elastic-releases-its-2024-global-threat-report/) - AI search company Elastic has released its 2024 Global Threat Report which reveals adversary success from using offensive security tools (OSTs) - testing tools created to proactively identify security flaws, misconfigured cloud environments and a growing emphasis on credential access. Produced by Elastic Security Labs and drawing on over one billion data points, key findings - [Ransomware Attacks on Heath Sector Hits Four Year Highs](https://australiancybersecuritymagazine.com.au/ransomware-attacks-on-heath-sector-hits-four-year-highs/) - Cybersecurity company Sophos has released a sector survey report, The State of Ransomware in Healthcare 2024, which revealed that the rate of ransomware attacks against healthcare organisations has reached a four-year high since 2021. The report on real-world ransomware experiences explores the full victim journey, from attack rate and root cause to operational impact and - [ISACA Research Reveals Cyber Professionals are Feeling the Strain](https://australiancybersecuritymagazine.com.au/isaca-research-reveals-cyber-professionals-are-feeling-the-strain/) - According to new research from the Information Systems Audit and Control Association, better known as ISACA, nearly two-thirds of cybersecurity professionals say job stress is growing. The organisation's newly released 2024 State of Cybersecurity Survey report found job openings are declining, 64% of cybersecurity professionals in Australia say their role is more stressful now than - [Obsidian Security Opens Sydney Data Centre](https://australiancybersecuritymagazine.com.au/obsidian-security-opens-sydney-data-centre/) - SaaS company Obsidian Security has opened a new data centre in Sydney. Built on Amazon Web Services (AWS), the platform gives local customers the confidence to deploy the company's security solution to protect their SaaS needs and meet their data governance requirements. Obsidian says offering the security platform from the new Australian data centre upholds - [Critical Infrastructure Risk Management Program Reporting Period Closes Soon](https://australiancybersecuritymagazine.com.au/critical-infrastructure-risk-management-program-reporting-period-closes-soon/) - Australia's Cyber and Infrastructure Security Centre has issued a reminder that it is the final week of the reporting period for the Critical Infrastructure Risk Management Program (CIRMP) annual report for the 2023-24 Australian financial year. The agency says that of August 31, 2024, it had received 53 annual reports from eight different sectors covering - [Aus3C Releases Annual Cybersecurity Attitudes and Behaviours Report](https://australiancybersecuritymagazine.com.au/aus3c-releases-annual-cybersecurity-attitudes-and-behaviours-report/) - The Australian Cyber Collaboration Centre (Aus3C) has released the annual cybersecurity attitudes and behaviours report Oh Behave! 2024. The research reveals a pressing need to address growing concerns about attitudes towards online safety, with worrying trends particularly evident among younger Australians. Over 6,500 individuals across Australia, New Zealand, the USA, the UK, Canada, Germany, France - [Improve Software Supply Chain Resilience, Improve Security](https://australiancybersecuritymagazine.com.au/improve-software-supply-chain-resilience-improve-security/) - By Josh Lemos, GitLab CISO. Understanding through visibility, managing through governance, and anticipating through continuous deployment will better prepare organisations for the next supply chain attack, writes GitLab CISO Josh Lemos. Software supply chain attacks are challenging the DevSecOps community and can surprise even the most seasoned professionals. This is also combined with a lack - [Government Releases Scams Prevention Framework Draft Legislation](https://australiancybersecuritymagazine.com.au/government-releases-scams-prevention-framework-draft-legislation/) - The Assistant Treasurer and Minister for Communications have announced the release of the exposure draft of the Scams Prevention Framework legislation and explanatory materials for comment. The framework establishes scam prevention principles in legislation that will guide industry‑specific, mandatory obligations on designated sectors. The principles create obligations to prevent, detect, report, disrupt, and respond to - [Funding Boost for Brandsec to Counter Web-Based Phishing Attacks](https://australiancybersecuritymagazine.com.au/funding-boost-for-brandsec-to-counter-web-based-phishing-attacks/) - Brand protection and domain name management company brandsec has been awarded an AUD231,000 grant from the Australian Government’s Industry Growth Program (IGP). This grant will support the ongoing development of Unphish, brandsec's online enforcement and takedown software that is designed to protect Australian businesses from the growing threat of online fraud and brand impersonation. The - [Sydney Man Behind Ghost Encrypted Communications Network](https://australiancybersecuritymagazine.com.au/sydney-man-behind-ghost-encrypted-communications-network/) - An alleged mastermind behind a secret app for criminals and violent enforcers has been charged by the Australian Federal Police (AFP) during a global takedown of an encrypted communications network. AFP Operation Kraken charged a NSW man, Jay Je Yoon Jung, aged 32, for creating and administering Ghost, a dedicated encrypted communication platform, which the - [Demand for Managed Service Partners Across Asia Pacific Remains Strong](https://australiancybersecuritymagazine.com.au/demand-for-managed-service-partners-across-asia-pacific-remains-strong/) - Cybersecurity company Sophos has released its Cybersecurity Playbook for Partners in Asia Pacific and Japan in collaboration with Tech Research Asia. The report found the demand for managed service partners remains strong as AI-augmented cyberattacks remain a top concern for organisations across Asia Pacific and Japan. The report also found that AI-augmented cyberattacks are considered - [Obsidian Security Uses Australia as a Hub for Asia Pacific Expansion](https://australiancybersecuritymagazine.com.au/obsidian-security-uses-australia-as-a-hub-for-asia-pacific-expansion/) - Obsidian Security has appointed Tom Tokic as its Asia Pacific Regional Executive and Andrew Latham as its Asia Pacific Senior Sales Engineer to drive the company's growth in the region. Obsidian Security is expanding its regional presence to accelerate SaaS security deployments for local businesses. This expansion will also enhance support for many of the - [OAIC Says Data Breach Notifications at Three-Year Highs](https://australiancybersecuritymagazine.com.au/oaic-says-data-breach-notifications-at-three-year-highs/) - New statistics from the Office of the Australian Information Commissioner (OAIC) show the number of data breaches notified to the regulator in the first half of 2024 was at its highest in three and a half years. The OAIC was notified of 527 data breaches from January to June 2024, according to the latest Notifiable - [TrendMicro Report Warns Resilient Threat Actors are Bouncing Back](https://australiancybersecuritymagazine.com.au/trendmicro-report-warns-resilient-threat-actors-are-bouncing-back/) - Cybersecurity company Trend Micro has warned that threat actors have bounced back from recent law enforcement efforts to unleash a new wave of attacks leveraging AI and other techniques. In 2024, Australia encountered nearly 72 million email threats and was among the top ten countries surveyed for URL victims, with 21.6 million detections, representing 2.5% - [CSO Group and xAmplify to Relaunch as MARQ1 After Merger](https://australiancybersecuritymagazine.com.au/cso-group-and-xamplify-to-relaunch-as-marq1-after-merger/) - Australian cyber security business CSO Group and xAmplify will relaunch as MARQ1 and become the country's largest home-grown integrated cyber security and AI services group after their merger finalises. With a total headcount of more than 160 cyber, automation and AI specialists, CSO Group CEO Michael Simkovic will lead MARQ1 as its CEO. He will - [Leidos Australia Partners With Lockheed Martin on ADF's Joint Air Battle Management System](https://australiancybersecuritymagazine.com.au/leidos-australia-partners-with-lockheed-martin-on-adfs-joint-air-battle-management-system/) - Leidos Australia has been contracted by Lockheed Martin Australia to provide software development, cybersecurity, verification and validation services in support of the development of the Australian Defence Force's next-generation Joint Air Battle Management System under Project AIR6500. Under the contract, Leidos Australia will support the Joint Air Battle Management System enterprise in the cybersecurity, modelling - [Mimecast Appoints New ANZ Partner Leader](https://australiancybersecuritymagazine.com.au/mimecast-appoints-new-anz-partner-leader/) - Human risk management platform Mimecast has appointed Lizelle Hughes as the partner leader for the Australia and New Zealand region, effective September 2, 2024. At Mimecast, Hughes will spearhead incremental partner-generated business through resellers, managed service providers, distributors and the company's tech alliance partners. "I'm delighted to step into this new role at Mimecast and - [ATSE Welcomes AI Safety Guidelines](https://australiancybersecuritymagazine.com.au/atse-welcomes-ai-safety-guidelines/) - The Australian Academy of Technological Sciences and Engineering (ATSE) has welcomed the release of proposals to implement mandatory artificial intelligence guardrails for high-risk AI applications as an important first step in creating a safe and responsible AI ecosystem in Australia. ATSE says this week's release of the voluntary AI safety standards, which provide guidance to - [Firefighters Union Unhappy With Cyberattack Response](https://australiancybersecuritymagazine.com.au/firefighters-union-unhappy-with-cyberattack-response/) - Victoria's United Firefighters Union says its members, who have waited more than 18 months for answers regarding a December 2022 cyber attack on Fire Rescue Victoria (FRV), have been left fuming after the organisation booked a spot at an AUD2000-a-head for-profit conference on Thursday to reveal the inner workings of its response. The union says - [FirstWave Cloud Technology Targets Cash Flow Positive Status in FY25](https://australiancybersecuritymagazine.com.au/firstwave-cloud-technology-targets-cash-flow-positive-status-in-fy25/) - Network management and cybersecurity software group FirstWave Cloud Technology Limited announced that it has made significant progress towards the goal of being cashflow positive in FY25. The company has released its full-year results for the year to June 30, 2024, with the loss for the consolidated entity after providing for income tax and excluding impairments, - [Australia's Jamie Norton Appointed to ISACA Board](https://australiancybersecuritymagazine.com.au/australias-jamie-norton-appointed-to-isaca-board/) - ISACA has appointed Australian cybersecurity veteran Jamie Norton to its 2024-2025 board of directors. The global association for IT governance, risk management, and cybersecurity professionals says his expertise will further strengthen its mission to advance trust in technology and equip digital trust professionals for the future. "I am pleased to welcome Jamie to ISACA's board - [AUCloud Appoints New Head of Government Relations](https://australiancybersecuritymagazine.com.au/aucloud-appoints-new-head-of-government-relations/) - Australian sovereign cyber security and cloud services company AUCloud has appointed Samantha Maher as Head of Government Relations. "The appointment of Sam as the Head of Government Relations strengthens AUCloud's federal government engagement," said AUCloud MD and CEO Peter Maloney. "Her role will be pivotal to advancing our continued collaboration with government, ensuring that we - [New Head of Australian Signals Directorate Named](https://australiancybersecuritymagazine.com.au/new-head-of-australian-signals-directorate-named/) - Abigail Bradshaw will be appointed the new Director-General of the Australian Signals Directorate (ASD), succeeding Rachel Noble. Subject to approval by the Federal Executive Council, the change will take effect on September 6, 2024. The Australian Government announced the appointment on August 27, 2024. Bradshaw has served as Deputy Director-General of the ASD and Head - [Consumers Encouraged to Report Scams During Scam Awareness Week](https://australiancybersecuritymagazine.com.au/consumers-encouraged-to-report-scams-during-scam-awareness-week/) - The Australian Competition and Consumer Commission (ACCC) and Australian Communications and Media Authority (ACMA) have joined forces to highlight Scam Awareness Week between August 26 and 30, 2024. The annual event raises awareness about common scams and offers tips on how people can protect themselves from scammers. This year, Scams Awareness Week encourages Australians to - [UNSW to Host Upcoming Australian Cybersecurity Games](https://australiancybersecuritymagazine.com.au/unsw-to-host-upcoming-australian-cybersecurity-games/) - The University of New South Wales (UNSW) will host students from universities across Australia in the upcoming Australian Cybersecurity Games. The competition, run by SECedu, an Australian network of educators and cyber security professionals, will take place between September 2-30, 2024. SECedu was founded as a partnership between UNSW Sydney and Commonwealth Bank and combines - [Tenable Team Unearths Critical Vulnerability in Microsoft Copilot Studio](https://australiancybersecuritymagazine.com.au/tenable-team-unearths-critical-vulnerability-in-microsoft-copilot-studio/) - Exposure management company Tenable has discovered a critical information disclosure vulnerability in Microsoft's Copilot Studio via a server-side request forgery (SSRF). The vulnerability allowed researchers access to potentially sensitive information regarding service internals with potential cross-tenant impact. This vulnerability exists due to improper handling of redirect status codes for user-configurable actions within Copilot Studio. This - [CSIRO and Google Partner to Fix Critical Infrastructure Cyber Gaps](https://australiancybersecuritymagazine.com.au/csiro-and-google-partner-to-fix-critical-infrastructure-cyber-gaps/) - The CSIRO and Google have partnered to help close crucial gaps in how Australia's critical infrastructure operators find, understand, and fix vulnerabilities in their software supply chains. The partnership will assist critical infrastructure operators in meeting growing legislative obligations to prove the integrity and security of their software supply chains. The partnership is part of - [Defence Appoints Trustwave to ICTPA Panel](https://australiancybersecuritymagazine.com.au/defence-appoints-trustwave-to-ictpa-panel/) - Australia's Department of Defence (DoD) has appointed cybersecurity and managed security services provider Trustwave to its Information Communications Technology Provider Arrangement (ICTPA) panel. Trustwave says its new role opens new avenues for the company to provide cybersecurity services to defence and intelligence agencies. "Trustwave's appointment to the ICTPA panel will enable defence and intelligence agencies - [ACMA Warns SMSGlobal Following Scam SMs Industry Code Breaches](https://australiancybersecuritymagazine.com.au/acma-warns-smsglobal-following-scam-sms-industry-code-breaches/) - The Australian Communications and Media Authority (ACMA) has directed bulk messaging company SMSGlobal to comply with anti-scam rules after finding it breached the Reducing Scam Calls and Scam SMs Industry Code. The ACMA found that SMSGlobal originated short messages with alphanumeric sender IDs on its telecommunications network without being provided evidence of a valid use - [NCCoE Releases 5G Cybersecurity White Papers](https://australiancybersecuritymagazine.com.au/nccoe-releases-5g-cybersecurity-white-papers/) - The NIST National Cybersecurity Center of Excellence (NCCoE) has launched the Applying 5G Cybersecurity and Privacy Capabilities white paper series. The white papers target technology, cybersecurity, and privacy program managers within commercial mobile network operators, potential private 5G network operators, and organisations using and managing 5G-enabled technology who are concerned with how to identify, understand, - [Thales Says Post-Quantum Cryptography Will Revolutionise Digital Security](https://australiancybersecuritymagazine.com.au/thales-says-post-quantum-cryptography-will-revolutionise-digital-security/) - The National Institute of Standards and Technology (NIST) has announced that it has finally finalised the principal set of encryption algorithms designed to withstand cyberattacks from a quantum computer. This could potentially overhaul the encryption foundations that organisations have relied upon for decades and force them to completely rethink their approach to digital security. Post-quantum - [Disrupting the Cost Trajectory - Five Ways to Maximise Your Digital Transformation ROI](https://australiancybersecuritymagazine.com.au/disrupting-the-cost-trajectory-five-ways-to-maximise-your-digital-transformation-roi/) - By Kerrick Lehman, BT Regional Director & General Manager, Australia & New Zealand Technology leaders are increasingly asked to achieve more with fewer resources. Coupled with skills shortages, limited budgets, and outdated digital assets, striking this balance has never been more critical. The question is: how can technology leaders realign their resources into high-value projects - [CyberCX Uncovers Chinese Social Media Accounts Stoking Political Division](https://australiancybersecuritymagazine.com.au/cybercx-uncovers-chinese-social-media-accounts-stoking-political-division/) - New research by CyberCX Intelligence has unearthed a network of at least 5,000 inauthentic X (formerly Twitter) accounts used to stoke political divisions in Australia, the United States, the United Kingdom and other Western democracies. CyberCX calls the accounts the Green Cicada Network. They say they are controlled in concert by a Chinese-language artificial intelligence - [Acronis Appoints New NZ & Pacific Islands Strategic Account Executive](https://australiancybersecuritymagazine.com.au/acronis-appoints-new-nz-pacific-islands-strategic-account-executive/) - Cybersecurity and data protection company Acronis has appointed Andrea Martin as its Strategic Account Executive for New Zealand and the Pacific Islands. Martin will help grow Acronis' presence in the region and will be responsible for strengthening relationships with distributors and supporting partners to meet the cybersecurity demands of MSPs and IT teams for modern - [Optus to Offer Threat Monitoring Service for Enterprise & Mid-Market Customers](https://australiancybersecuritymagazine.com.au/optus-to-offer-threat-monitoring-service-for-enterprise-mid-market-customers/) - Optus and security analytics data company Devo Technology have partnered to introduce an around-the-clock threat monitoring service to the Australian market. Using the Devo Security Data Platform, Optus will achieve real-time visibility of potential and emerging network threats. The new automated threat monitoring system operates alongside the Optus Network Operation Centre and Security Operation Centre. - [ISACA Appoints New Auckland Chapter President](https://australiancybersecuritymagazine.com.au/isaca-appoints-new-auckland-chapter-president/) - The Information Systems Audit and Control Association (ISACA) has appointed Tatum Crisp as the first female president of its 40-year-old Auckland chapter. ISACA is a global association that provides IT professionals with knowledge, credentials, training and community in audit, governance, risk, privacy and cybersecurity. With a two-decade-plus career in technology and cybersecurity risk management, Crisp - [Austrade's Digital Gateway to Southeast Asia Mission Opens to Applicants](https://australiancybersecuritymagazine.com.au/austrades-digital-gateway-to-southeast-asia-mission-opens-to-applicants/) - Austrade is inviting expressions of interest in attending the Australia Southeast Asia Business Exchange Digital Gateway to Southeast Asia mission to Malaysia and Singapore from October 7 - 11, 2024. The mission will collaborate with state and territory governments to assist businesses in identifying and capturing commercial opportunities in Southeast Asia's fast-growing and rapidly changing - [Hacker Targets Early Settler Furniture, Customer Data on Dark Web](https://australiancybersecuritymagazine.com.au/hacker-targets-early-settler-furniture-customer-data-on-dark-web/) - Australia furniture retailer Early Settler has confirmed it was the victim of a data breach that exposed customer names, email addresses, phone numbers, delivery addresses, and, in some cases, dates of birth. "Early Settler has become aware that a third party has named our company online alongside claims they have accessed some of our customers’ - [Report Highlights State of the Software Supply Chain in OT/IoT Routers](https://australiancybersecuritymagazine.com.au/report-highlights-state-of-the-software-supply-chain-in-ot-iot-routers/) - Forescout Technologies has partnered with Finite State to produce a report, Rough Around the Edges, that analyses the state of software supply chain in operational technology (OT)/internet of things (IoT) routers, which are essential for connecting critical devices across various environments to the internet. The research revealed that OT and IoT cellular routers, and others - [Bugcrowd Releases Continuous Attack Surface Penetration Testing Solution](https://australiancybersecuritymagazine.com.au/bugcrowd-releases-continuous-attack-surface-penetration-testing-solution/) - Crowdsourced security company Bugcrowd has released its Continuous Attack Surface Penetration Testing (CASPT) solution on the Bugcrowd Platform. The company says CASPT provides customers with a proactive security approach to continuously meet compliance goals and reduce their external risk asset exposure. Continuous Attack Surface Penetration Testing is designed for customers with an evolving attack surface - [Elastic Security Labs Identifies MS Smart App Control and SmartScreen Weaknesses](https://australiancybersecuritymagazine.com.au/elastic-security-labs-identifies-ms-smart-app-control-and-smartscreen-weaknesses/) - Elastic Security Labs researchers have discovered a series of weaknesses in Microsoft Windows Smart App Control and SmartScreen. The company says understanding these weaknesses will allow defenders to focus their detection engineering on key coverage gaps. Notable details about the weaknesses include; Windows Smart App Control and SmartScreen have several design weaknesses that allow attackers - [CrowdStrike Releases Global Outage Root Cause Analysis](https://australiancybersecuritymagazine.com.au/crowdstrike-releases-global-outage-root-cause-analysis/) - CrowdStrike has released a Root Cause Analysis (RCA) report detailing what caused the July 19, 2024, systems crash that caused global outages. As part of regular operations, CrowdStrike released a content configuration update (via channel files) for the Windows sensor that caused the system crash. "As of 8:00 p.m. EDT on July 29, 2024, around - [Southern Cross Cables Announces Shore-End Monitoring on NZ Subsea Network](https://australiancybersecuritymagazine.com.au/southern-cross-cables-announces-shore-end-monitoring-on-nz-subsea-network/) - Deep-tech fibre sensing company FiberSense and subsea cable provider Southern Cross Cable Network (SX) have announced an expansion of their relationship with the implementation of FiberSense's Digital Marine subsea cable monitoring capability across SX's New Zealand shore-end infrastructure. The state-of-the-art implementation provides 24x7 monitoring of both shore-ends (from cable landing station to first repeater) and - [Huntress Teams up With CyberCert to Improve SME Cyber Resilience](https://australiancybersecuritymagazine.com.au/huntress-teams-up-with-cybercert-to-improve-sme-cyber-resilience/) - Huntress has entered into a strategic collaboration with CyberCert, the online certification issuer of the SMB1001 cybersecurity standard. The collaboration aims to deliver the cybersecurity standard via the Huntress partner ecosystem to businesses in Australia to increase their overall cyber resilience. Headed up by Huntress Asia Pacific Regional Director Reece Appleton and CyberCert Co-Founder and - [Series Insight - Bugcrowd’s future plans for growth and expansion throughout the Asia Pacific](https://australiancybersecuritymagazine.com.au/series-insight-bugcrowds-future-plans-for-growth-and-expansion-throughout-the-asia-pacific/) - Hot on the heels of Bugcrowd recently achieving Unicorn status, following their recent USD $102 million fund raise, Bugcrowd's CEO Dave Gerry and founder and Chief Strategy Officer, Casey Ellis outline Bugcrowd’s vision for the future and plans for growth and expansion throughout the Asia Pacific region in 2024/5 and beyond. Dave Gerry has been - [Scammers Using Generative AI in Identity Attacks and Fraud](https://australiancybersecuritymagazine.com.au/scammers-using-generative-ai-in-identity-attacks-and-fraud/) - Threat actors are using generative AI to fuel identity attacks and fraud, according to a new report released last week by Transmit Security. The report, The GenAI-Fueled Threat Landscape: A Dark Web Research Report by Transmit Security, is the result of continuous investigation by a team of fraud analysts in the Transmit Security Research Lab - [Global Spate of Mysterious Shopify Credit Card Charges](https://australiancybersecuritymagazine.com.au/global-spate-of-mysterious-shopify-credit-card-charges/) - Small charges from Shopify-charge.com are appearing on credit card statements worldwide. The charges appear to originate from a legitimate Shopify site, but many affected users claim never to have used their cards on Shopify. The spate of charges, often for USD0 or USD1, has led to speculation that these charges may be related to a - [Cybersecurity risks becoming a Token Ministry](https://australiancybersecuritymagazine.com.au/cybersecurity-becomes-a-token-ministry/) - By Staff Writer Australian Prime Minister Anthony Albanese announced his anticipated Cabinet reshuffle on Sunday, July 28, 2024. He named Tony Burke MP the new Minister for Cybersecurity, albeit also the Minister for Immigration, Home Affairs, Arts, and Leader of the House. With this scale of responsibilities on Burke, plans by demoted Minister Clare O'Neil, - [Tenable Highlights Google Cloud Platform Vulnerability](https://australiancybersecuritymagazine.com.au/tenable-highlights-google-cloud-platform-vulnerability/) - Tenable has discovered a ConfusedFunction vulnerability in the Google Cloud Platform (GCP). The company says the vulnerability involves the Google's Cloud Function serverless compute service and its Cloud Build CI/CD pipeline service. It says Google has remediated ConfusedFunction for future Cloud Build accounts. However, existing Cloud Build instances remain at risk, with immediate evasive action - [Dragos Releases Intelligence Briefing on FrostyGroup ICS Malware](https://australiancybersecuritymagazine.com.au/dragos-releases-intelligence-briefing-on-frostygroup-ics-malware/) - Dragos has released a new intelligence brief titled Impact of FrostyGoop ICS Malware on Connected OT Systems, summarising the operational technology threat and attack information gleaned from analysing the malware. In April 2024, FrostyGoop, an ICS malware, was discovered in a publicly available malware scanning repository. FrostyGoop can target devices communicating over Modbus TCP to - [Outage on Windows due to Crowdstrike update](https://australiancybersecuritymagazine.com.au/outage-on-windows-due-to-crowdstrike-update/) - Updated 24 July Crowdstrike has released a Preliminary Post Incident Review (PIR): Content Configuration Update Impacting the Falcon Sensor and the Windows Operating System (BSOD) What Happened? On Friday, July 19, 2024 at 04:09 UTC, as part of regular operations, CrowdStrike released a content configuration update for the Windows sensor to gather telemetry on possible - [Nozomi Embeds Security Sensor in Mitsubishi Programmable Logic Controllers](https://australiancybersecuritymagazine.com.au/nozomi-embeds-security-sensor-in-mitsubishi-programmable-logic-controllers/) - OT and IoT security company Nozomi Networks has announced the industry's first OT and IoT security sensor that runs embedded in Mitsubishi Electric programmable logic controllers (PLC). A PLC is an industrial digital computer designed to automate manufacturing processes, ensuring high reliability and ease of programming. Widely used across various industries, PLCs improve operational efficiency - [Navigating the Future of Cybersecurity - Insights From AISA Canberra 2024](https://australiancybersecuritymagazine.com.au/navigating-the-future-of-cybersecurity-insights-from-aisa-canberra-2024/) - By Eoin O'Carroll, Solutions Engineering Manager for APJ at OPSWAT As a Solutions Engineer at OPSWAT, staying on top of emerging trends and technologies in cybersecurity becomes a professional responsibility and a personal passion. At the AISA Canberra 2024 event, many industry experts convened to discuss the latest developments and challenges shaping the cybersecurity landscape. - [MediSecure Concludes Investigation Into Cyber Attack](https://australiancybersecuritymagazine.com.au/medisecure-concludes-investigation-into-cyber-attack/) - MediSecure and its insolvency administrator, FTI Consulting, have ceased their investigation of a cyber attack in which a malicious third-party actor stole the personal and sensitive information, including contact and health information, of approximately 12.9 million Australians using the MediSecure prescription delivery service between March 2019 and November 2023. In a July 18, 2024, statement, - [Hacker Starts Selling Stolen Trello Details](https://australiancybersecuritymagazine.com.au/hacker-starts-selling-stolen-trello-details/) - Over fifteen million email addresses associated with Trello accounts have been put up for sale on the Breached hacking forum after they were stolen in January using an unsecured REST API. The leaked data includes email addresses and public Trello account information, including the user’s full name. Bad actors can then use this information in - [Report Reveals Fast Growing Recovery Costs Across Energy and Water Sectors](https://australiancybersecuritymagazine.com.au/report-reveals-fast-growing-recovery-costs-across-energy-and-water-sectors/) - Cybersecurity company Sophos has released its State of Ransomware in Critical Infrastructure 2024 report this week. It reveals that the median recovery costs for two critical infrastructure sectors, energy and water, quadrupled to USD3 million over the past year - four times higher than the global cross-sector median. The report also revealed that 49% of - [Navigating the Cyber Threat Landscape](https://australiancybersecuritymagazine.com.au/navigating-the-cyber-threat-landscape/) - By John Penn, Security Propositions Architect at BT The rapidly evolving cybersecurity threat landscape is not breaking news. Yet many organisations, for a multitude of reasons, such as budget constraints and skills shortages, aren't reaching the level of cyber maturity needed to be resilient in the current threat landscape. While making sure the proverbial front - [BlackBerry Unveils a Managed Detection & Response Service](https://australiancybersecuritymagazine.com.au/blackberry-unveils-a-managed-detection-response-service/) - Cyber company BlackBerry has launched a managed detection and response service called CylanceMDR Pro. The company says the service overcomes the operational burden facing security teams that must defend against increasingly sophisticated adversaries across expanding attack surfaces with limited resources and talent shortage constraints. CylanceMDR Pro is built on an AI-powered Open XDR platform. Its - [Telstra Fined For Failing to Perform Customer Authentication Checks](https://australiancybersecuritymagazine.com.au/telstra-fined-for-failing-to-perform-customer-authentication-checks/) - The Australian Communications and Media Authority (ACMA) has fined Telstra over AUD1.55 million after an investigation found it failed to perform required customer ID authentication processes, leaving thousands of Australians vulnerable to SIM-swap scams and other types of mobile fraud. The investigation found the telco did not use the required ID authentication processes for 168,000 - [The State of SaaS Security: Setting Priorities for 2025](https://australiancybersecuritymagazine.com.au/the-state-of-saas-security-setting-priorities-for-2025/) - Nearly 70 percent of enterprises in APAC are prioritizing investment in SaaS security by establishing dedicated teams to secure SaaS applications, according to... - [Cysurance to Offer Cyber Insurance to Sophos Australian Clients](https://australiancybersecuritymagazine.com.au/cysurance-to-offer-cyber-insurance-to-sophos-australian-clients/) - Risk mitigation company Cysurance is teaming up with Sophos to offer its financial cyber protection program in Australia. Cysurance certifies, warranties, and insures cybersecurity solutions for enterprise end-users. The company wants to reduce the frequency, severity, and business impact of cyber incidents through insurance policies. Cysurance says extending its offering already available to customers in - [ACSC Issues Advisory Warning of Chinese State Backed Cyber Threat](https://australiancybersecuritymagazine.com.au/acsc-issues-advisory-warning-of-chinese-state-backed-cyber-threat/) - The Australian Cyber Security Centre (ACSC) has issued an advisory warning about the threat posed to Australian networks by a state-sponsored cyber group based in the People’s Republic of China (PRC). The advisory, APT40, titled PRC MSS Tradecraft in Action, was issued on July 9, 2024, in conjunction with law enforcement and cybersecurity agencies in - [Industry Responds to Protective Security Policy Framework Directive](https://australiancybersecuritymagazine.com.au/industry-responds-to-protective-security-policy-framework-directive/) - The cybersecurity industry has responded to the Australian Government's Protective Security Policy Framework (PSPF) Direction 002-2024, issued on July 8, 2024. The directive requires Australian Government entities to identify and actively manage the risks associated with vulnerable technologies they manage for themselves and others. "We applaud this great initiative from the Department of Home Affairs - [LexisNexis Risk Solutions Brings Cloud Hosting to the Australian Market](https://australiancybersecuritymagazine.com.au/lexisnexis-risk-solutions-brings-cloud-hosting-to-the-australian-market/) - LexisNexis Risk Solutions has rolled out its first Australian cloud hosting facility to support easy access to localised risk orchestration services. The technology behind the cloud hosting service delivers reduced latency, improved load time and response rate and simplified compliance procedures through access to LexisNexis RiskNarrative, which allows businesses to integrate multiple information sources. Organisations - [ASD Inks Agreement with Amazon Web Services for Top Secret Cloud](https://australiancybersecuritymagazine.com.au/asd-inks-agreement-with-amazon-web-services-for-top-secret-cloud/) - The Australian Government will spend at least AUD2 billion over the next ten years to bolster the country's cyber capabilities after the Australian Signals Directorate (ASD) reached an agreement with Amazon Web Services (AWS) for it to deliver a top-secret cloud to the government. Under the terms of the agreement, AWS will establish a sovereign - [Rapid7 Completes Information Security Registered Assessors Program Assessment](https://australiancybersecuritymagazine.com.au/rapid7-completes-information-security-registered-assessors-program-assessment/) - Risk and threat detection company Rapid7 has completed a Information Security Registered Assessors Program (IRAP) assessment to the PROTECTED Level for key solutions within the Rapid7 Insight Platform. The solutions assessed are: InsightIDR, InsightVM, InsightAppSec, and InsightConnect. This achievement enables Australian Government agencies requiring PROTECTED level controls to access Rapid7’s security solutions, which encompass vulnerability - [Cognitio Appoints Two New Advisory Board Members](https://australiancybersecuritymagazine.com.au/cognitio-appoints-two-new-advisory-board-members/) - Brisbane-based cyber resilience and data insight startup Cognitio Digital has appointed two new members to its advisory board. The new members are Anne Brown, most recently the Deputy Secretary and Deputy CEO of the Australian Criminal Intelligence Commission (ACIC), who is responsible for information systems, information security, and all corporate functions. Also appointed is James - [NTT DATA Appoints David McKeering as ANZ CEO](https://australiancybersecuritymagazine.com.au/nnt-data-appoints-david-mckeering-as-anz-ceo/) - NTT DATA has appointed David McKeering as its new Australia and New Zealand CEO. In his new role, McKeering will steer and grow the local NTT DATA subsidiaries. "Building meaningful relationships is a top priority for me," he said on LinkedIn today. "I am really looking forward to working closely with the NTT DATA team - [Deepfake Technology an Increasing Concern for Australian Businesses](https://australiancybersecuritymagazine.com.au/deepfake-technology-an-increasing-concern-for-australian-businesses/) - Fresh research by ISMS.online has found that almost 25% of Australian businesses have experienced a deepfake information security incident within the last 12 months and sophisticated deepfake technology now allows threat actors to facilitate business email compromise style attacks. The ISMS.online State of Information Security Australia Snapshot surveyed 506 information security leaders across ten sectors, - [Qualys Flags Major OpenSSH Vulnerability](https://australiancybersecuritymagazine.com.au/qualys-flags-major-openssh-vulnerability/) - The Qualys Threat Research Team has uncovered a significant vulnerability discovered in OpenSSH, a network communications tool that is widely used on Unix-like systems, including macOS and Linux. Qualys says the discovery is the biggest vulnerability since log4shell and if OpenSSH is used in an organisation's network, it's high likely they're at risk. "This vulnerability, - [Australian SMEs Lack Visibility in Business Processes & Infrastructure Automation](https://australiancybersecuritymagazine.com.au/australian-smes-lack-visibility-in-business-processes-infrastructure-automation/) - IT management solutions provider ManageEngine has released its Digital Intensity in Australia Study, which shows that small and medium-sized enterprises (SMEs) in Australia have insufficient visibility into business processes and infrastructure automation. SMEs in Australia are shifting to modern technology infrastructure to maintain their competitive edge. However, this surge in digital intensity poses visibility challenges - [Australian Organisations Top Global Data Breach Charts](https://australiancybersecuritymagazine.com.au/australian-organisations-top-global-data-breach-charts/) - Research by Rubrik Zero Labs has found that Australian organisations experience among the highest data breach rates in the world, and nearly all Australian organisations that fell victim to a ransomware event paid attackers to recover data or stop the attack. These are among the findings in Rubrik Zero Lab’s new The State of Data - [Home Affairs Announces Funding for Health Sector Threat Intelligence Platform](https://australiancybersecuritymagazine.com.au/home-affairs-announces-funding-for-health-sector-threat-intelligence-platform/) - The Department of Home Affairs and the Health Sector Information Sharing and Analysis Centre (ISAC) Acceleration Grants Program will deliver a grant of up to AUD6.423 million over three years to establish an ISAC to support industry-to-industry threat intelligence sharing in the health sector. ISACs provide an intelligence-sharing platform where participants interact and share information - [Report Finds Cyber Maturity Still a Problem Across Businesses](https://australiancybersecuritymagazine.com.au/report-finds-cyber-maturity-still-a-problem-across-businesses/) - Cybersecurity company Commvault has released its 2024 Cyber Recovery Readiness Report, which tackles the question of what businesses can do to be more resilient to cyberattacks. In collaboration with research firm GigaOm, Commvault surveyed 1,000 security and IT respondents across 11 countries. Commvault and GigaOm pinpointed five key capabilities, also called resiliency markers, that, when - [TeamT5 Issues Alert on Palo Alto Vulnerability](https://australiancybersecuritymagazine.com.au/teamt5-issues-alert-on-palo-alto-vulnerability/) - Cybersecurity company TeamT5 has released mitigation and response guidelines to vulnerability CVE-2024-340 in Palo Alto Networks PAN-OS software. Affected products are PAN-OS 10.2, PAN-OS 11.0, and PAN-OS 11.1 firewalls configured with GlobalProtect gateway or GlobalProtect portal (or both). CVE-2024-3400 is an arbitrary file creation vulnerability in the GlobalProtect portals of PAN-OS software that will allow - [CSO Group to Merge With xAmplify](https://australiancybersecuritymagazine.com.au/cso-group-to-merge-with-xamplify/) - Australian cyber security business CSO Group will merge with automation systems and artificial intelligence integrator xAmplify. Once complete, the merged business will deliver digitally advanced AI, automation and cyber solutions to over 110 enterprise and government organisations across Australia, spanning industries such as defence, federal and state government, energy, financial services, health, logistics, retail, construction - [Adaptive Shield Appoints Regional Director to Spearhead ANZ Market Push](https://australiancybersecuritymagazine.com.au/adaptive-shield-appoints-regional-director-to-spearhead-anz-market-push/) - SaaS security company Adaptive Shield has appointed Kendal Watt as its Australia and New Zealand regional director to lead its expansion into those markets. The company says the launch of operations in Australia and New Zealand will help meet the growing demand for SaaS security as businesses increase their investment in business-critical applications. Expanding our - [ACMA Calls Out Symbio Over Phone Scam Rules](https://australiancybersecuritymagazine.com.au/acma-calls-out-symbio-over-phone-scam-rules/) - The Australian Communications and Media Authority (ACMA) has ordered telcos Symbio Wholesale Pty Limited and Symbio Networks Pty Ltd to comply with Australia's phone scam rules after an investigation found they breached information-sharing and reporting obligations. Symbio Wholesale failed to promptly share information about scam calls with other telcos and the ACMA on multiple occasions. - [CSIRO Digital Technology and AI Course Available to SMEs](https://australiancybersecuritymagazine.com.au/csiro-digital-technology-and-ai-course-available-to-smes/) - The CSIRO is offering small to medium enterprises (SMEs) access to a free ten-week online program focused on digital technologies and artificial intelligence. CSIRO's Innovate to Grow: Digital Technologies and Artificial Intelligence program connects businesses working on solutions in digital technologies and AI with knowledge, resources, and mentors to learn how to advance their project - [Federally Funded CPD For Medicos to Ward Off Cyber Criminals](https://australiancybersecuritymagazine.com.au/federally-funded-cpd-for-medicos-to-ward-off-cyber-criminals/) - The Australian Medical Association (AMA) and Cyber Wardens, a federally funded initiative of the Council of Small Business Organisations of Australia (COSBOA), have joined forces to warn small medical clinics and practices they are just as vulnerable to cybercrime as big companies such as Medibank. Ransomware and data breaches are among the most significant threats, - [Operational Technology Systems Face Rising Cyber Risks](https://australiancybersecuritymagazine.com.au/operational-technology-systems-face-rising-cyber-risks/) - A new report by Dragos Inc. has highlighted that sophisticated threat groups and hacktivists have demonstrated a capacity to breach critical infrastructure networks and disrupt operational technology (OT) systems. Dragos says this marks a pivotal shift for Australian organisations. The report, Australian 2023 OT Cybersecurity Year in Review, provides an overview of the significant cybersecurity - [ANZ Makes ConnectID Available to its Customers](https://australiancybersecuritymagazine.com.au/anz-makes-connectid-available-to-its-customers/) - The identity verification firm Australian Payments Plus is making its digital identity product, ConnectID, available to ANZ Plus customers. Instead of providing proof of identity documents, ANZ Plus customers can now ask a participating business to verify them using the information already held by the bank. ANZ Plus refers to the bank's everyday banking portfolio, - [Australian Digital Health Agency to Hold Information Session in Canberra](https://australiancybersecuritymagazine.com.au/australian-digital-health-agency-to-hold-information-session-in-canberra/) - The Australian Digital Health Agency will hold an information session for stakeholders and potential partners to learn more about its vision for national digital health infrastructure. The information session will be held at the Hellenic Club in Canberra on July 15, 2024. Chief Digital Officer Peter O'Halloran said the information session will allow the sector - [PEN-200 Boot Camps to Start in Australia and New Zealand](https://australiancybersecuritymagazine.com.au/pen-200-boot-camps-to-start-in-australia-and-new-zealand/) - Tesserent Academy is partnering with OffSec to provide PEN-200: Penetration Testing with Kali Linux (OSCP Certification) in Australia and New Zealand. PEN-200 training is designed for existing working professionals in IT and software development who are keen to secure a role in penetration testing, as well as those in the first couple of years of - [Australian SME's Expected to Increase AI Adoption Rate](https://australiancybersecuritymagazine.com.au/australian-smes-expected-to-increase-ai-adoption-rate/) - Amid the rapid rise of artificial intelligence tools, new figures have revealed 60% of all Australian businesses are already using or planning to integrate AI into their operations over the next two years. An independent survey commissioned by business loan comparison platform Small Business Loans Australia revealed the figures. The survey questioned 205 directors and - [New Report Reveals Government Ministers are Disengaged on FOI](https://australiancybersecuritymagazine.com.au/new-report-reveals-government-ministers-are-disengaged-on-foi/) - Monash University is launching a report this week that addresses the culture and attitudes towards freedom of information (FOI). It examines key aspects of FOI culture and practices, proposing significant reforms to the FOI system. Researchers undertook 377 surveys as well as interviews with 257 individuals at 96 agencies from hospitals, government departments, statutory agencies, - [New AI-Powered Platform Streamlines Employee Onboarding Process](https://australiancybersecuritymagazine.com.au/new-ai-powered-platform-streamlines-employee-onboarding-process/) - Identity security company SailPoint has launched an AI-powered onboarding application. SailPoint says it automates access, reduces risk, and is a critical step towards securing the modern enterprise. SailPoint says most organisations have hundreds to thousands of applications, and onboarding those applications into an identity security solution can be costly and time-consuming, particularly if the organisation - [Free ChatGPT on Apple Devices Sparks Security Concerns](https://australiancybersecuritymagazine.com.au/free-chatgpt-on-apple-devices-sparks-security-concerns/) - Apple's announcement this week that ChatGPT will (it appears) be free on iPhones, iPads and Macs has sparked concerns in some quarters about the threat of an unacceptable security violation, says Mantel Group's Cybersecurity Leader, Nick Ellsmore. He says the good news is that organisations, which are already struggling with peripheral devices poking holes in - [Rubrik Appoints David Rajkovic as ANZ MD](https://australiancybersecuritymagazine.com.au/rubrik-appoints-david-rajkovic-as-anz-md/) - Zero trust data company Rubrik has appointed David Rajkovic as its Sydney-based Managing Director for Australia and New Zealand. Rajkovic brings almost two decades of experience from the partner and vendor sides of the channel. He started his career as a field engineer and solution architect, working at companies like Com Tech and Dimension Data, - [Call for More Australian Government Cybersecurity Funding](https://australiancybersecuritymagazine.com.au/call-for-more-australian-government-cybersecurity-funding/) - A recent poll conducted by exposure management business Tenable shows that 79% of Australian IT and cybersecurity professionals think the Australian government could do more, including boosting funding, to reduce cybersecurity risks. The data, collected in partnership with Pure Profile, comes from a poll of over 200 IT and cybersecurity leaders across Australia's insurance, banking, - [Cloud Ready Solutions Inks Distribution Agreement With Nimesa](https://australiancybersecuritymagazine.com.au/cloud-ready-solutions-inks-distribution-agreement-with-nimesa/) - Backup and disaster recovery solutions provider Cloud Ready Solutions has sealed a new distribution agreement with Nimesa, a provider of AWS-native application recovery platforms. The deal makes advanced, air-gapped cross-region full-stack disaster recovery solutions available to businesses in Australia, New Zealand, and the Pacific Islands. Nimesa's platform offers a suite of features, including air-gapped and - [Rachna Kumar Appointed ExtraHop's ANZ Senior Channel Sales Manager](https://australiancybersecuritymagazine.com.au/rachna-kumar-appointed-extrahops-anz-senior-channel-sales-manager/) - Cloud-native network detection and response company ExtraHop has appointed Rachna Kumar as the company’s Senior Channel Sales Manager for Australia and New Zealand. Kumar will be responsible for managing ExtraHop’s channel and managed security service provider business, including sales and solutions strategies and market development. She is also tasked with further developing all alliance, reseller, - [OAIC Launches Data Breach Legal Action Against Medibank](https://australiancybersecuritymagazine.com.au/oaic-launches-data-breach-legal-action-against-medibank/) - Medibank Private is off to court after the Australian Information Commissioner (OAIC) launched Federal Court civil proceedings this week concerning a data breach at Medibank and its subsidiary, ahm. The OAIC alleges that from March 2021 to October 2022, Medibank seriously interfered with the privacy of 9.7 million Australians by failing to take reasonable steps - [Rebecca Roberts Appointed New LogRhythm Regional Sales Manager](https://australiancybersecuritymagazine.com.au/rebecca-roberts-appointed-new-logrhythm-regional-sales-manager/) - IT security company LogRhythm has appointed Ivanti's former Senior Enterprise Director, Rebbeca Roberts, as Regional Sales Manager for Australia and New Zealand. Roberts will be responsible for strategic account development, partner and channel strategy, and customer support operations in the region. "Rebbeca is widely respected as an exceptional account manager, sales and team builder and - [ACMA Update Reveals the Ongoing Fight to Disrupt Scammers](https://australiancybersecuritymagazine.com.au/acma-update-reveals-the-ongoing-fight-to-disrupt-scammers/) - The Australian Communications and Media Authority (ACMA) has released a telemarketing and spam update detailing its efforts to disrupt scammers in the January - March 2024 quarter. It says that it has two anti-scam investigations in progress, three ongoing spam investigations, and 20 court-enforceable undertakings in place. "We continue to take the fight to scammers - [ACSC Alert for Check Points' Quantum Security Gateway Device Vulnerability](https://australiancybersecuritymagazine.com.au/acsc-alert-for-check-points-quantum-security-gateway-device-vulnerability/) - The Australian Cyber Security Centre (ACSC) says it is tracking a vulnerability in Check Points' Quantum Security Gateway devices and is aware of active exploitation of vulnerable instances. Check Point has made available a preventative hotfix for CVE-2024-24919 and says its task force continues investigating attempts to gain unauthorised access to VPN products used by - [Technology Adoption Increases Agricultural Sector Cyber Risk](https://australiancybersecuritymagazine.com.au/technology-adoption-increases-agricultural-sector-cyber-risk/) - A new GlobalData report says the agricultural sector's adoption of technologies like robotics, artificial intelligence (AI), and the Internet of Things (IoT) is helping tackle various challenges, including labour shortages and climate change. However, this digitalisation also puts the sector at risk of cyberattacks. The report, Cybersecurity in Agriculture, reveals how food suppliers and distributors - [ACSC Alert for Snowflake Customers](https://australiancybersecuritymagazine.com.au/acsc-alert-for-snowflake-customers/) - The Australian Cyber Security Centre (ACSC) is warning of increased cyber threat activity regarding Snowflake customers, saying Australian organisations who utilise Snowflake should reset credentials for active accounts, disable non-active accounts, enable Multi-Factor Authentication (MFA), and review user activity. Snowflake says it recently observed and is investigating an increase in cyber threat activity targeting some - [New Commonwealth Bank Pilot Trial Improves Funds Transfer Security](https://australiancybersecuritymagazine.com.au/new-commonwealth-bank-pilot-trial-improves-funds-transfer-security/) - The Commonwealth Bank of Australia (CBA) will start using its NameCheck technology to help validate bank account details used in international payments to Australia after inking a deal with J.P. Morgan to trial its private peer-to-peer information and capability exchange technology. On May 29, 2024, CBA said it would start a pilot trial, sharing limited - [Trend Micro Secures PROTECTED Security Status for its Vision One Platform](https://australiancybersecuritymagazine.com.au/trend-micro-secures-protected-security-status-for-its-vision-one-platform/) - Trend Micro Incorporated has completed its Information Security Manual PROTECTED level for the Trend Micro Vision One Platform, enabling Australian Government agencies with the PROTECTED level requirement to now use the platform. The assessment was conducted by an independent third party under the Australian Information Security Registered Assessors Program (IRAP) and is the latest in - [Research Reveals a Cyber Disconnect Between OT and IT Teams](https://australiancybersecuritymagazine.com.au/research-reveals-a-cyber-disconnect-between-ot-and-it-teams/) - Research by Palo Alto Networks has found that the disconnect between operational technology (OT) and IT teams is a security concern for Australian businesses. The same research reveals that Australian industrial organisations are the fourth most targeted globally, with 82% experiencing a cyberattack in the past year. Palo Alto Networks surveyed 1,979 OT and IT - [Zscaler ThreatLabz Report Finds Australia is a Phishing Hotspot](https://australiancybersecuritymagazine.com.au/zscaler-threatlabz-report-finds-australia-is-a-phishing-hotspot/) - Cloud security company Zscaler has released the Zscaler ThreatLabz 2024 Phishing Report, which finds that AI-driven phishing attacks increased 60% in 2023 and that Australia was one of the most targeted countries. The report's data was based on two billion blocked phishing transactions across the Zscaler Zero Trust Exchange platform, between January and December 2023, where Australia - [Uncertainty in Supplier Cybersecurity Strategies Undercuts Deals - Report](https://australiancybersecuritymagazine.com.au/uncertainty-in-supplier-cybersecurity-strategies-undercuts-deals-report/) - New LogRhythm research suggests that 81% of security executives in Australia and New Zealand view their cybersecurity defence positively. However, four in ten companies have lost deals due to customers' lack of confidence in their strategy in the last 18 months. LogRhythm's report, 2024 State of the Security Team: Navigating Constant Change Research Report, released this - [Gareth Russell Takes on APAC CTO Role at Commvault](https://australiancybersecuritymagazine.com.au/gareth-russell-takes-on-apac-cto-role-at-commvault/) - Commvault has appointed Gareth Russell to its newly created role of Field Chief Technology Officer, Security for Asia Pacific, which the company says reflects its commitment to extending its deep technical expertise in data security and cyber resilience to more customers and partners in the region A key priority for Russell in his new role - [Securing Digital Identities Key to Fighting Cybercrime](https://australiancybersecuritymagazine.com.au/securing-digital-identities-key-to-fighting-cybercrime/) - According to the recent National Scam Report, Australians lost AUD2.74 billion to scams in 2023 as identity shapes up as the new cybersecurity frontline. The majority of losses (73.6%) were attributed to five scams: AUD1.3 billion from investment scams, AUD256 million from remote access scams, AUD201.1 million from romance scams, AUD137.4 million from phishing and - [Illumio and Netskope Announce Zero Trust Partnership](https://australiancybersecuritymagazine.com.au/illumio-and-netskope-announce-zero-trust-partnership/) - Zero-trust segmentation company Illumio and secure access service edge business Netskope have announced a zero-trust partnership that combines zero-trust segmentation (ZTS) and zero-trust network access (ZTNA) to protect against breaches and build cyber resilience. The new partnership integrates Illumio ZTS with Netskope ZTNA Next via the Netskope cloud exchange platform, allowing network and security teams to create zero-trust policies - [ACMA to Prosecute Optus over 2022 Data Breach](https://australiancybersecuritymagazine.com.au/acma-to-prosecute-optus-over-2022-data-breach/) - The Australia Communications and Media Authority (ACMA) has filed proceedings in the Federal Court against Optus Mobile Pty Ltd (Optus). ACMA alleges that during a data breach which occurred between September 17-20, 2022, Optus failed to protect the personal information of its customers from unauthorised interference or unauthorised access as required under the Telecommunications (Interception and Access) - [Western Sydney University hacked but no ransom demands](https://australiancybersecuritymagazine.com.au/western-sydney-university-hacked-but-no-ransom-demands/) - Western Sydney University has notified "approximately 7,500 individuals" that have been impacted by an intrusion into its IT network. In a statement, the university reported, "The intrusion was identified by the University in January 2024 and quickly shut down. The University has been investigating the impact of the unauthorised access and investing in additional remediation - [ATO Says Proof of Purchase Key to Successful Refund Claims](https://australiancybersecuritymagazine.com.au/ato-says-proof-of-purchase-key-to-successful-refund-claims/) - The Australian Tax Office says retaining records of work-related expenses is essential to making a successful refund claim and has issued a heads up to taxpayers about this as the end of the financial year nears. The ATO says there are a couple of important things to remember. Firstly, having records of work-related expenses is a must. - [New IAG Cyber Insurance Product Targeting SMEs](https://australiancybersecuritymagazine.com.au/new-iag-cyber-insurance-product-targeting-smes/) - Insurer IAG has launched a specialist cyber underwriting agency called 'Cylo backed by CGU' to help strengthen the cyber resiliency of small businesses in Australia while providing insurance protection against cyber-attacks. Saying the agency will provide "a unique secure and insure offering which embeds cyber security within a cyber insurance policy, providing critical protection in - [Sekuro Appoints its First Federal Government Security Advisor](https://australiancybersecuritymagazine.com.au/sekuro-appoints-its-first-federal-government-security-advisor/) - Cyber security and digital resilience company Sekuro has appointed Scott Waters as its first federal government security advisor. As part of a strategic push by Sekuro to address rising cyber threats against the public sector, Waters will spearhead efforts to enhance resilience within federal agencies, with a particular focus on Australia’s critical infrastructure. Waters has - [AUCloud Ramps Expands its Senior Leadership Team](https://australiancybersecuritymagazine.com.au/aucloud-ramps-expands-its-senior-leadership-team/) - Cybersecurity service provider AUCloud has expanded its senior leadership team after the recent acquisition of three cybersecurity businesses. Joshua Mann has joined AUCloud as Chief Operating Officer, while the company's new Head of Cyber Security is David Milin. Geoff Hughes, previously Founder and Managing Director of Venn, will become AUCloud's South Australia and Queensland General Manager. “Following the - [Cyber Attack Targets MediSecure](https://australiancybersecuritymagazine.com.au/cyber-attack-medisecure/) - Electronic prescription provider MediSecure has fallen victim to a cyber security incident potentially putting the health data of an unknown number of people at risk. In a May 16, 2024, social media posting, the Australian National Security Coordinator stated, “Yesterday afternoon I was advised by a commercial health information organisation that it was the victim - [Avast Report Highlights Rise of Social Engineering Threats](https://australiancybersecuritymagazine.com.au/avast-report-highlights-rise-of-social-engineering-threats/) - Social engineering threats account for most individual cyber threats, according to the latest quarterly Avast Threat Report, which examines the threat landscape from January to March 2024. It found scams, phishing, and malvertising accounted for 90% of all threats on mobile devices and 87% of desktop threats. Avast's threat research team discovered a significant spike in - [Blind or Blindsided? Why Securing Your Top SaaS Apps is Not Enough](https://australiancybersecuritymagazine.com.au/blind-or-blindsided-why-securing-your-top-saas-apps-is-not-enough/) - Cybersecurity is always about prioritisation and resource allocation. Few companies in the world can implement every security tool available and protect themselves from every threat. Security teams are tasked with making risk management choices, which typically follow a comprehensive cybersecurity risk assessment. It’s no surprise, therefore, that many enterprises only look at their most important - [Cyber Expert Says Budget Investment a Matter of National Importance](https://australiancybersecuritymagazine.com.au/cyber-expert-says-budget-investment-a-matter-of-national-importance/) - Cybersecurity company Armis says the 2024/25 Federal Budget investments in cyber not only highlights the need for local organisations to protect their data but is also a matter of national security and impacts economic performance. Armis Australia and New Zealand Channel Director Evan Thomas says the threat of cyber warfare further threatens Australia's innovation performance, which is already lagging - [AUSCERT Says Budget Funding Will Help Bolster Cyber Resilience](https://australiancybersecuritymagazine.com.au/auscert-says-budget-funding-will-help-bolster-cyber-resilience/) - Australia's computer emergency response team, AUSCERT, says the 2024/25 Federal Budget continues the government's focus on equipping its departments and agencies with the resources to strengthen their cyber-resilience. "Government departments and agencies, including the Australian Tax Office, Australian Prudential Regulatory Authority, Australian Securities and Investment Commission, and the Department of Parliamentary Services and independent statutory - [Tech Council says Budget Investment in Tech Sector is Vital to Australia's Future](https://australiancybersecuritymagazine.com.au/tech-council-says-budget-investment-in-tech-sector-is-vital-to-australias-future/) - The Tech Council of Australia says initiatives announced in the 2024-25 Federal Budget will boost investment in innovative industries, improve the tech workforce pipeline, and accelerate the government's digital transformation. However, the council says there's still more to do to lift Australia's productivity growth. "Australia's tech sector is vital to the future of our economy - [Tanium Appoints New ANZ Regional Vice President](https://australiancybersecuritymagazine.com.au/tanium-appoints-new-anz-regional-vice-president/) - Real-time cloud-based endpoint management company Tanium has appointed Paul Tuffs as its Australia and New Zealand Regional Vice President. Tuffs will spearhead the company's expansion efforts in the region. "The intersection between AI, IT operations, and security is an exciting space to be in right now," said Tuffs. "With so many high-profile breaches in Australia - [HAT Distribution Deal Makes Essential Eight Assessment Easier for Small Businesses](https://australiancybersecuritymagazine.com.au/hat-distribution-deal-makes-essential-eight-assessment-easier-for-small-businesses/) - Australian technology distributor HAT Distribution has entered into a distribution agreement with UK-based CyberSmart. The partnership will provide businesses in Australia with Essential Eight assessment tools and year-round assurance. CyberSmart's products are designed to help businesses attain and maintain government-approved cybersecurity standards. The Essential Eight, a series of baseline cybersecurity mitigation strategies and practices, is - [Qualys Platform Upgrade Bolsters EASM Capabilties](https://australiancybersecuritymagazine.com.au/qualys-platform-upgrade-bolsters-easm-capabilties/) - Qualys has released CyberSecurity Asset Management 3.0, an expansion of the Enterprise TruRisk Platform. This update integrates its leading vulnerability assessment capability into its External Attack Surface Management (EASM) solution. Qualys CyberSecurity Asset Management 3.0 extends its leading asset discovery for all types of environments, including an EASM engine for real-time and accurate assessment of - [YubiKey 5.7 Firmware Released](https://australiancybersecuritymagazine.com.au/yubikey-5-7-firmware-released/) - Yubico has announced the upcoming release of YubiKey 5.7 firmware for the YubiKey 5 Series, Security Key Series and Security Key Series - Enterprise Edition. Yubico says the update reinforces its commitment to providing secure, simple, and scalable authentication solutions and setting the gold standard for phishing-resistant multi-factor authentication. Security keys with firmware 5.7 will be available to purchase in late - [Report Finds CISOs Struggle to Maintain Operational Security](https://australiancybersecuritymagazine.com.au/report-finds-cisos-struggle-to-maintain-operational-security/) - Dynatrace's latest CISO survey reveals alignment issues between Australian security teams and the C-suite are exposing organisations to increased cyber risk. 89% of CISOs say application security remains a blind spot, and the rise of AI-driven attacks and accelerated software delivery cycles is making it more difficult to protect organisations. This year's report, released on - [Nick Ellsmore to Lead Mantel Group's Cybersecurity Capabilities](https://australiancybersecuritymagazine.com.au/nick-ellsmore-to-lead-mantel-groups-cybersecurity-capabilities/) - Technology consultancy and software engineering company Mantel Group has hired cyber veteran and serial entrepreneur Nick Ellsmore to lead its cybersecurity capability. Mantel hopes to build its cyber capabilities to over 150 specialists within two years. Ellsmore takes over from Adam Durbin, who will move into the role of Chief Technology Officer. "There is no better person than Nick to - [NSW Police Make Arrest in Clubs NSW Data Breach](https://australiancybersecuritymagazine.com.au/nsw-police-make-arrest-in-clubs-nsw-data-breach/) - Cybercrime Squad detectives from NSW Police have charged a man with blackmail after investigating a data breach, alleging he threatened to share the personal details of over one million people. On May 1, 2024, officers attached to the State Crime Command’s Cybercrime Squad were alerted to a website that had published the personal information of - [Identity Verification and AI Challenge Australian Businesses](https://australiancybersecuritymagazine.com.au/identity-verification-and-ai-challenge-australian-businesses/) - The recently released Ping Identity Survey reveals that most businesses struggle with identity verification and are concerned about their ability to protect against AI. The report, based on responses from 100 Australian IT decision-makers and an additional 600 IT decision-makers from organisations of at least 500 people and USD100 million in revenues across the US, - [Sophos Ransomware Reports Finds Australians Pay Top Dollar](https://australiancybersecuritymagazine.com.au/sophos-ransomware-reports-finds-australians-pay-top-dollar/) - Sophos has released its annual State of Ransomware 2024 survey report, which found that the average ransom payment has increased by 297% in the last year. Australian organisations that paid the ransom reported an average payment of USD6 million, up from USD1.51 million in 2023 and more than USD2 million above the global average (USD3.96 - [Is Someone in Your Workplace Lying to You?](https://australiancybersecuritymagazine.com.au/is-someone-in-your-workplace-lying-to-you/) - By Kai Roer, Praxis Security Labs If you’re determined to be a criminal, then cybercrime is an understandable choice. AI- and GPT-based tools are easily available at low cost and are increasingly accessible to non-technical criminals. Rates of detection and criminal conviction are inadequate, and the low ‘costs of entry’ can make it a highly - [GitHub Releases Results of 2FA Requirements for Code Contributors](https://australiancybersecuritymagazine.com.au/github-releases-results-of-2fa-requirements-for-code-contributors/) - GitHub has released the early results of its two-factor authentication (2FA) requirements for code contributors on GitHub.com. The developer platform rolled out the requirements in 2023 to help secure developer accounts and prevent the next supply chain attack. "Though technology has advanced significantly to combat the proliferation of sophisticated security threats, the reality is that - [ACSC Issues Cisco ASA Device Alert](https://australiancybersecuritymagazine.com.au/acsc-issues-cisco-asa-device-alert/) - The Australian Cyber Security Centre (ACSC) has issued an alert to industry and partners after becoming aware of activity impacting Cisco ASA devices in Australia. After a customer raised a concern earlier this year, an investigation by Cisco’s Product Security Incident Response Team (PSIRT) and Cisco Talos found a previously unknown actor who had deployed - [Russian Threat Actor Targeting Windows Print Spooler Vulnerability](https://australiancybersecuritymagazine.com.au/russian-threat-actor-targeting-windows-print-spooler-vulnerability/) - A Russia-based threat actor, known as APT28 or Forest Blizzard, has recently been exploiting a vulnerability, CVE-2022-38028 , within the Windows Print Spooler service using malware called GooseEgg. "CVE-2022-38028 is an elevation of privilege vulnerability that is used as part of post-compromise activity," said Satnam Narang, Senior Staff Research Engineer at Tenable. "In this instance, - [Volt Rolls Rolls Out PayTo Payments Platform for Australian Retail Customers](https://australiancybersecuritymagazine.com.au/volt-rolls-rolls-out-payto-payments-platform-for-australian-retail-customers/) - Real-time payments platform Volt has launched its secure PayTo-based, one-click solution for its retail customers in Australia. PayTo is an instant digital payment system from the New Payments Platform that enables businesses to initiate real-time payments from their customers' bank accounts. This next-generation online digital payment solution simplifies customers' payment experiences and eliminates credit card - [Macquarie Government Added to Information Communications Technology Provider Arrangement Panel](https://australiancybersecuritymagazine.com.au/macquarie-government-added-to-information-communications-technology-provider-arrangement-panel/) - The Information Communications Technology Provider Arrangement (ICTPA) panel has added Macquarie Government to its roster of panellists. This will enable the Australian Defence Force to procure services directly from Macquarie Government, which is part of the ASX-listed Macquarie Technology Group. Australian defence and intelligence agencies will be able to leverage the Macquarie Government’s uniquely sovereign - [archTIS to deploy its Kojensi platform inside an Australian national security agency](https://australiancybersecuritymagazine.com.au/archtis-to-deploy-its-kojensi-platform-inside-an-australian-national-security-agency/) - Australian-based cyber technology Penten has awarded archTIS a AUD466,840 contract to provide Kojensi as part of a solution for an Australian national security agency. This contract is archTIS' first sale as a subcontractor to Penten. Kojensi is a multi-level security classified information sharing and document collaboration platform designed to protect and manage classified data. The - [Global Elections Bullseye for Nation-State Cyberattacks](https://australiancybersecuritymagazine.com.au/global-elections-bullseye-for-nation-state-cyberattacks/) - Armis is warning that global elections will be the largest attack vector for nation-state actors looking to cause mass disruption in 2024. Data from Armis’ second annual global cyberwarfare report, The Invisible Front Line: AI-Powered Cyber Threats Illuminate the Dark Side, show organisations and governments worldwide face critical threat levels from sophisticated nation-states and admittedly - [Bugcrowd’s New LLM Applications Offerings](https://australiancybersecuritymagazine.com.au/bugcrowds-new-llm-applications-offerings/) - Bugcrowd has expanded its AI Safety and Security Solutions by introducing AI Bias Assessments on its platform. This new service leverages the collective expertise of the crowd to ensure that enterprises and government bodies can implement Large Language Model (LLM) applications with safety, efficiency, and confidence. LLM applications, which operate on algorithmic models trained on - [Cybercrime Index ranks countries by cyber threat level](https://australiancybersecuritymagazine.com.au/cybercrime-index-ranks-countries-by-cyber-threat-level/) - Following three years of intensive research, an international team of researchers have compiled the first ever ‘World Cybercrime Index’, which identifies the globe’s key cybercrime hotspots by ranking the most significant sources of cybercrime at a national level. The Index, released today, shows that a relatively small number of countries house the greatest cybercriminal threat. - [Australian CIO Summit returns](https://australiancybersecuritymagazine.com.au/australian-cio-summit-returns/) - As media partners, MySecurity Media is excited to announce the Australian CIO Summit returns on July 22-23 at The Star Gold Coast, Queensland Australia. The Australian CIO Summit provides a platform that helps Australia's Chief Information Officers evaluate and partner with relevant suppliers and solution providers, while connecting innovative healthcare companies with these Chief Information strategists. This year, the CIO - [Draft Product Development Cybersecurity Handbook for IoT Product Manufacturers for Public Comment](https://australiancybersecuritymagazine.com.au/draft-product-development-cybersecurity-handbook-for-iot-product-manufacturers-for-public-comment/) - NIST has posted an initial public draft of Cybersecurity White Paper (CSWP) 33, Product Development Cybersecurity Handbook: Concepts and Considerations for IoT Product Manufacturers. This Product Development Cybersecurity Handbook describes broadly applicable considerations for developing and deploying secure IoT products across sectors and use cases. This handbook extends NIST’s work to consider the cybersecurity of IoT - [UTS cybersecurity skills and resilience grant](https://australiancybersecuritymagazine.com.au/uts-cybersecurity-skills-and-resilience-grant/) - Kyndryl Foundation has announced that the University of Technology Sydney (UTS) is one of 11 organisations from seven countries to receive Kyndryl Foundation’s inaugural grants. The fund aims to grow an inclusive cybersecurity workforce and make nonprofits more resilient from cyberattacks. The grant to UTS will be used to increase the accessibility of cybersecurity education - [Episode 394 - Automated pentesting in the cloud - visit Pentera at Booth B20, Hall 8 at GISEC Global 2024](https://australiancybersecuritymagazine.com.au/episode-394-automated-pentesting-in-the-cloud-visit-pentera-at-booth-b20-hall-8-at-gisec-global-2024/) - Pentera is an automated pentesting platform. Validate every attack surface in your network, and test continuously to maintain control over your true security posture. Be proactive in fixing vulnerabilities, misconfigurations, leaked credentials, and privileges before they are exploited. Your browser does not support the audio element. Download Now - [Women in STEM Ambassador Annual Review](https://australiancybersecuritymagazine.com.au/women-in-stem-ambassador-annual-review/) - The University of NSW has released the Australian Government Women in STEM Ambassador’s 2023 Annual Review. The breadth and depth of our work in 2023 is a testament to the team’s efforts and commitment to removing barriers to equity in science, technology, engineering, and mathematics. Highlights include: 1. Providing advice: Influence in public policy with - [Cyber attackers exploit known and unpatched vulnerabilities](https://australiancybersecuritymagazine.com.au/cyber-attackers-exploit-known-and-unpatched-vulnerabilities/) - An abundance of successful cyberattacks in the final quarter of 2023 resulted from threat actors leveraging known and exploitable vulnerabilities, according to Tenable. Telemetry data from Tenable’s Research Team found that 54% of devices affected by ‘CitrixBleed’ (aka CVE-2023-4966, the top vulnerability of Q4 2023) had not been remediated as of January 2024, more than - [Cyber Incident Reporting and Transatlantic Approaches](https://australiancybersecuritymagazine.com.au/cyber-incident-reporting-and-transatlantic-approaches/) - The US Department of Homeland Security (DHS) and European Commission’s Directorate General for Communications, Networks, Content, and Technology (DG CONNECT) have announced an initiative to compare cyber incident reporting elements that will inform cyber incident reporting requirements by the US, and European Union (EU) under the NIS 2 Directive. This transatlantic collaboration between the US - [ExtraHop in step of new Area Vice President](https://australiancybersecuritymagazine.com.au/extrahop-in-step-of-new-area-vice-president/) - ExtraHop has appointed Simon Howe as Area Vice President for Australia and New Zealand. On the heels of the company securing $100M in growth capital in January 2024, ExtraHop is planning for significant international expansion with a strong focus on Asia Pacific. Based in Sydney, Howe will be responsible for further charting the company’s ANZ presence and - [Signing of MOU between CI-ISAC Australia and Health ISAC](https://australiancybersecuritymagazine.com.au/signing-of-mou-between-ci-isac-australia-and-health-isac/) - Critical Infrastructure – Information Sharing and Analysis Centre (CI-ISAC) Australia is proud to announce the signing of a Memorandum of Understanding (MOU) on 20th March 2024, with the Global Health-ISAC. ISACs provide a trusted, not for profit, ecosystem for the sharing of cyber threat intelligence (CTI) between members and the partnership between the Critical Infrastructure - [Mastercard scales tokenised online checkout](https://australiancybersecuritymagazine.com.au/mastercard-scales-tokenised-online-checkout/) - To combat the increasing threat of card-not-present fraud, which saw Australians lose AU$608.1 million in 2023 according to AusPayNet data2, Mastercard has begun scaling its new tokenised and embedded online checkout experience which both enhances security for online transactions, while maintaining the convenience that consumers have come to appreciate from contactless payments in physical stores. - [AUCloud partners with Command Hub](https://australiancybersecuritymagazine.com.au/aucloud-partners-with-command-hub/) - AUCloud has announced a partnership with Command Hub. The platform is designed to assist Australian businesses and government agencies in navigating and managing their response during technical outages and cyber-attacks. The new CrisisHub platform provides a secure environment for all stakeholders of an organisation involved in responding to a crisis, offering a one stop shop - [Cyber Security in Local Government](https://australiancybersecuritymagazine.com.au/cyber-security-in-local-government/) - NSW local councils provide a wide range of essential services and infrastructure to their communities and are increasingly reliant on digital technologies. Councils need to manage cyber security risks to ensure their information, data and systems are appropriately safeguarded. Councils also need to be prepared to detect, respond and recover when a cyber security incident - [CBA’s payments screening](https://australiancybersecuritymagazine.com.au/cbas-payments-screening/) - Commonwealth Bank of Australia has invested in Global Screening Services (GSS), a UK-based RegTech company that specialises in payments screening. CBA has taken a minority shareholding in GSS as part of the company’s US$47 million Series A2 capital raising. CBA is GSS’s first significant, and to date only, Australian investor. Details of CommBank’s investment have - [Malicious Use Cases for AI](https://australiancybersecuritymagazine.com.au/malicious-use-cases-for-ai/) - Malicious use cases of artificial intelligence (AI) will most likely emerge from targeted deepfakes and influence operations, as revealed in the report, Adversarial Intelligence: Red Teaming Malicious Use Cases for AI from Recorded Future. The report also found more advanced use cases such as malware development and reconnaissance will benefit from advancements in generative AI. - [AUCloud’s $30M in Acquisitions](https://australiancybersecuritymagazine.com.au/auclouds-30m-in-acquisitions/) - AUCloud has announced that it has entered into binding agreements to acquire three strategically aligned businesses. AUCloud has entered into binding agreements for the acquisition of: PCG Cyber - a cyber security consultancy firm specialising in Australian Government security advice and operations. Venn IT – a Queensland and South Australia based MSP and professional consulting - [Tenable ExposureAI Enhancements](https://australiancybersecuritymagazine.com.au/tenable-exposureai-enhancements/) - Tenable has announced enhancements to ExposureAI, the generative AI capabilities and services within its Tenable One Exposure Management Platform. The new features enable users to quickly summarise relevant attack paths, ask questions of an AI assistant and receive specific mitigation guidance to act on intelligence and reduce risk. The platform’s generative AI-powered search and chat applications are fueled - [Zero Standing Privileges are a better and more secure fit for cloud native businesses](https://australiancybersecuritymagazine.com.au/zero-standing-privileges-are-a-better-and-more-secure-fit-for-cloud-native-businesses/) - We speak with Charles Chu, General Manager of Cloud Security at CyberArk in the lead up to his Australian visit in March 2024. CyberArk has advanced capabilities for securing access to cloud services and modern infrastructure for all users, based on the company’s risk-based intelligent privilege controls. The CyberArk Secure Cloud Access solution provides just-in-time - [Cybercriminals capitalise on business flaw: Human risk](https://australiancybersecuritymagazine.com.au/cybercriminals-capitalise-on-business-flaw-human-risk/) - Mimecast has announced the publication of its The State of Email and Collaboration Security 2024 (SOECS) report. According to the research, cyber threats are growing at an unprecedented pace, and the year ahead is fraught with cybercrime and incidents anticipated ahead of the busy election year where over 50 countries head to the polls. With - [$6.4m project to charge up Ionize](https://australiancybersecuritymagazine.com.au/6-4m-project-to-charge-up-ionize/) - Ionize has been awarded a Federal Government Grant through the Cooperative Research Centres Projects (CRC-P) Round 15 opportunity to deliver Project DFNDR: Adaptive Cyber Security for Defence and Critical Infrastructure SMEs. Project DFNDR will be delivered in partnership between Ionize, Cybermerc and the University of Canberra through a groundbreaking initiative dedicated to streamlining cyber threat - [New Head of Telstra Purple](https://australiancybersecuritymagazine.com.au/new-head-of-telstra-purple/) - Telstra has appointed John Ieraci as its new Head of Telstra Purple, Telstra’s technology services business. The promotion follows the appointment of his predecessor, Oliver Camplin-Warner, to Group Executive of Telstra Enterprise last month. In his 17 years working in Telstra’s enterprise business, John has held multiple leadership roles, most recently as Group Owner of - [HCLTech’s new Data and AI specialist in ANZ](https://australiancybersecuritymagazine.com.au/hcltechs-new-data-and-ai-specialist-in-anz/) - HCLTech has appointed Sharon White to the newly created role of AVP of Next Generation Data, Analytics and AI for Australia and New Zealand. Ms White will spearhead the company’s business advisory operations, further building on HCLTech’s data, analytics and AI capability. In her role, Ms White will focus on strengthening HCLTech’s presence amongst enterprises - [BICSI Integrates at Tech and Security Conference](https://australiancybersecuritymagazine.com.au/bicsi-integrates-at-tech-and-security-conference/) - Integrate and the Security Exhibition & Conference are set to take place at the International Convention Centre (ICC) Sydney from August 21st to 23rd. This year's edition promises to be a groundbreaking collaboration as BICSI South Pacific – the local ‘arm’ of the global association for advancement in the information and communications technology (ICT) community, - [Bugcrowd secures US$102 million to scale Crowdsourced Security Platform](https://australiancybersecuritymagazine.com.au/bugcrowd-secures-us102-million-to-scale-crowdsourced-security-platform/) - Led by General Catalyst, Bugcrowd has secured $102 million in strategic growth financing to scale its AI-powered crowdsourced security platform offerings globally. The additional capital enables Bugcrowd to accelerate growth across EMEA, APAC, and the United States, fund continued innovation into the Bugcrowd Platform, and leverage opportunities for strategic M&A, providing added value to clients, - [ManageEngine Revs Up with Check Point](https://australiancybersecuritymagazine.com.au/manageengine-revs-up-with-check-point/) - ManageEngine, the enterprise IT management division of Zoho Corporation, has announced the integration between Endpoint Central. The expanding mobile workforce has presented cybercriminals with more opportunities to leverage mobile devices for the exploitation of organisational networks through malicious activities. According to Check Point's 2023 Cyber Security Report, one in 10 organisations were hit by mobile malware in - [1m ‘Introduction to AI’ scholarships available to Australians](https://australiancybersecuritymagazine.com.au/1m-introduction-to-ai-scholarships-available-to-australians/) - CSIRO’s National AI Centre and Institute of Applied Technology Digital have partnered to make AI education easily accessible. Artificial intelligence (AI) ‘scholarships’ are now on offer to one million Australians, in a bid to increase the nation’s literacy of a technology estimated to be worth $4 trillion to the economy by the early 2030s. The free - [Investigating Ivanti Connect Secure VPN Exploitation](https://australiancybersecuritymagazine.com.au/investigating-ivanti-connect-secure-vpn-exploitation/) - Mandiant released new research today about its on-going investigation into the widespread Ivanti zero-day exploitation, revealing that the threat actor – currently tracked as UNC5325 – is using a combination of living-off-the-land (LotL) techniques to better evade detection, and deploying novel malware in an attempt to remain embedded in Ivanti devices, even after factory resets, system upgrades, - [NIST CSF 2.0 Released](https://australiancybersecuritymagazine.com.au/nist-csf-2-0-released/) - The NIST Cybersecurity Framework (CSF) development process all started with Executive Order (EO)13636 over a decade ago, which called for building a set of approaches (a framework) for reducing risks to critical infrastructure. Through this EO, NIST was tasked with developing a "Cybersecurity Framework." To address current and future cybersecurity challenges and improvements, NIST says it - [Defensive AI safeguards against emerging cyber threats](https://australiancybersecuritymagazine.com.au/defensive-ai-safeguards-against-emerging-cyber-threats/) - Google’s recent announcement of an artificial intelligence (AI) Cyber Defense Initiative to enhance global cybersecurity underscores the importance of defending against increasingly sophisticated and pervasive cyber threats. AI is expected to play a pivotal role in collecting, processing, and neutralizing threats, transforming the way organizations combat cyber risks, observes GlobalData. Looking at AI cyber threat - [New National Cyber Security Coordinator announced](https://australiancybersecuritymagazine.com.au/new-national-cyber-security-coordinator-announced/) - Federal Minister for Home Affairs and Minister for Cyber Security, Clare O’Neil has used social media channels to announce Lieutenant General Michelle McGuinness CSC as Australia’s new National Cyber Security Coordinator. In the announcement, the Minister stated: “Lieutenant General McGuinness has served in the Australian Defence Force for 30 years in a range of roles - [Critical vulnerability in ConnectWise’s ScreenConnect](https://australiancybersecuritymagazine.com.au/critical-vulnerability-in-connectwises-screenconnect/) - An alert has been issued to users of ConnectWise’s ScreenConnect software on any platform. These vulnerabilities impact the version 23.9.7 and prior. Customers are encouraged to patch to the latest version of ScreenConnect. Background / What has happened? ConnectWise have posted a security advisory and patch to address the vulnerabilitiy in CVE-2024-1709. CVE-2024-1709 is a - [Acronis appoints new GM](https://australiancybersecuritymagazine.com.au/acronis-appoints-new-gm/) - Acronis has appointed Kelly Johnson as the new general manager for Australia and New Zealand. Johnson will lead the channel-focused business, strengthening relationships with distributors and supporting partners to meet the cybersecurity demands of modern businesses in the region. "Acronis is going through a period of hypergrowth in the region, driven by the rollout of - [Break new ground in the Middle East and Africa Market](https://australiancybersecuritymagazine.com.au/break-new-ground-in-the-middle-east-and-africa-market/) - Break new ground in the Middle East and Africa Market through the Official Country Partner for Australian companies, SharePass. We speak with Yuri Miloslavsky, CEO and founder of SharePass as the partner bringing Australian cybersecurity companies to the 2024 edition of #GISECGlobal. 🗓 23 - 25 April 2024 📍 Halls 2 - 8, Dubai World - [Recorded Future’s Enterprise AI for Intelligence](https://australiancybersecuritymagazine.com.au/recorded-futures-enterprise-ai-for-intelligence/) - Recorded Future has announced that Recorded Future AI is emerging out of beta to augment humans and defend democracy against converging global threats. Expanding Recorded Future AI capabilities, new enterprise capabilities offer every analyst across an organisation a powerful generative AI-based assistant for intelligence and defense, as well as the ability to software define very - [Microsoft Office Outlook Alert](https://australiancybersecuritymagazine.com.au/microsoft-office-outlook-alert/) - An alert has been issued for individuals and the IT teams of organisations and government who use Microsoft Office Outlook products. Background / What’s happened? ASD’s ACSC is tracking a remote code execution vulnerability in Microsoft Office Outlook products. CVE-2024-21413 refers to a vulnerability that exploits the Outlook preview pane as an attack vector. Successful - [Released: Global Threat Intelligence Report](https://australiancybersecuritymagazine.com.au/released-global-threat-intelligence-report/) - Mimecast has published its Q4 Global Threat Intelligence Report, revealing extortion campaigns, geopolitical threats, and attacks on small and medium-sized businesses (SMBs) to be among the greatest threats to cybersecurity defences. The report analyses the threat landscape for Q4 2023 and offers actionable recommendations on how to improve cyber defence. Key findings from the report - [Paying cyber-ransoms still lands organisations in hot water](https://australiancybersecuritymagazine.com.au/paying-cyber-ransoms-still-lands-organisations-in-hot-water/) - Written by Lee Roebig, CISO, Sekuro. Ransomware attacks continue to impact Australian organisations at a growing rate with 75% of the industrial sector having experienced a ransomware attack in the past year and costing the Australian economy $2.59 billion annually. The Australian Cyber Security Centre named ransomware as the most destructive cybercrime threat, as it continues to create significant risks for governments, businesses - [Five telcos breached for allowing SMS scams](https://australiancybersecuritymagazine.com.au/five-telcos-breached-for-allowing-sms-scams/) - The Australian Communications and Media Authority (ACMA) has taken action against five telcos who send bulk SMS for failing to comply with multiple anti-scam and public safety rules. Investigations by the ACMA found Message4U Pty Ltd (trading under the brand name Sinch MessageMedia), SMS Broadcast Pty Ltd, DirectSMS Pty Ltd, Esendex Australia Pty Ltd and - [Qlik Completes IRAP Assessment](https://australiancybersecuritymagazine.com.au/qlik-completes-irap-assessment/) - Qlik has announced it has completed assessment by Australia’s Information Security Registered Assessor Program (IRAP) at the Protected level. This classification enables the Australian Government and Regulated Industries to confidently utilise Qlik's advanced capabilities, from data integration to AI/ML insights, transforming data challenges into strategic opportunities, addressing national priorities, optimising resources, and efficiently delivering precise, - [Guardz Launches in Australia and New Zealand](https://australiancybersecuritymagazine.com.au/guardz-launches-in-australia-and-new-zealand/) - Guardz has launched in Australia and New Zealand, and will be distributed through a partnership with Australian-owned and operated IT cloud solution company Manage Protect. Small businesses are the backbone of the Australian economy and make up 99% of businesses, creating jobs, supporting local communities, and providing crucial services. Almost a quarter of Australia's SMBs have experienced a cybersecurity - [Tabeck on deck as new SolarWinds’ sales director](https://australiancybersecuritymagazine.com.au/tabeck-on-deck-as-new-solarwinds-sales-director/) - SolarWinds has appointed Rahul Tabeck as the regional sales director of Australia and New Zealand (ANZ) business. “Rahul’s extensive IT industry experience and knowledge of the Pacific region make him the ideal candidate to lead our ANZ operations," said Bharat Bedi, managing director of SolarWinds Asia-Pacific and Japan (APJ). "We're excited to have him on - [QR Code Protection enhanced by deep scanning](https://australiancybersecuritymagazine.com.au/qr-code-protection-enhanced-by-deep-scanning/) - Mimecast has improved its Quick Response (QR) code protections to include deep scanning of URLs tied to QR codes, and upon inspection, malicious content will be blocked. Threat actors deliver emails with QR codes that point to fake sites in an effort to steal credentials or perform other malicious activities. These attempts are difficult to - [Bringing the Essential Eight into the Cloud](https://australiancybersecuritymagazine.com.au/bringing-the-essential-eight-into-the-cloud/) - Written by Arye Zacks, Senior Technical Researcher, Adaptive Shield. MIT Technology Review Insights named Australia the leader in its inaugural Cyber Defense Index country rankings for 2022-2023. In recent years, Australia has made some key moves to improve the country's security posture. In 2020, they invested $1.67B as part of Cyber Security Strategy 2020. A - [Multiple vulnerabilities in Jenkins products](https://australiancybersecuritymagazine.com.au/multiple-vulnerabilities-in-jenkins-products/) - The Australian Signals Directorate’s Australian Cyber Security Centre (ASD’s ACSC) has released an alert stating it is tracking multiple vulnerabilities impacting Jenkins products which could result in Remote Code Execution and Cross-site WebSocket hijacking. CVE-2024-23897 refers to Critical vulnerability in the command line interface command parser allowing attackers to read arbitrary files on the Jenkins controller file - [Business privacy obligations hard to understand](https://australiancybersecuritymagazine.com.au/business-privacy-obligations-hard-to-understand/) - Despite new updates to privacy regulations across the globe, including Australia’s Privacy Act Review Report in 2023, only 39 percent of Oceania respondents say they find it easy to understand their organisation’s privacy obligations, according to ISACA’s Privacy in Practice 2024 survey report. This has led to low confidence, with only 44 percent of Oceania respondents feeling very - [Fortra's GoAnywhere Managed File Transfer Flaw](https://australiancybersecuritymagazine.com.au/fortras-goanywhere-managed-file-transfer-flaw/) - A new flaw in Fortra’s GoAnywhere Managed File Transfer (MFT) software was disclosed on January 22, 2024 in an advisory from the company, though it was initially patched in early December. The vulnerability involves an authentication bypass issue which, when exploited, would enable an attacker to create new users, including new user accounts with administrator - [VexTrio’s Massive Criminal Affiliate Program](https://australiancybersecuritymagazine.com.au/vextrios-massive-criminal-affiliate-program/) - Infoblox has released new research unveiling a set of large-scale malicious cybercriminal partnerships led by insidious threat actor VexTrio. The partnerships involve a more than 60-strong underground affiliate network and are seeing high volumes of malware and other malicious content delivered to networks in Australia, New Zealand and across the globe. Formed more than six - [Tech Council of Australia CEO Steps Down](https://australiancybersecuritymagazine.com.au/tech-council-of-australia-ceo-steps-down/) - The Tech Council of Australia (TCA) has announced CEO Kate Pounder will step down from the role on 2nd February 2024. TCA Board Chair Robyn Denholm noted Kate’s role in launching and cementing the TCA as a critical industry body and raising the profile of the tech sector in Australia. “Over the last three years - [Major Spike in Public Sector Attacks in 2023](https://australiancybersecuritymagazine.com.au/major-spike-in-public-sector-attacks-in-2023/) - KnowBe4 has released its report on the most popular and prolific cybercrimes of 2023 with a focus on the public sector. The report - Can The Public Sector Face The Coming Wave Of Attacks? - examines cybercrime trends, statistics and real-life examples on a global scale as well as breaking it down by specific countries and regions, while providing - [Medibank cyberattack prompts sanctions](https://australiancybersecuritymagazine.com.au/medibank-cyberattack-prompts-sanctions/) - Australia has used cyber sanctions powers on a Russian individual for his role in the breach of the Medibank Private network. This is the first use of Australia’s autonomous cyber sanctions framework and is a result of Australian Government efforts over the past 18 months to investigate and respond to this cyber incident. In the - [Fixing the Gap in Australia’s Cybersecurity Legislation](https://australiancybersecuritymagazine.com.au/fixing-the-gap-in-australias-cybersecurity-legislation/) - Written by Leon Poggioli, ANZ Regional Director at Claroty. The proposed new cyber legislation and Australia’s cyber security strategy of 2030 sets a clear objective for making Australia a leader in cyber safety. Of particular significance is the increased focus on (1) Systems of National Significance and (2) Mandatory minimum standards for consumer smart devices. - [Action to help ensure AI is safe and responsible](https://australiancybersecuritymagazine.com.au/action-to-help-ensure-ai-is-safe-and-responsible/) - The Australian Government says it is taking action to help ensure that AI is safe and responsible, releasing its interim response to the Safe and Responsible AI in Australia consultation. The consultation made clear that while AI has immense potential to improve wellbeing and grow our economy, Australians want stronger protections in place to help - [ASD alerts industry on RCE vulnerability in Atlassian Confluence Data Center and Confluence Server](https://australiancybersecuritymagazine.com.au/asd-alerts-industry-on-rce-vulnerability-in-atlassian-confluence-data-center-and-confluence-server/) - In an Australian cyber security national alert to industry, the ASD’s ACSC has alerted its subscribers that it is tracking a remote code execution (RCE) vulnerability in Atlassian Confluence Data Center and Confluence Server. The ASD ACSC advised; “CVE-2023-22527 is a template injection vulnerability, in all but the most recent versions of Confluence Data Center - [Ivanti releases its latest security advisories](https://australiancybersecuritymagazine.com.au/ivanti-releases-its-latest-security-advisories/) - An alert has been issued to Australians who are running or administering instances of Ivanti Connect Secure (ICS) and Ivanti Policy Secure (IPS). These vulnerabilities impact all supported versions – Version 9.x and 22.x. This alert is intended to be understood by technical users. Customers are encouraged to apply any available mitigations and patches as - [FirstWave expands Telmex relationship](https://australiancybersecuritymagazine.com.au/firstwave-expands-telmex-relationship/) - FirstWave Cloud Technology has secured the first major sale of its technology as part of an expanded reseller engagement with Mexico’s largest telecommunications group, Telmex. Telmex has utilised a range of FirstWave products since 2011. Under a newly expanded relationship, it has become a reseller of FirstWave’s industry-leading Network Management Information System (NMIS) platform by - [AFP Helps Out In BlackCat Ransomware Gang Disruption](https://australiancybersecuritymagazine.com.au/afp-helps-out-in-blackcat-ransomware-gang-disruption/) - Written by staff writer. The Australian Federal Police (AFP) has helped shut down extortion websites controlled by the BlackCat, severely disrupting the ransomware group’s operations. The agency said on December 20, 2023, that they had provided significant intelligence and data to the international investigation into the group. "This ransomware group first came to law enforcement - [FBI, CISA, and ASD’s ACSC Release Advisory on Play Ransomware](https://australiancybersecuritymagazine.com.au/fbi-cisa-and-asds-acsc-release-advisory-on-play-ransomware/) - Today, the Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and the Australian Signals Directorate’s Australian Cyber Security Centre (ASD's ACSC) released a joint Cybersecurity Advisory (CSA), #StopRansomware: Play Ransomware, to disseminate Play ransomware group’s tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) identified through FBI investigations as recently as October - [Text messages impersonating toll road operators](https://australiancybersecuritymagazine.com.au/text-messages-impersonating-toll-road-operators/) - Planning on travelling by car this holiday season? Be on the lookout for text messages pretending to be from toll road operators, including Linkt, claiming that you have an overdue toll road account or insufficient funds. It could be a scam. The ACMA is seeing increased reports of toll road impersonation scams in the lead - [Rapid7 Dips into Duo to Distribute across the Ditch](https://australiancybersecuritymagazine.com.au/rapid7-dips-into-duo-to-distribute-across-the-ditch/) - Rapid7 has appointed Duo, a division of Sektor, as a strategic distributor in New Zealand. Under the new agreement which is now in effect, Duo’s partner network of resellers, value-added resellers (VARs), and managed security service providers (MSSPs) will have access to Rapid7’s Insight platform, which will strengthen their cybersecurity portfolios by providing the visibility - [Commvault completes IRAP assessment](https://australiancybersecuritymagazine.com.au/commvault-completes-irap-assessment/) - Commvault has announced that its portfolio of SaaS-delivered data protection solutions has completed an assessment by the Infosec Registered Assessor Program (IRAP) at the PROTECTED level. Administered by the Australian Cyber Security Centre (ACSC), the IRAP framework ensures that technology providers meet the highest security and integrity protocols in line with the Australian government’s information - [FirstWave Launches Major Open-AudIT Update](https://australiancybersecuritymagazine.com.au/firstwave-launches-major-open-audit-update/) - FirstWave Cloud Technology has released the most significant update to its leading IT Audit platform, Open-AudIT, in over three years. A powerful reporting framework enables information such as software licensing, configuration changes, non-authorised devices, capacity utilisation and hardware warranty status to be extracted and explored. Open-AudIT Enterprise includes business dashboards, scheduled discovery and reporting, configuration - [Australian Involved in $25 million Crypto Scam, Faces 20 Years Jail](https://australiancybersecuritymagazine.com.au/australian-involved-in-25-million-crypto-scam-faces-20-years-jail/) - Written by staff writer. An Australian national is facing charges in the United States after allegedly operating a fraudulent scheme that saw people invest USD25 million in various trading programs on the promise of high yields. David Gilbert Saffron, 51, along with US national Vincent Anthony Mazzotta Jr., 52, were arrested last year. However, the - [Fresh Calls for Australian Gov’t to Force Tech Companies to Eradicate Scammers](https://australiancybersecuritymagazine.com.au/fresh-calls-for-australian-govt-to-force-tech-companies-to-eradicate-scammers/) - Written by staff writer. Consumer advocacy group CHOICE has joined a global alliance to more effectively lobby governments to force tech companies to do more to protect users from scams. CHOICE says its research found that almost 90% of Australians believe that tech platforms that fail to detect or prevent scammers from operating on their - [Tenable Solutions IRAP Assessed](https://australiancybersecuritymagazine.com.au/tenable-solutions-irap-assessed/) - Tenable announced that two of its solutions, Tenable Vulnerability Management and Tenable Web App Scanning, have been assessed at a ‘PROTECTED’ level by the Infosec Security Registered Assessors Program (IRAP), an initiative by the Australian Signals Directorate (ASD). The IRAP assessment is an independent evaluation of the implementation, appropriateness and effectiveness of a system’s security - [Cloud Greatest Cyber Risk to Australian Businesses](https://australiancybersecuritymagazine.com.au/cloud-greatest-cyber-risk-to-australian-businesses/) - Tenable has published new findings highlighting that the vast majority of Australian cybersecurity and IT leaders (68%) view cloud infrastructure as the greatest source of cyber risk in their organisation. The perceived risks stem from the use of public cloud (34%) and/or multi-cloud (19%) and private cloud infrastructure (15%). Respondents are particularly worried about the - [Australia and Japan Deepen Cyber Ties as 5th Annual Dialogue Takes Place](https://australiancybersecuritymagazine.com.au/australia-and-japan-deepen-cyber-ties-as-5th-annual-dialogue-takes-place/) - Written by staff writer. The 5th Japan-Australia Cyber Policy Dialogue took place in Tokyo earlier this week, drawing officials from both countries, including from Australia's Department of Home Affairs, Foreign Affairs and Trade, and the Australian Signals Directorate's Australian Cyber Security Centre. The event followed a meeting in November in San Francisco between the prime - [New Cyber Security Alliance](https://australiancybersecuritymagazine.com.au/new-cyber-security-alliance/) - Cisco, Australian Cyber Collaboration Centre (Aus3C) and several Australian universities will anchor a new Cyber Security Alliance focused on improving Australia’s cyber resilience and capability. The alliance is an initiative of the National Industry Innovation Network (NIIN) – a Cisco-led collective of university and industry partners formed three years ago to improve Australia’s innovation output - [Rubrik’s IRAP Assessment](https://australiancybersecuritymagazine.com.au/rubriks-irap-assessment/) - Rubrik has announced the completion of the Infosec Registered Assessors Program (IRAP) Assessment for its Australian sovereign instance of Rubrik Security Cloud. Developed by the Australian Signals Directorate (ASD), IRAP is an independent assessment of the effectiveness of a system’s security controls. Organisations, particularly Australia’s Federal Government agencies, use IRAP Assessment outcomes to evaluate a system’s suitability for - [Ransomware Attack on Australian Shipbuilder Working for US Navy](https://australiancybersecuritymagazine.com.au/ransomware-attack-on-australian-shipbuilder-working-for-us-navy/) - The Hunters International cybercrime gang has launched a ransomware attack on the US subsidiary of an Australian shipbuilder that has contracts to build vessels for the US Navy. Threat intelligence provider HackNotice issued its daily attack update on December 3, 2023, listing Austal USA, a subsidiary of Perth-based Austal, a ship-building company and defence prime - [SonicWall Vulnerabilities](https://australiancybersecuritymagazine.com.au/sonicwall-vulnerabilities/) - SonicWall PSIRT has confirmed two vulnerabilities: Post Authentication OS Command Injection Vulnerability and Post Authentication External User MFA Bypass Vulnerability in the SMA 100 Series SSL-VPN. These vulnerabilities only impact SonicWall SMA 100 series, including SMA 500v, 200, 210, 400, 410 appliances. SonicWall strongly urges that organizations using older versions of SonicWall firmware follow the - [North Korea targets $3B in stolen cryptocurrency](https://australiancybersecuritymagazine.com.au/north-korea-targets-3b-in-stolen-cryptocurrency/) - Recorded Future’s threat intelligence unit Insikt Group has revealed the findings of its latest threat analysis – Crypto Country: North Korea’s Targeting of Cryptocurrency – which shows there has been a steady increase in the number of cyberattacks against the cryptocurrency industry globally attributed to North Korea threat actors since at least 2017. Since the - [BlueVoyant Acquires Conquest Cyber](https://australiancybersecuritymagazine.com.au/bluevoyant-acquires-conquest-cyber/) - BlueVoyant has acquired Conquest Cyber, raising more than $140 million in a Series E funding to accompany the acquisition. The additional funding was led by existing investors, Liberty Strategic Capital, a private equity firm, and ISTARI, a cybersecurity investor and advisor founded by Temasek. Eden Global Capital Partners, an affiliate of Eden Global Partners, served - [NoName057(16) Gets Busy Recruiting an Online Hacktivist Army](https://australiancybersecuritymagazine.com.au/noname05716-gets-busy-recruiting-an-online-hacktivist-army/) - Written by staff writer. The pro-Russian hacktivist group NoName057(16) is actively recruiting an online army to ramp up its cyber assaults on the websites of private entities and government agencies in countries it says display a bias against Russia. In a series of posts on its Telegram channel, NoName057(16) calls the formation of its online - [Cyber attacks trigger job creation in 60% of Australian businesses](https://australiancybersecuritymagazine.com.au/cyber-attacks-trigger-job-creation-in-60-of-australian-businesses/) - Trellix has released new research which finds three-fifths (60%) of Australia businesses create new roles and responsibilities as a result of a cyber attack. The Mind of the CISO: Behind the Breach research surveyed global Chief Information Security Officers (CISOs) across major industries to better understand the unique challenges faced after experiencing a cyber attack. - [Happy Brays for Cloudflare](https://australiancybersecuritymagazine.com.au/happy-brays-for-cloudflare/) - Cloudflare has appointed Steve Bray as Head of Australia & New Zealand. Steve brings with him almost 25 years of experience across innovative cloud-based software companies, and has held leadership positions in multinational tech companies like Salesforce and Zendesk. “Amidst the rising volumes of cybersecurity incidents, Cloudflare is at the forefront of helping businesses secure applications, - [Arrests Made in Phishing Campaign Targeting myGov Accounts](https://australiancybersecuritymagazine.com.au/arrests-made-in-phishing-campaign-targeting-mygov-accounts/) - The Royal Malaysian Police (RMP) have arrested eight men in connection with phishing kits that targeted the Australian Government’s myGov website. The arrests resulted from a joint operation between the Australian Federal Police (AFP), the RMP, and the Federal Bureau of Investigation (FBI). It followed an investigation into an international criminal syndicate that boasted of hosting a - [What’s in a Name for Which Bank?](https://australiancybersecuritymagazine.com.au/whats-in-a-name-for-which-bank/) - Commonwealth Bank has announced that Bendigo Bank and fraud monitoring company Satori, are each looking to pilot CBA’s industry leading NameCheck technology in a bid to further protect Australians from scams and mistaken payments. NameCheck applies advanced technology and CBA’s available payment data to give an indication of whether the account details provided look right. CBA introduced - [Business to Banks on New Scam-Safe Accord](https://australiancybersecuritymagazine.com.au/business-to-banks-on-new-scam-safe-accord/) - ​Australian banks have joined forces to launch a new Scam-Safe Accord to deliver a higher standard of protection for customers and put scammers out of business in Australia. This Accord, between Australia’s customer owned banks, mutual banks, building societies, credit unions and commercial banks is a comprehensive set of anti-scam measures across the entire industry. - [Initial insights to the Australian Cyber Security Strategy 2023 - 2030](https://australiancybersecuritymagazine.com.au/initial-insights-to-the-australian-cyber-security-strategy-2023-2030/) - We speak with Nigel Phair, Professor - Practise, Department of Software Systems & Cybersecurity with Monash University on the release of the 2023-2030 Australian Cyber Security Strategy. The relaunched 2023-2030 Australian Cyber Security Strategy will be a “game-changing strategy,” according to O’Neil. She says cybersecurity is Australia’s fastest-growing national security challenge. The updated strategy will - [Research in Quantum-Secured PNT Data Steps Up](https://australiancybersecuritymagazine.com.au/research-in-quantum-secured-pnt-data-steps-up/) - QuantX Labs has secured $750,000 funding for a research project aimed at revolutionizing a secured position, navigation, and timing (PNT) capability for defence applications. The project, titled "Quantum-Secured Time Transfer for Resilient PNT," will receive support from Department of Defence, paving the way for cutting-edge advancements in PNT security. Access to trusted position, navigation, and - [Cyber Security Minister Eyes Blanket Ransomware Ban in two Years](https://australiancybersecuritymagazine.com.au/cyber-security-minister-eyes-blanket-ransomware-ban-in-two-years/) - Written by staff journalist. Ahead of the launch of the Australian Government's Cyber Security Strategy on November 22, 2023, Minister for Home Affairs and Cyber Security, Clare O'Neil says banning ransomware payments is inevitable. "Ransomware is one of the fastest growing types of cybercrime," O'Neil told ABC radio earlier today. "It's a major problem for - [Three Horizons in new Australian Cyber Security Strategy](https://australiancybersecuritymagazine.com.au/three-horizons-in-new-australian-cyber-security-strategy/) - The Australian Government has released its new 2023–2030 Australian Cyber Security Strategy. The Strategy brings six cyber shields to respond to the challenges cyber security poses to the Australian community. To learn more, visit: MARKETPLACE https://australiancybersecuritymagazine.com.au/cyber-security-minister-eyes-blanket-ransomware-ban-in-two-years/ - [Lack of Confidence in Boards Revealed](https://australiancybersecuritymagazine.com.au/lack-of-confidence-in-boards-revealed/) - Despite a number of high-profile data breaches and continuing concerns around cyber-security, nearly two thirds of organisations don’t believe their board has sufficient understanding of current data governance challenges. A report released today by the Governance Institute of Australia, Data Governance in Australia found a majority of respondents surveyed were not positive about how their - [Goodwin for Cybersecurity](https://australiancybersecuritymagazine.com.au/goodwin-for-cybersecurity/) - Mackay Goodwin has expanded into Cyber Security and Research & Development (R&D) sectors. "We're excited to launch these new services and expand our reach," said Domenic Calabretta, CEO of Mackay Goodwin. "Our team is committed to providing businesses with the tools and expertise they need to thrive in today's rapidly evolving business landscape. The addition - [Tide Comes in for RMIT Cyber Research](https://australiancybersecuritymagazine.com.au/tide-comes-in-for-rmit-cyber-research/) - A cutting-edge collaboration between tech startup Tide Foundation and RMIT University is translating ground-breaking research into homegrown cybersecurity capability. Australia’s critical infrastructure – including ports, energy grids and water supplies – reported 143 cyber attacks over the past year, up from 95 incidents the year before, according to the Australian Cyber Security Centre. In response to - [Marles Backs Cyber Security Safe Harbour Reform](https://australiancybersecuritymagazine.com.au/marles-backs-cyber-security-safe-harbour-reform/) - Written by staff writer. Deputy Prime Minister and Defence Minister Richard Marles says the Australian government wants to pursue safe harbour provisions for entities that self-report cyber breaches. The confirmation comes as the Australian Cyber Security Centre (ACSC) releases its Annual Cyber Threat Report 2022/23, revealing that the number and cost of cyberattacks is rising. - [Rapid7’s AI-Driven Cloud Anomaly Detection](https://australiancybersecuritymagazine.com.au/rapid7s-ai-driven-cloud-anomaly-detection/) - Rapid7 has released its newest innovation in artificial intelligence (AI)-driven threat detection for the cloud. Rapid7’s cloud anomaly detection is an AI-powered, agentless detection capability designed to detect and prioritise anomalous activity within an organisation’s cloud environment. The proprietary AI engine continuously learns and adapts to the customer’s environment, surfacing suspicious behavior and automatically suppressing - [Gone Phishing: the Generative AI tsunami](https://australiancybersecuritymagazine.com.au/gone-phishing-the-generative-ai-tsunami/) - Generative AI and the phishing email explosion – how to use AI to fight back Written by Oakley Cox, PhD, Analyst Technical Director, Darktrace, Asia Pacific. Generative AI (GenAI), specifically ChatGPT, hit the global technology scene like a tsunami at the end of 2022 – and the effects of that wave have just been growing - [Scam Texts are more painful than root canals](https://australiancybersecuritymagazine.com.au/scam-texts-are-more-painful-than-root-canals/) - McAfee Corp has released its first-ever Global Scam Message Study, surveying more than 7,000 adults in seven countries to understand how scam messages, and the increased scam sophistication brought about by artificial intelligence (AI), have impacted the lives of consumers worldwide. This study reveals that Aussies receive an average of more than 8 (8.3) fake - [Queensland police officer on a global mission to combat cybercrime](https://australiancybersecuritymagazine.com.au/queensland-police-officer-on-a-global-mission-to-combat-cybercrime/) - Queensland police officer Michael Newman says he is working to fight the increasing problem of cybercrime on a global scale. Mike's Churchill Fellowship will examine how Australian police could be better equipped to fight cybercrime by researching international best practice. Cybercrime is an ever evolving and constantly growing problem in Australia. Cybercrime includes investment and - [Statement on the National Cyber Security Coordinator](https://australiancybersecuritymagazine.com.au/statement-on-the-national-cyber-security-coordinator/) - The Australian Government’s Department of Defence has issued the following statement. National Cyber Security Coordinator, Air Marshal Darren Goldie, AM, CSC, has been recalled to Defence to deal with a workplace matter related to his time in Defence. He is currently on leave. While the matter is under consideration it would be inappropriate to comment - [Australian Cyber Threat Report](https://australiancybersecuritymagazine.com.au/australian-cyber-threat-report/) - The Australian Signals Directorate’s Australian Cyber Security Centre’s ASD Cyber Threat Report has been released. The report explains how cyber threats affect Australia, how ASD is responding, and advice on how to protect yourself against common cyber threats. This year’s report found that malicious cyber activity in Australia continued to increase in terms of frequency, - [Preparing for the Cybercrime and Metaverse Convergence](https://australiancybersecuritymagazine.com.au/preparing-for-the-cybercrime-and-metaverse-convergence/) - Written by Tony Campbell, Director Innovation & Research, Sekuro. Most cybersecurity articles begin with an acknowledgement of the ever-evolving threat landscape, and this one is no different. While this may seem trite, our society will be dealing with technologies such as digital twinning, the Metaverse, AI, blockchain, quantum computing, and biological implants that all introduce - [Australia’s first ever AI Month launches](https://australiancybersecuritymagazine.com.au/australias-first-ever-ai-month-launches/) - Australia's inaugural Artificial Intelligence (AI) Month has been launched, calling on Australians to help shape and plan for the AI future they want to see. Held from November 15 to December 15, AI Month is an initiative from the National AI Centre (NAIC), which sits within Australia’s national science agency, CSIRO. The initiative will bring - [A Cut Above the CREST with New Exam](https://australiancybersecuritymagazine.com.au/a-cut-above-the-crest-with-new-exam/) - CREST has launched its new Registered Penetration Tester (CRT) certification globally. It is now available in more than 70 countries and in more than 1000 Pearson VUE test centres. Reflecting the ever-changing needs of the cyber security sector, CREST says it has also updated the CRT exam. CRT is an intermediate level exam that tests - [SailPoint completes IRAP Assessment](https://australiancybersecuritymagazine.com.au/sailpoint-completes-irap-assessment/) - SailPoint Technologies says it has successfully completed the Information Security Registered Assessors Program (IRAP) assessment for SailPoint Identity Security Cloud which leverages artificial intelligence (AI) and machine learning (ML) technologies to automate complex identity security processes, therefore reducing business cost and risk while improving productivity. The IRAP assessment, firmly based on the stringent controls identified in the Australian Signals - [Digital skills crisis in Australia](https://australiancybersecuritymagazine.com.au/digital-skills-crisis-in-australia/) - ACS is calling for a holistic overhaul of the nation’s skills, training, and immigration programs in its annual Digital Pulse report to be released on Wednesday. The call comes as the report forecasts a crisis looming for the Australian economy with the rapid pace of change seeing 90% of Australian workers’ jobs changing in the - [AI Big Adopter in the Workplace](https://australiancybersecuritymagazine.com.au/ai-big-adopter-in-the-workplace/) - A new poll of global digital trust professionals reveals high employee usage of generative Artificial Intelligence (AI) in Australia and New Zealand (63%), few company policies around its use (only 11% have a formal policy), lack of training (80% have no or limited training), and fears around its exploitation by bad actors (97% report being - [Teradata Completes IRAP Assessment](https://australiancybersecuritymagazine.com.au/teradata-completes-irap-assessment/) - Teradata has announced the completion of the Information Security Registered Assessors Program (IRAP) for VantageCloud Enterprise. The PROTECTED security evaluation shows that Teradata’s complete cloud analytics and data platform has achieved the highest standard for securing sensitive government and broader industry data and systems. Developed by the Australian Signals Directorate (ASD), IRAP is a requirement to provide - [Australian Government Monitors Significant Stevedore Cyber Attack](https://australiancybersecuritymagazine.com.au/australian-government-monitors-significant-stevedore-cyber-attack/) - Written by staff writer. Australia’s Cyber Security Coordinator says the Australian government is working with seaport terminal operator DP World Australia to resolve what he calls a serious and ongoing “nationally significant cyber incident.” Air Marshal Darren Goldie released a statement on November 12, 2023, two days after unidentified hackers breached DP World Australia’s cyber - [5G widespread security concerns weighing heavily](https://australiancybersecuritymagazine.com.au/5g-widespread-security-concerns-weighing-heavily/) - Vodafone, Telstra, and Optus have announced they will start phasing out the 3G network across Australia and New Zealand in the next 12 months to make way for 5G. True 5G is materially different from 3G and 4G, promising huge performance and capacity improvements. However, with just a fraction of 5G functionality currently in place, - [Netskope’s Strong Appointment](https://australiancybersecuritymagazine.com.au/netskopes-strong-appointment/) - Netskope has appointed Nathan Strong as Client Partner, Federal Government. Nathan has been working with Australian Federal Government agencies for close to 25 years. He joins Netskope to manage and expand the company’s Federal Government portfolio in Australia, and support agencies in strengthening their cybersecurity resilience. In the last decade, Netskope expanded its global private - [Optus CEO Says Outage Not Caused by Network Upgrade](https://australiancybersecuritymagazine.com.au/optus-ceo-says-outage-not-caused-by-network-upgrade/) - Written by staff writer. The CEO of Optus has denied claims that a major network upgrade was responsible for a daylong nationwide outage on Wednesday, November 8, 2023. Optus went dark around 4.00 a.m. (Australian Eastern time), cutting landline, mobile, and internet connections for ten million plus users, including Metro, the operator of Melbourne's rail - [Ongoing Data Breaches Highlight Third Party Vendor Risks](https://australiancybersecuritymagazine.com.au/ongoing-data-breaches-highlight-third-party-vendor-risks/) - Written by staff writer. Hackers continue to target third-party vendors to access the personal data of customers and employees. The ongoing breaches highlight the risk associated with third-party vendors and the need to scrutinize their cyber practices. In March, LinkedIn disclosed a data breach affecting 700 million users when hackers exploited a vulnerability in a - [Calls for Comments on NICE Framework Task Statements](https://australiancybersecuritymagazine.com.au/calls-for-comments-on-nice-framework-task-statements/) - NICE says it is continuing to refine and clarify the Workforce Framework for Cybersecurity (NICE Framework) as a fundamental reference resource that is agile, flexible, modular, and interoperable. As such, it has announced that refactored Task statements are ready for public review and feedback. Proposed updates to the NICE Framework Task statements follow the principles - [SEC Fraud and Disclosure Charges Spark Debate About CISO Accountability](https://australiancybersecuritymagazine.com.au/sec-fraud-and-disclosure-charges-spark-debate-about-ciso-accountability/) - Written by staff writer. The US Securities Exchange Commission (SEC) has charged Texas-based software company SolarWinds Corporation and its chief information security officer, Timothy Brown, with fraud and internal control failures connected with known cybersecurity risks and vulnerabilities. The charges, related to a long-running cyberattack on the publicly listed company, and disclosed in 2020, are - [Senator Says Cyber Standards for Entities Working with Government Likely to Increase](https://australiancybersecuritymagazine.com.au/senator-says-cyber-standards-for-entities-working-with-government-likely-to-increase/) - Written by staff writer. Shadow Cybersecurity Minister Senator James Paterson has told an online audience that government contractors, critical infrastructure providers, and entities involved in the defence sector can expect to have cybersecurity standards imposed on them that are as high, or higher, than the government agencies they are working with. Paterson’s comments come as - [The State of Ransomware in Healthcare 2023](https://australiancybersecuritymagazine.com.au/the-state-of-ransomware-in-healthcare-2023/) - Sophos has shared its sector survey report, The State of Ransomware in Healthcare 2023, which reveals that, among those organisations surveyed, cybercriminals successfully encrypted data in nearly 75% of ransomware attacks. This is the highest rate of encryption in the past three years and a significant increase from the 61% of healthcare organisations that reported having their data encrypted - [Eight protocols for building an effective AI security program](https://australiancybersecuritymagazine.com.au/eight-protocols-for-building-an-effective-ai-security-program/) - Written by Professor Jason Lau, Board Director, ISACA. The future is exciting for organisations of all sizes – from large enterprise to SMEs - thanks to the vast potential of generative AI. But opportunity carries the burden of risk, which is weighing heavily on the shoulders of many CISOs across the globe. Indeed, the rapid - [LogRhythm’s New ANZ Country Manager](https://australiancybersecuritymagazine.com.au/logrhythms-new-anz-country-manager/) - LogRhythm has announced the appointment of Matthew Lowe as Australia and New Zealand Country Manager. Based in Sydney, Lowe has more than 20 years of IT industry experience in sales, business development and customer account management. He will be responsible for accelerating customer and revenue growth, overseeing account management and working closely with LogRhythm’s channel - [Generative AI – cybersecurity opportunities & challenges](https://australiancybersecuritymagazine.com.au/generative-ai-cybersecurity-opportunities-challenges/) - Jane Lo speaks with Ben Verschaeren, Director, Global Solutions, Sophos about cybersecurity opportunities and challenges with Generative AI. With over 19 years in the IT industry, Ben Verschaeren is a seasoned professional based in Melbourne. He leads global strategic initiatives, educates on threat landscapes, and develops training tools focusing on real-world exploits. Ben also directs - [ISACA Sydney Chapter Scholarship](https://australiancybersecuritymagazine.com.au/isaca-sydney-chapter-scholarship/) - ISACA Sydney Chapter has announced it will award a $2,000 USD academic scholarship for tuition to five students who meet the criteria below. Scholarship money will be paid directly to the awardee in January 2024 and must be used for the school you’re attending in 2024. Awardees will also receive a Career Building Bundle: One year of ISACA - [Microsoft Invests $5 Billion to Boost Australia’s AI and Cyber Capabilities](https://australiancybersecuritymagazine.com.au/microsoft-invests-5-billion-to-boost-australias-ai-and-cyber-capabilities/) - Microsoft will invest AUD5 billion to build up its Australian hyper-scale cloud computing and artificial intelligence infrastructure over the next two years... - [Security and privacy of IoT devices, like the family robot](https://australiancybersecuritymagazine.com.au/security-and-privacy-of-iot-devices-like-the-family-robot/) - Dennis Giese is a researcher with focus on the security and privacy of IoT devices. While being interested in physical security and lockpicking, he enjoys applied research and reverse engineering malware and all kinds of devices. His most known projects are the documentation and hacking of various vacuum robots. His current vacuum robot army consists - [Sumsub launches “For Fake’s Sake”](https://australiancybersecuritymagazine.com.au/sumsub-launches-for-fakes-sake/) - Sumsub has released For Fake’s Sake, a set of models that enable the detection of deepfakes and synthetic fraud in visual assets. This is the first solution of its kind to be developed by a verification provider, that is publicly accessible for download and usage. With this release, Sumsub aims to provide the AI community – - [Wholly Trinity Cyber Australia Now Owned Subsidiary](https://australiancybersecuritymagazine.com.au/wholly-trinity-cyber-australia-now-owned-subsidiary/) - Trinity Cyber has opened an Australian subsidiary and has begun deploying its private cloud infrastructure at the largest Internet peering points in Australia. The company has also announced a strategic partnership with CyberCX. Trinity Cyber Founder and CEO Steve Ryan and Trinity Cyber President, Thomas P. Bossert are touring Australia this month attending the Australian - [Humans: the one cybersecurity problem AI won’t solve](https://australiancybersecuritymagazine.com.au/humans-the-one-cybersecurity-problem-ai-wont-solve/) - Humans are the problem – and the solution in cybersecurity. AI will result in innovations on both sides of the security war but won’t replace human creativity. So said an expert panel of CISOs who met in Melbourne this week. The panel convened by crowdsourced cybersecurity provider Bugcrowd met to debate solutions to the increasing - [Aussie IT/Security Leaders Struggle with AI Threats](https://australiancybersecuritymagazine.com.au/aussie-it-security-leaders-struggle-with-ai-threats/) - ExtraHop has released a new research report, The Generative AI Tipping Point, that found Australian enterprises are struggling to understand and address the security concerns that come with employee generative AI use. The report, which analyses organisations’ plans for securing and governing the use of generative AI tools, details cognitive dissonance among security leaders as - [Which Bank Leverages AI to Combat Cybercrime?](https://australiancybersecuritymagazine.com.au/which-bank-leverages-ai-to-combat-cybercrime/) - Commonwealth Bank Australia (CBA) has revealed its cyber team is leveraging AI to combat cybercrime with online activity seeing an exponential increase. Ahead of the CBA AI and cyber security panel at South by Southwest (SXSW) on Tuesday, Andrew Pade, at CBA, said “our cyber security teams monitor all events for any potential threat or - [Vonage and Twilio Breach Anti-Scam Rules](https://australiancybersecuritymagazine.com.au/vonage-and-twilio-breach-anti-scam-rules/) - The Australian Communications and Media Authority (ACMA) says it has taken action against two telcos who allowed their customers to send SMS with text-based sender IDs (i.e. shortened business names), without making sufficient checks that they weren’t being used to perpetrate scams. Vonage Business Inc and Twilio Inc have been formally directed to comply with the Reducing Scam - [Australian Businesses Ready to Ditch Passwords](https://australiancybersecuritymagazine.com.au/australian-businesses-ready-to-ditch-passwords/) - Australian businesses are actively moving to eradicate passwords from employees’ lives, with 90 per cent of IT leaders expecting passwords to represent less than a quarter of their organisation’s logins in five years or less. This is the verdict from the FIDO Alliance and LastPass recent released 2023 Workforce Authentication Report. The report gauges IT - [Australia Signs Five Country Pact to Strengthen Telcos Against Cyber Threats](https://australiancybersecuritymagazine.com.au/australia-signs-five-country-pact-to-strengthen-telcos-against-cyber-threats/) - Written by staff writer. Australia’s Department of Infrastructure, Transport, Regional Development, Communications and the Arts (DITRDCA) will join forces with four other countries to establish the Global Coalition on Telecommunications (GCOT) to better secure telecommunications networks against a range of threats, including cyber threats. The informal multilateral alliance aims to strengthen coordination on security, resilience, and - [Bugcrowd CEO in Australia and reporting continued international growth](https://australiancybersecuritymagazine.com.au/bugcrowd-ceo-in-australia-and-reporting-continued-international-growth/) - We speak with Bugcrowd CEO Dave Gerry in Sydney as he visits Australia to meet with partners and customers. Bugcrowd, a multi-solution crowdsourced cybersecurity platform, has also announced significant global customer momentum, highlighting the market need for Bugcrowd’s crowdsourced cybersecurity platform. The company’s rapidly growing customer base includes top brands such as ExpressVPN, Rapyd and - [Bugcrowd Leaps Ahead in Growth](https://australiancybersecuritymagazine.com.au/bugcrowd-leaps-ahead-in-growth/) - Bugcrowd has announced significant global customer momentum, highlighting the market need for Bugcrowd’s crowdsourced cybersecurity platform. The company says its growing customer base includes top brands such as ExpressVPN, Rapyd and T-Mobile, which have chosen to partner with Bugcrowd for one or more of its Bug Bounty, Penetration Testing and Vulnerability Disclosure Programs. ExpressVPN, an - [DDoS Attack After Decision to Send Anti Drone Technology to Ukraine](https://australiancybersecuritymagazine.com.au/ddos-attack-after-decision-to-send-anti-drone-technology-to-ukraine/) - Written by staff writer. A pro-Russian hacking group has carried out a series of distributed denial-of-service (DDoS) attacks on Australian government websites in response to a decision to provide Ukraine with locally made counter-drone technology. On October 6, NoName057(16) "banged" the Department of Home Affairs and Administrative Appeals Tribunal websites in response to a decision - [HopgoodGanim Lawyers’ Special Appointment](https://australiancybersecuritymagazine.com.au/hopgoodganim-lawyers-special-appointment/) - HopgoodGanim Lawyers has announced the consolidation of its Cyber Security practice with the appointment of Steven Hunwicks as Head of Cyber Security. Steven is a Special Counsel in the company’s Intellectual Property, Technology and Cyber Security (IPTC) team. He has over two decades of legal and commercial experience advising businesses and government on cyber security - [Tesserent Reimagines Growth with Appointment of Former Telstra Lead](https://australiancybersecuritymagazine.com.au/tesserent-reimagines-growth-with-appointment-of-former-telstra-lead/) - Tesserent has appointed James Ormesher as Chief Growth Officer. James has an extensive background in sales leadership across commercial, government and defence sectors ranging from mid-market to enterprise. James joined VMtech at its inception and was pivotal in expanding the startup from four people to 100 and the successful sale to Telstra in 2017. Following - [65% of Cybersecurity Teams Understaffed](https://australiancybersecuritymagazine.com.au/65-of-cybersecurity-teams-understaffed/) - As Australia aspires to become the global leader in cybersecurity by 2030, new data reveals where Australian cybersecurity pros fall short of global counterparts. In Oceania, higher levels of understaffing (65 percent); somewhat or significantly underfunded cybersecurity budgets (61 percent); and lower confidence in their organisation’s ability to detect and respond to cyber threats (only - [AFP’s New Portal with ServiceNow](https://australiancybersecuritymagazine.com.au/afps-new-portal-with-servicenow/) - The Australian Federal Police (AFP) has successfully implemented the ServiceNow Platform to build a new National Operations State Service Centre (NOSSC) portal, which will help increase the speed, agility, and efficiency of the AFP’s ability to receive and action reports and requests from other government agencies. The NOSSC is the AFP’s front door for reports and requests of significance - [Deep Dive into YouTube Stream-Jacking Attacks](https://australiancybersecuritymagazine.com.au/deep-dive-into-youtube-stream-jacking-attacks/) - Bitdefender has released new research highlighting a rapid increase in YouTube stream-jacking attacks. The attacks involve either re-directing followers of a popular channel to one run by cybercriminals that closely mimics the real channel, or, a cybercriminal taking full control of the real channel. The goal of YouTube stream-jacking is usually monetary; scamming followers of popular channels - [Thales Closes Deal on Tesserent](https://australiancybersecuritymagazine.com.au/thales-closes-deal-on-tesserent/) - Thales has finalised the acquisition of Tesserent following Tesserent shareholders’ approval of the implementation of the binding Scheme and other required regulatory approvals. Thales announced its proposed acquisition of Tesserent in June this year. With a 2022 turnover of A$185 million (circa €110 million) and ~500 employees across 9 offices, Tesserent is a leading player - [Dymocks CEO Outlines Details of Data Breach](https://australiancybersecuritymagazine.com.au/dymocks-ceo-outlines-details-of-data-breach/) - Written by staff writer. A cyber-attack targeting Australian bookseller Dymocks occurred around the time it switched to a new loyalty software provider. Over one million Dymocks customers had their personal information stolen during the mid-year hack on the third-party provider. Dymocks CEO Mark Newman says its investigation of the data breach has concluded. While the - [Rapid7 Expands Endpoint Protection Capabilities](https://australiancybersecuritymagazine.com.au/rapid7-expands-endpoint-protection-capabilities/) - Rapid7 has revealed that its Managed Detection and Response (MDR) service now includes multi-layered endpoint prevention and forensics capabilities powered by its Insight Agent. With the addition of next-generation antivirus (NGAV) and Velociraptor’s digital forensics and incident response (DFIR) capabilities, customers will be able to further consolidate and maximise their investment by reducing complexity, increasing - [Tesserent Acquires Beyond Binary](https://australiancybersecuritymagazine.com.au/tesserent-acquires-beyond-binary/) - Tesserent has announced the strategic acquisition of Beyond Binary. Beyond Bimary is a firm specialising in the provision of security related services, including penetration testing, red team engagements, adversary/attack simulation and associated security consulting services. The consideration for the acquisition of Beyond Binary is approximately A$7m, which is payable in tranches and subject to certain - [Cyber Governance Connective Tissue Still Missing at Board Level](https://australiancybersecuritymagazine.com.au/cyber-governance-connective-tissue-still-missing-at-board-level/) - Written by staff writer. Many Australian boards and executives are yet to implement a sound cyber governance strategy, according to Jamie Norton, who sits on the executive advisory board at Avertro. He says there is growing awareness of cyber issues, but what he calls the "connective tissue" between that awareness and concrete action is sometimes - [Phishing Via Dropbox](https://australiancybersecuritymagazine.com.au/phishing-via-dropbox/) - A burgeoning attack involving Dropbox is making the rounds. In the first two weeks of September, we saw 5,550 of these attacks. Hackers are using Dropbox to create fake login pages that eventually lead to a credential harvesting page. It’s yet another example of how hackers are utilising legitimate services in what we call BEC - [Australian Technologies Competition Winners](https://australiancybersecuritymagazine.com.au/australian-technologies-competition-winners/) - In front of a packed crowd at a gala event the winners of this year’s Australian Technologies Competition (ATC) were announced. With close to 100 applications, the judges faced a challenging task in choosing the 10 winners, who pitched their ground-breaking innovations to the judging panel on Thursday. The winners have been selected for their - [25% Aussie SMBs Would Not Survive A Privacy Breach](https://australiancybersecuritymagazine.com.au/25-aussie-smbs-would-not-survive-a-privacy-breach/) - A quarter of Australia’s two-and-a-half million small and medium businesses (SMBs) would not survive the financial and reputational damage of a privacy breach, according to new research by Zoho. The research, which sought to understand cyber awareness amongst Australia’s SMBs, found that while awareness is growing, too many businesses are unprepared and unequipped to deal - [Chinese State Linked Hackers Target US & Japanese Multinationals](https://australiancybersecuritymagazine.com.au/chinese-state-linked-hackers-target-us-japanese-multinationals/) - Written by staff writer. Multiple law enforcement and security agencies are warning US and Japanese multinationals to check the internet routers at subsidiaries and branches as a Chinese state-linked hacking group called BlackTech attempts to infiltrate big multinational companies via their smaller entities. The joint advisory, “People's Republic of China-Linked Cyber Actors Hide in Router - [LaunchVic Searches for Unicorns](https://australiancybersecuritymagazine.com.au/launcvic-searches-for-unicorns/) - LaunchVic has put a callout for Victoria’s next wave of tech unicorns with expressions of interest for its pioneering 30X30 program open today. The company says its program has assisted some of Victoria’s fastest-growing scaleup companies, such as JET Charge, HammerTech and Nutromics, with executive education for their HR, Operations, and Finance leads. LaunchVic says - [Australia in top 10 Countries Affected by Extortion Attacks](https://australiancybersecuritymagazine.com.au/australia-in-top-10-countries-affected-by-extortion-attacks/) - Trend Micro Incorporated has published data revealing that Australia was one of the top 10 countries targeted by ransomware operators with a total of 47 ransomware victims in the first six months of 2023. The news follows data released by Trend Micro earlier this year which highlighted that Australia and New Zealand (ANZ) have the highest rate - [CyberArk Collaborates with Accenture](https://australiancybersecuritymagazine.com.au/cyberark-collaborates-with-accenture/) - CyberArk has announced that Accenture has expanded its deployment of the CyberArk Identity Security Platform to include CyberArk Privilege Cloud. The solution enables Accenture to control and monitor privileged access across on-premises, cloud and hybrid infrastructures for clients as well as their own IT environment. “Accenture is one of our most successful advisory partners with - [Macquarie Cloud Services and VITG Expand Agreement](https://australiancybersecuritymagazine.com.au/macquarie-cloud-services-and-vitg-expand-agreement/) - Macquarie Cloud Services, part of Macquarie Technology Group has announced it has expanded an agreement with Virtual IT Group to provide secure private cloud services for its healthcare clients. Headquartered in Illawarra, New South Wales, Virtual IT Group (VITG) provides managed network, infrastructure, applications, and security services to a range of sectors across Australia. To - [First Australian Space Cyber Forum](https://australiancybersecuritymagazine.com.au/first-australian-space-cyber-forum/) - Regulating competing foreign interests in space complements the need for more controls over increasingly crowded cyberspace, says experts at the Flinders University. As the Australian Government prepares it 2023-2030 national cybersecurity strategy, the University’s Jeff Bleich Centre is launching the first Australian Space Cyber Forum to discuss space security. “Cyberspace and outer space are interdependent. As awareness - [Minister Says Company Directors Are Now Taking Cyber Security Seriously](https://australiancybersecuritymagazine.com.au/minister-says-company-directors-are-now-taking-cyber-security-seriously/) - Written by staff writer. Australia's cybersecurity minister Clare O'Neil says there has been a big shift in how seriously corporate Australia and boards take their responsibilities to protect their organization from cyberattacks. "We've seen corporate Australia get a big wakeup call about their important responsibilities," she told ABC radio during a September 19 interview. "I - [Cyber Ready? Australian Businesses Rise to the Challenge](https://australiancybersecuritymagazine.com.au/cyber-ready-australian-businesses-rise-to-the-challenge/) - Australian organisations face a perilous, rapidly evolving cyber threat landscape. While legal risks see lawyers on the front-line of defence, 38 per cent of lawyers surveyed have not participated in a cyber crisis simulation and only 19 per cent have a legal-specific incident response plan. There is an increasing concern that this represents a gap - [Charity Breach Dark Web Leak: A Lesson in Cyber Response](https://australiancybersecuritymagazine.com.au/charity-breach-dark-web-leak-a-lesson-in-cyber-response/) - Written by Michael Jenkins, CTO ThreatLocker. The recent Pareto Phone hack - which has apparently led to thousands of Australian charity donors’ details being leaked onto the dark web - has generated fiery debate in recent days. Firstly, because of the sensitive nature of the industry and wide-scale impact of the attack. But also due - [One Million Plus Dymocks Customers Impacted by Cyber Attack](https://australiancybersecuritymagazine.com.au/one-million-plus-dymocks-customers-impacted-by-cyber-attack/) - Written by staff writer. Australia's biggest chain of bookshops, Dymocks, has revised upwards the number of customers affected by a cyber attack in early September. Late last week, the retailer emailed customers saying an additional 400,000 customers are impacted. "While our investigation is ongoing, it has been confirmed that 1.24 million customer contact records were - [Experts Say Cyber Assurance Questionnaires Have Become Pointless](https://australiancybersecuritymagazine.com.au/experts-say-cyber-assurance-questionnaires-have-become-pointless/) - Written by staff writer. The traditional supplier cyber assurance questionnaires are becoming obsolete and meaningless, according to Peter Watson, principal sales engineer at cybersecurity company Recorded Future. Speaking during a September 13 information session on vendor and supplier risks, Watson said such questionnaires became outdated almost as soon as they were completed. Despite this, many - [Palo Alto Networks and Telstra Alliance](https://australiancybersecuritymagazine.com.au/palo-alto-networks-and-telstra-alliance/) - Palo Alto Networks and Telstra have partnered to deliver an enhanced suite of cyber security products and services for Telstra’s Australian and global business customers. Palo Alto Networks says it has become the first dedicated cyber security company to be named a technology alliance partner supporting the Telstra enterprise customer segment, servicing customers across more - [Gigamon’s Precryption Technology](https://australiancybersecuritymagazine.com.au/gigamons-precryption-technology/) - Gigamon has announced a series of breakthrough cybersecurity innovations to the Gigamon Deep Observability Pipeline in its latest GigaVUE 6.4 software release. Gigamon says its Precryption technology enables IT and security organizations, for the first time with an automated solution, to gain unobscured visibility into encrypted traffic across virtual machine (VM) or container workloads to - [Tesserent’s New Appointment to Turbocharge Diversity](https://australiancybersecuritymagazine.com.au/tesserents-new-appointment-to-turbocharge-diversity/) - Tesserent has appointed Mr Andrew Shea as Managing Partner of the Tesserent Academy. After more than 20 years with significant achievements at other vocational education providers, Andrew has made a rare pivot to bring his expertise in training to tackle the challenge of attracting and upskilling cybersecurity talent the nation desperately needs. Australia's cybersecurity labour - [Australia is Falling Behind in Digital Innovation](https://australiancybersecuritymagazine.com.au/australia-is-falling-behind-in-digital-innovation/) - Written by Craig Nielsen, VP, APAC at GitLab. Business innovation in Australia is a national imperative according to the Digital Technology Taskforce, with a goal to become a leading digital economy and society by 2030. But we are falling short. Australia’s place on the Global Innovation Index dropped two places in 2020 and has remained at 25th for two - [HAT Distribution Brings DeviceTotal To ANZ](https://australiancybersecuritymagazine.com.au/hat-distribution-brings-devicetotal-to-anz/) - HAT Distribution has announced a strategic distribution agreement with Israeli attack surface management platform, DeviceTotal. With the ever-increasing complexities of the modern IT estate, the need for robust risk management has become paramount. DeviceTotal enables organisations to be proactive, rather than reactive, about their attack surface with its comprehensive, agentless, non-invasive solution that continuously monitors - [Australia-India Cyber and Technology Grant](https://australiancybersecuritymagazine.com.au/australia-india-cyber-and-technology-grant/) - University of Wollongong (UOW), in collaboration with Indian Institute of Technology (IIT) Kanpur, has received an Australia-India Cyber and Critical Technology Partnership grant to improve privacy in cloud computing. Funded through the Department of Foreign Affairs and Trade (DFAT), the grant is designed to promote safety, prosperity and security for the Indo-Pacific region through cyber - [Notifiable Data Breaches Down, but OAIC Stresses Need for Vigilance](https://australiancybersecuritymagazine.com.au/notifiable-data-breaches-down-but-oaic-stresses-need-for-vigilance/) - Written by staff writer. The Office of the Australian Information Commissioner (OAIC) says healthcare organisations were the most likely to report a data breach in the first half of 2023. However, the Australian Government agency says entities reported 15% fewer data breaches in 1H 2023 than in 2H 2022. The OAIC regularly releases snapshots of - [OneStep Group Merges with ES2](https://australiancybersecuritymagazine.com.au/onestep-group-merges-with-es2/) - OneStep Group has acquired Microsoft gold partner and cyber security firm, ES2. With cyber threats evolving at an unprecedented pace, the acquisition of Perth-based ES2 will establish synergy that marks a step forward in expanding OneStep Group’s enterprise capability and footprint. The Victoria-based ICT services business's services will also include enhanced Microsoft capabilities and fortified - [Australian Government Vetoes Online Porn Age Verification Tool](https://australiancybersecuritymagazine.com.au/australian-government-vetoes-online-porn-age-verification-tool/) - Written by staff writer. The Australian Government will not implement a recommendation made earlier this year by its eSafety Commissioner to introduce an age verification tool, a so-called porn passport. The commissioner recommended age verification as a way to block minors from accessing online pornography. In its response published on August 30, the government says - [Average cost of a data breach in Australia up 32%](https://australiancybersecuritymagazine.com.au/average-cost-of-a-data-breach-in-australia-up-32/) - IBM has released key Australian data points from its recent global survey, which was covered under the Cost Of Data Breach Report 2023 launched last month. The average cost of a data breach in Australia has grown 32% in the last 5 years, reaching AUD $4.03 million according to the report findings. Chris Hockings, Chief - [Security Threat After Cyber Attack on London Metropolitan Police Contractor](https://australiancybersecuritymagazine.com.au/security-threat-after-cyber-attack-on-london-metropolitan-police-contractor/) - Written by staff writer. London Metropolitan Police disclosed over the weekend that hackers had infiltrated the IT systems of a third-party supplier, resulting in the theft of sensitive data about police force employees. It is understood the supplier stored information on their servers detailing the names, photos, ranks, identification numbers, vetting levels, and payroll details - [Donor Data Compromised in Charity Telemarketer Cyber Attack](https://australiancybersecuritymagazine.com.au/donor-data-compromised-in-charity-telemarketer-cyber-attack/) - Written by staff writer. A cyber attack on charity telemarketing firm ParetoPhone has compromised the personal data of thousands of Australians, leading to renewed claims that many organisations are not handling personal identifiable information safely and securely. The cyberattack occurred in April but was only recently disclosed to its clients as donor data became available - [Ivanti Sentry Authentication Bypass Vulnerability](https://australiancybersecuritymagazine.com.au/ivanti-sentry-authentication-bypass-vulnerability/) - An API Authentication Bypass vulnerability (CVE-2023-38035) has been identified in Ivanti Sentry MICS Admin Portal, allowing access to the administrator interface in Ivanti Sentry versions 9.18. 9.17 and 9.16. Versions prior to this remain at risk. Exploitation of this vulnerability may allow an actor to gain unauthorised access to the administrator portal and change configuration, - [$76 Million Hit on Latitude Post Cyber Incident](https://australiancybersecuritymagazine.com.au/76-million-hit-on-latitude-post-cyber-incident/) - In a statement released to the market on Friday, Latitute Group Holdings confirmed it made a statutory loss after tax of $98.2 million from continuing operations, including $76 million of pre-tax costs and provisions relating to the March cyber incident. The company’s Money Division A&NZ volumes of $637 million were significantly impacted by the business system shut - [China Blames US Intelligence Agencies for Earthquake Centre Cyber Attack](https://australiancybersecuritymagazine.com.au/china-blames-us-intelligence-agencies-for-earthquake-centre-cyber-attack/) - Written by staff writer. China's Ministry of State Security (MSS) has attributed a recent cyberattack on the Wuhan Earthquake Monitoring Center to US intelligence agencies. In an article posted to the Chinese social media platform WeChat this week, the MSS said the country's National Computer Virus Emergency Response Center (CVERC) and Chinese cybersecurity company 360 - [Busted: Burst SMS Breaches Anti-Scam Rules](https://australiancybersecuritymagazine.com.au/busted-burst-sms-breaches-anti-scam-rules/) - Sydney-based business Known Pty Ltd (trading as Burst SMS) has breached SMS anti-scam rules by allowing scammers to send messages impersonating well-known Australian brands, including financial institutions, telcos, couriers, ride share and ticketing companies. An Australian Communications and Media Authority (ACMA) investigation found Burst SMS offered its customers a free trial to send up to 10 messages - [Appdome Launches Cyber Community Program](https://australiancybersecuritymagazine.com.au/appdome-launches-cyber-community-program/) - Appdome has announced the launch of its new Mobile App Defense Project, a community program aimed at improving mobile DevSecOps through collaboration with more than 50 renowned mobile app penetration testers around the world. As mobile application use and revenues continue to rise dramatically, mobile application security testing has become a hot topic and fast - [Cyber Vulnerabilities Identified in Australia’s Rooftop Solar Systems](https://australiancybersecuritymagazine.com.au/cyber-vulnerabilities-identified-in-australias-rooftop-solar-systems/) - Written by staff writer. Senator James Paterson, the Shadow Minister for Home Affairs and Cyber Security, is warning that over half of the internet-connected photovoltaic (solar) inverters now installed on rooftops around Australia could be weaponised by unfriendly nation-states. A solar inverter converts the energy output from solar panels into a usable electricity form. The - [Cybercriminals Target Apple Users](https://australiancybersecuritymagazine.com.au/cybercriminals-target-apple-users/) - Bitdefender has revealed at Black Hat USA 2023 the macOS Threat Landscape Report, which looks at the top threats and trends targeting Apple’s macOS operating system over the duration of 12 months. The report aims to dispel the myth that Apple products such as macOS and iOS are free from cybercriminal targeting and campaigns. On - [Cyber Governance Questioned After Attack on UK Electoral Commission](https://australiancybersecuritymagazine.com.au/cyber-governance-questioned-after-attack-on-uk-electoral-commission/) - Written by staff writer. Questions have been raised about the effectiveness of cyber security and its governance after the UK Electoral Commission went public this week about an infiltration of their servers which went undetected for over one year. The Electoral Commission is the UK government’s agency that oversees elections and regulates political finance. On - [Helping Banks Quickly Improve Conduct](https://australiancybersecuritymagazine.com.au/helping-banks-quickly-improve-conduct/) - SWARM Dynamics says it is spearheading a risk analysis transformation for banks and financial institutions as the early-stage company embarks on its international expansion. With a unique fusion of behavioural science and artificial intelligence (AI), SWARM Dynamics enables organisations to accurately predict conduct risk, swiftly resolve regulatory orders, and elevate their risk culture up to - [Tesserent Snares Former EY, Microsoft and Virgin Leads](https://australiancybersecuritymagazine.com.au/tesserent-snares-former-ey-microsoft-and-virgin-leads/) - Tesserent has announced that Silas Barnes has been appointed Senior Partner Offensive Security Services, Kelly Taylor assumes the role of Director of Partners and Alliance and E-Yang Tang takes responsibility as Senior Partner for Security Architecture, Engineering, Analytics and Alliances. Silas has undertaken several high-profile cyber leadership roles during his career including Group Chief Information - [F5's IRAP Assessment](https://australiancybersecuritymagazine.com.au/f5s-irap-assessment/) - F5 has announced the company’s completion of the Infosec Registered Assessors Program (IRAP) Assessment for F5 Distributed Cloud Services. Developed by the Australian Signals Directorate (ASD), IRAP is an independent assessment of the implementation, appropriateness, and effectiveness of a system’s security controls. IRAP Assessment outcomes are documented within a report which can be used by - [Australian Community Attitudes to Privacy Survey](https://australiancybersecuritymagazine.com.au/australian-community-attitudes-to-privacy-survey/) - The OAIC’s latest Australian Community Attitudes to Privacy Survey (ACAPS) provides a comprehensive overview of Australians’ privacy attitudes and experiences and how recent events have impacted them. ACAPS is a longstanding study commissioned by the OAIC to evaluate the awareness, understanding, behaviour and concerns about privacy among Australians. The research has evolved since the first - [Oracle's Vision of New Government Cloud](https://australiancybersecuritymagazine.com.au/oracles-vision-of-new-government-cloud/) - Oracle has released its new Oracle Cloud for Australian Government and Defence in Canberra. “The ACT Government welcomes Oracle’s investment in this new capability here in Canberra,” said Andrew Barr, chief minister and treasurer, ACT Government. “The cloud region will be an important addition to our city’s digital infrastructure and adds to the depth and - [Hyprfire Awarded Accelerating Commercialisation Grant from Final Round of AusIndustry Entrepreneurs' Programme.](https://australiancybersecuritymagazine.com.au/hyprfire-awarded-accelerating-commercialisation-grant-from-final-round-of-ausindustry-entrepreneurs-programme/) - Cybersecurity software business, Hyprfire, has been awarded a $785,322 Accelerating Commercialisation Grant from the AusIndustry Entrepreneurs' Programme, funded by the Department of Industry, Science and Resources of the Australian Federal Government. The grant was awarded as part of a competitive process, where applicants are judged by an independent panel against key commercialisation criteria and a - [Australia is a Top Three Target Country for Bangladeshi Hacktivists](https://australiancybersecuritymagazine.com.au/australia-is-a-top-three-target-country-for-bangladeshi-hacktivists/) - By Staff Writer Australia is one of the top three countries targeted by hacktivist group Mysterious Team Bangladesh. Recently released research by Group IB shows Australian entities are the targets in 12.3% of the group's distributed denial-of-service (DDoS) attacks, trailing only India (34%) and Israel (18.1%). Mysterious Team Bangladesh has carried out over 850 DDoS - [A24 Bolsters Ranks with the New Appointment](https://australiancybersecuritymagazine.com.au/a24-bolsters-ranks-with-the-new-appointment/) - A24 has appointed Shane Tully as the Global Chief Information Security Officer (CISO). “I am delighted to join a company that is committed to a multi-layered approach that combines technology, partners, processes, and people to help clients achieve superior critical infrastructure and security hygiene. A24 work tirelessly to mitigate risks and ensure that our clients’ - [2023 Cloud Threat Findings Report](https://australiancybersecuritymagazine.com.au/2023-cloud-threat-findings-report/) - Cado Security has released its Security Labs 2023 Cloud Threat Findings Report, revealing discoveries about the evolving cloud threat landscape and shedding light on the heightened risk of cyberattacks due to the rapid adoption of cloud-focused services. “Our goal with this report is to equip incident responders and security professionals with essential knowledge, enabling them to adequately secure - [AI in Security Operations](https://australiancybersecuritymagazine.com.au/ai-in-security-operations/) - We speak with Asjad Athick, Cyber Security Lead, APAC for Elastic who gave a presentation at CISO Melbourne earlier this week. Asjad’s presentation encompassed the concepts around ‘unleashing the full potential of AI in security operations’. In today's rapidly evolving threat landscape, security analysts play a crucial role in protecting organizations from cyberattacks. However, the - [Sekuro’s Cyber Resilience Program](https://australiancybersecuritymagazine.com.au/sekuros-cyber-resilience-program/) - Sekuro has announced the launch of a new subscription-based service, the Cyber Resilience Program (CRP), in response to a five-fold increase in demand from businesses wanting to become more cyber resilient with limited in-house skills and resources. The Australian Information Industry Association (AIIA) found cyber security is among the two strongest skills in demand among its members, alongside AI. - [ParaFlare and Deloitte Australia Join Forces](https://australiancybersecuritymagazine.com.au/paraflare-and-deloitte-australia-join-forces/) - ParaFlare and Deloitte Australia will join forces to step up the fight against the growing cyber threat faced by Australia. The ParaFlare team of almost 80 people will be joining Deloitte, including Chief Executive Officer Adam McCarthy and Chief Technology Officer Frank Santucci, who will join as Deloitte partners. Deloitte Australia CEO Adam Powick said: - [Optimise Security for Modern Application Stacks](https://australiancybersecuritymagazine.com.au/optimise-security-for-modern-application-stacks/) - We speak with Gregg Ostrowski, CTO Advisor with Cisco AppDynamics and discuss the findings from the Cisco AppDynamics Application Security Report, titled 'The shift to a security approach for the full application stack', which sets out the current challenges facing IT departments. The speed of application development has increased exponentially over the last two years, - [Reddit's Former Gusto Appointment](https://australiancybersecuritymagazine.com.au/reddits-former-gusto-appointment/) - Reddit has appointed Fredrick “Flee” Lee as its new Chief Information Security Officer, reporting to the company's CTO Chris Slowe. Flee has more than 20 years of experience leading global information security and privacy efforts at major financial services companies and technology startups, including as Chief Security Officer at Square and most recently as Chief - [Regional Cyber Resilience on AUSMIN Agenda Amid Growing Threats](https://australiancybersecuritymagazine.com.au/regional-cyber-resilience-on-ausmin-agenda-amid-growing-threats/) - Written by staff writer. Australia-United States Ministerial Consultations (AUSMIN) 2023 Australia and the United States will deepen their working relationship across a range of security measures, including cybersecurity, according to a statement released by both countries following the AUSMIN consultations in Brisbane over the weekend. Australian Foreign Affairs Minister Penny Wong and Deputy Prime Minister - [Everyday hacking techniques prove sufficient for threat actors](https://australiancybersecuritymagazine.com.au/everyday-hacking-techniques-prove-sufficient-for-threat-actors/) - What has the world learned about cyber-security from the Russia Ukraine War? According to Microsoft’s ANZ National Security Officer, Mark Anderson, while the kinetic war still rages within the borders of Ukraine, the cyberwar is borderless, playing out across networks globally. Anderson has over 28 years experience in the IT industry with 18 of those - [New Zealand Gov’t to Fold CERT NZ Into National Cyber Security Centre](https://australiancybersecuritymagazine.com.au/new-zealand-govt-to-fold-cert-nz-into-national-cyber-security-centre/) - Written by staff writer. The New Zealand government is growing the National Cyber Security Centre's (NCSC) role and making it the country's lead operational agency to defend against cyberattacks. Minister for the Public Service Andrew Little and Minister for the Digital Economy Ginny Andersen announced the change on July 26. The most tangible outcome of - [AI, Data and the future of security, a tech CEOs view](https://australiancybersecuritymagazine.com.au/ai-data-and-the-future-of-security-a-tech-ceos-view/) - Stephen Scheeler is Australia’s most authoritative voice on digital disruption, transformation, culture & leadership. His experience at the heart of Silicon Valley is truly unparalleled, and he has a unique ability to inspire audiences of all kinds with rare insight, humour & humility. Stephen is the former Facebook CEO for ANZ and now CEO of - [What does SOCI mean for the security industry?](https://australiancybersecuritymagazine.com.au/what-does-soci-mean-for-the-security-industry/) - Roanne Monte is the CEO and Chief Product Officer of Armatec Global, a Sydney-based impact technology company serving the defence, critical infrastructure, and public and private sectors. With a steadfast commitment to a human-centred approach to product builds, Roanne leads the company in delivering innovative cyber and physical threat intelligence solutions that prioritizes user needs - [Kroll Appoints Former Police Chief](https://australiancybersecuritymagazine.com.au/kroll-appoints-former-police-chief/) - Kroll has announced the appointment of Michael Phelan as Strategic Advisor to its Forensic Investigations and Intelligence practice in Australia, adding to the team’s robust expertise in complex investigations related to fraud, corruption and anti-money laundering. Phelan was previously Chief Executive Officer of the Australian Criminal Intelligence Commission (ACIC) and Director of the Australian Institute of Criminology (AIC), - [Chillisoft Partners with Qualys](https://australiancybersecuritymagazine.com.au/chillisoft-partners-with-qualys/) - Chillisoft has partnered with Qualys as its distribution partner. The agreement expands Chillisoft’s cybersecurity portfolio offerings, enhancing and extending its ability to effectively assess, oversee and address cyber risks throughout its New Zealand customers’ operations. “Qualys is an exciting addition to our portfolio of cybersecurity partners. We’re looking forward to supporting our customers and their - [watchTowr partners with Mantel Group](https://australiancybersecuritymagazine.com.au/watchtowr-partners-with-mantel-group/) - watchTowr has partnered with Australian-owned consultancy Mantel Group. The watchTowr Platform enables organisations to continuously test their cyber security defences with the latest attack tactics and techniques, mimicking the persistence and aggression of real-world attackers. Most companies run penetration testing exercises on a yearly basis, utilising a third party to perform an expensive time-limited assessment, to - [AI Cyberattacks Coming to Healthcare](https://australiancybersecuritymagazine.com.au/ai-cyberattacks-coming-to-healthcare/) - Generative AI is set to transform the way healthcare organisations work, just like virtually every other industry, by increasing productivity and automating human tasks. Unfortunately, tools such as ChatGPT can also help attackers to create exploits and exfiltrate sensitive data out of healthcare organisations, in the same way that we demonstrated it facilitating an OT - [Advancing as a cybersecurity ally](https://australiancybersecuritymagazine.com.au/advancing-as-a-cybersecurity-ally/) - We speak with Anirudh Chand, Head of Solutions Engineering, APJ at Fortra. Anirudh has worked in cyber security for the last 20 years, with emphasis on compliance, integrity monitoring, privilege access and vulnerability management. For the past seven years, he has been leading solution engineers for different vendors, developing teams that add intrinsic value to - [Trustwave Expands Fusion Capabilities in Pacific](https://australiancybersecuritymagazine.com.au/trustwave-expands-fusion-capabilities-in-pacific/) - Trustwave has announced the expansion of its globally federated, cloud-native Fusion platform into the Pacific region, with Pacific client data will now be retained onshore in Australia. Jason Whyte, general manager for Pacific, Trustwave, said, “We are committed to continuing to grow our investment in the Pacific region to drive success for our clients and - [Curtin University and the Institute of Data Partner](https://australiancybersecuritymagazine.com.au/curtin-university-and-the-institute-of-data-partner/) - Curtin University and the Institute of Data (IOD) have announced a partnership aimed at delivering next-generation learning programs, equipping students with the skills needed to be both employed and excel in the rapidly-evolving tech industry. The partnership constitutes the first-ever collaboration between Curtin University and IOD, and will provide courses in the fields of Data - [Optus ‘Call Stop’ to Fight SMS Scams](https://australiancybersecuritymagazine.com.au/optus-call-stop-to-fight-sms-scams/) - Optus has partnered with the Australian Financial Crimes Exchange (AFCX) and banking members, including the major banks, in a bid to protect customers from SMS scams with the introduction of ‘Call Stop’. The initiative will help stop scammers in their tracks when they send out scam SMS to unsuspecting victims of an identified scam number. - [NEC Australia’s Cisco Secure Access Designation](https://australiancybersecuritymagazine.com.au/nec-australias-cisco-secure-access-designation/) - NEC Australia says it has become the second partner in Australia to receive Cisco’s Secure Access Designation’ in recognition of NEC’s Software Defined Network (SDN) solution. The company’s Software-Defined Network solution combines several technologies, including Cisco's Digital Network Architecture (DNA), Cisco Software-Defined Access (SDA), and Network Virtualization. This is further enhanced by Cisco Spaces and - [Secure Code Warrior’s $50M Series C Funding Round](https://australiancybersecuritymagazine.com.au/secure-code-warriors-50m-series-c-funding-round/) - Secure Code Warrior has announced it closed its Series C funding round, led by Paladin Capital Group. At $50M USD, this marks the largest investment since the company’s inception, bringing its total funding to date to over $100M USD. The new funding will accelerate Secure Code Warrior’s product innovation through its platform and go-to-market efforts, - [External Attack Surface of Australia’s Largest Organisations](https://australiancybersecuritymagazine.com.au/external-attack-surface-of-australias-largest-organisations/) - New research conducted by Tenable has unveiled a number of cyber hygiene issues such as outdated software, weak encryption and misconfigurations present within the largest organisations in Australia. On June 28, 2023, an examination of the external attack surface of 25 of Australia's organisations with the largest market capital [as listed on Market Index] was conducted. The findings - [75% of Australian Companies Overwhelmed by Data Security](https://australiancybersecuritymagazine.com.au/75-of-australian-companies-overwhelmed-by-data-security/) - More than three-quarters (76%) of Australian companies are overwhelmed by the amount of data they manage and 78% are concerned their current infrastructure will be unable to scale to meet upcoming demands, according to a new survey from Hitachi Vantara. The Data Management Infrastructure Dynamics report also revealed that most companies expect their data needs to nearly double in the - [Ventia says Recent Cyberattack Contained, but Questions Unanswered](https://australiancybersecuritymagazine.com.au/ventia-says-recent-cyberattack-contained-but-questions-unanswered/) - Written by staff writer. Ventia says a cyberattack on the weekend of July 8 and 9 is contained. The attack on the Sydney-headquartered essential infrastructure services provider caused it to take key systems offline. However, in a July 12 statement, Ventia says its key internal systems have been safely re-enabled and external-facing networks are systematically - [KnowBe4’s Annual Phishing Benchmarking Report](https://australiancybersecuritymagazine.com.au/knowbe4s-annual-phishing-benchmarking-report/) - KnowBe4 has released the new 2023 Phishing by Industry Benchmarking Report for Australia and New Zealand to measure an organisation’s Phish-prone Percentage (PPP), which indicates how many of their employees are likely to fall for a phishing or a social engineering scam. This year’s report reveals that according to the baseline testing conducted, without security training, across all industries, 34.8% of - [China's Targeting Of International Companies In Geopolitical Competition](https://australiancybersecuritymagazine.com.au/chinas-targeting-of-international-companies-in-geopolitical-competition/) - Recorded Future has released its latest report from its threat research division Insikt Group - China’s targeting of international companies in geopolitical competition. China is currently among the leading sources of geopolitically driven risk, given Beijing’s engagement in an escalating rivalry with the United States (US), assertive role in many potential flashpoints in Asia, and prioritisation - [Multichain Pauses Operations After USD120 Million Cyber Heist](https://australiancybersecuritymagazine.com.au/multichain-pauses-operations-after-usd120-million-cyber-heist/) - Written by staff writer. Blockchain bridge Multichain has suspended operations and is missing up to USD120 million after seeing “unusual activity” coinciding with a major cyber heist last week. Several cybersecurity firms sounded the alarm on July 6 about an attack after observing abnormally high numbers of tokens transferring from Multichain's bridging networks to unidentified - [TAFE NSW Graduate Cracks into a Cyber Security Career](https://australiancybersecuritymagazine.com.au/tafe-nsw-graduate-cracks-into-a-cyber-security-career/) - A young woman who began her Information Technology studies with TAFE NSW at just 14 years old is on track to achieve her goal of working in cyber security, landing an IT job at a global company based in Port Macquarie. Chiara Clarkson began her educational journey with a Certificate II in Information, Digital Media - [Episode 367 - Developing Malaysia’s cyber incident response capability](https://australiancybersecuritymagazine.com.au/episode-367-developing-malaysias-cyber-incident-response-capability/) - We speak with Dr Atif Ahmad, Associate Professor and Deputy Director for the Academic Centre of Cyber Security Excellence at the University of Melbourne and Current Visiting Associate Professor at UKM who is helping to develop Malaysia’s cyber incident response capability. Your browser does not support the audio element. Download Now - [Human Error Leading Cause Of Data Breaches](https://australiancybersecuritymagazine.com.au/human-error-leading-cause-of-data-breaches/) - Thales has announced the release of the 2023 Thales Cloud Security Study, its annual assessment of the latest cloud security threats, trends and emerging risks based on a survey of nearly 3,000 IT and security professionals across 18 countries including Australia. This year’s study found that more than a third (37%) of Australian businesses experienced - [DTEX Partners with Defence Trailblazer](https://australiancybersecuritymagazine.com.au/dtex-partners-with-defence-trailblazer/) - DTEX Systems has partnered with the Defence Trailblazer program, as one of 35 industry partners to join the $240 million dollar program, which aims to accelerate Australia’s defense innovation and workforce development. The program is a strategic partnership between the University of Adelaide and the University of New South Wales (UNSW) Sydney, with support from the Australian - [HWL Ebsworth Cyberattack a Top Priority for New Cybersecurity Tsar](https://australiancybersecuritymagazine.com.au/hwl-ebsworth-cyberattack-a-top-priority-for-new-cybersecurity-tsar/) - Written by staff writer. The newly appointed National Cyber Security Co-ordinator says briefings from the Department of Home Affairs and HWL Ebsworth are among his top priorities. In his first public statement since taking up the role, Air Marshall Darren Goldie said via his official Twitter account on July 5 that the briefings were his - [First Fusion Cell to Disrupt Investment Scams](https://australiancybersecuritymagazine.com.au/first-fusion-cell-to-disrupt-investment-scams/) - The National Anti-Scam Centre will coordinate an investment scam fusion cell to combat the growing problem of investment scams, which are costing Australians more than $1 billion a year. The fusion cell will be led by the ACCC and ASIC and include representatives from the banks, telecommunications industry and digital platforms. It will be the - [Macquarie Government New Appointment Rehire](https://australiancybersecuritymagazine.com.au/macquarie-government-new-appointment-rehire/) - Following Macquarie Technology Group’s $160M equity raise to fund the expansion of its data centres and next growth phase, Macquarie Government has announced that Michael Davies has returned to the Macquarie Technology Group family, taking the reigns as Head of Federal Government. Davies, who was most recently CEO of health software company, Global Health Limited, - [Excite Cyber’s First Privately Owned SOC in Tasmania](https://australiancybersecuritymagazine.com.au/excite-cybers-first-privately-owned-soc-in-tasmania/) - Cyber has launched the first privately owned 24/7 Security Operations Centre (“SOC”) in Tasmania. The SOC was officially launched by Madeleine Ogilvie MP, Minister for Science and Technology, at an event at the Waterside Pavilion attended by business, government and cybersecurity experts. The SOC will serve both the security needs of Tasmanian organisations and organisations - [Bell and Co Bolster RSM Leadership Ranks](https://australiancybersecuritymagazine.com.au/bell-and-co-bolster-rsm-leadership-ranks/) - RSM Australia has appointed nine new national promotions, including two new Partners, to in-demand specialist services such as climate and cyber security risk. This includes new Partner, Catherine Bell, who is joining the national ESG sustainability services team based in RSM’s Perth office. Catherine has extensive experience as a Global Sustainability Advisor both in Australia - [Action Taken Against Medibank’s Cyber Incident](https://australiancybersecuritymagazine.com.au/action-taken-against-medibanks-cyber-incident/) - The Australian Prudential and Regulation Authority (APRA) announced it has taken action against Medibank Private following an APRA review of its major cyber incident in October 2022. Following APRA’s examination of the matters relating to the incident, APRA will impose an increase in Medibank’s capital adequacy requirement of $250 million, reflecting weaknesses identified in Medibank’s - [Commvault Unlocks New VP for ANZ](https://australiancybersecuritymagazine.com.au/commvault-unlocks-new-vp-for-anz/) - Commvault has appointed Martin Creighan as Area Vice President for Australia and New Zealand. Based in Sydney, Creighan will be responsible for accelerating the company’s presence and strengthening relationships with customers and partners across the region. With over three decades in the industry, Martin brings a wealth of leadership expertise and knowledge in the software, - [Thales Proposes to Acquire Tesserent](https://australiancybersecuritymagazine.com.au/thales-proposes-to-acquire-tesserent/) - Tesserent and Thales have entered into a binding Scheme Implementation Deed (SID) under which it is proposed that Thales will acquire 100% of the shares in Tesserent by way of a Scheme of Arrangement for A$0.13 per ordinary share in cash valuing Tesserent’s equity at A$176m (circa €107 million). The combination of Thales and Tesserent - [Critical Severity Vulnerability in Fortinet Fortigate SSL-VPN Devices](https://australiancybersecuritymagazine.com.au/critical-severity-vulnerability-in-fortinet-fortigate-ssl-vpn-devices/) - The Australian Cyber Security Centre has issued a citicial alert in relation to a Remote Code Execution vulnerability (CVE-2023-27997) which has been identified in multiple versions of Fortinet Fortigate devices when SSL-VPN is enabled. The alert confirms Fortigate is a widely used type of Next-Generation Firewall device. Exploitation of this vulnerability could allow a malicious - [Scam Alert – Government Impersonation Scams](https://australiancybersecuritymagazine.com.au/scam-alert-government-impersonation-scams/) - Be wary of calls, emails or SMS claiming to be from an Australian government agency that ask you to urgently update personal information, claim a refund or make a payment. This could be a scam. Government impersonation scams are increasingly common, and can be delivered by phone, email or SMS. Callers may threaten to cancel - [Macquarie Data Centres’ Sydney and Canberra Campuses](https://australiancybersecuritymagazine.com.au/macquarie-data-centres-sydney-and-canberra-campuses/) - Macquarie Data Centres, part of Macquarie Technology Group has completed major upgrades to its Data Centre Campuses in Sydney and Canberra. The multi-million-dollar project includes the addition of two further ultra-secure zones to their Sydney and Canberra campuses plus significant power upgrades. The zones have been added to the fully sovereign provider’s data centres and - [Netskope Selected by Transdev](https://australiancybersecuritymagazine.com.au/netskope-selected-by-transdev/) - Netskope has been selected by Transdev to install Netskope Private Access (Netskope’s ZTNA solution) and Secure Web Gateway (NG-SWG) - both parts of Netskope’s Intelligent SSE platform. Technical roll-out started in France, before extending to Transdev’s teams in Germany, Canada and Australia, enabling data and threat protection for enhanced user experiences of connectivity to the - [Beyond Cybersecurity for Better Business Outcomes](https://australiancybersecuritymagazine.com.au/beyond-cybersecurity-for-better-business-outcomes/) - A strong cybersecurity posture is essential to business success. As the modern workplace has become increasingly digitised, and additional processes are heavily reliant on technology, cybersecurity has become more of a board-level concern than ever before, and chief information security officers (CISOs) have taken on the role of gatekeeper. As such, CISOs need to extend - [Schneider Electric Appoints Cybersecurity Officer](https://australiancybersecuritymagazine.com.au/schneider-electric-appoints-cybersecurity-officer/) - Schneider Electric has appointed Asaf Ahmad as the new Senior Cybersecurity Governance Officer for the Pacific Zone, who has recently commenced the position. Asaf, who has recently commenced the position, will play an integral role within the Cybersecurity Governance, Risk and Compliance division at Schneider Electric, assisting business enablement to minimise risk while continuously maturing - [Australia Joins Global Partners to Fight Scams](https://australiancybersecuritymagazine.com.au/australia-joins-global-partners-to-fight-scams/) - Australia has joined five other nations in strengthening strategic engagement in the global fight against scams, unsolicited telemarketing and spam following an agreement between international regulators. The ACMA has entered into a renewed memorandum of understanding (MOU) as part of the global Unsolicited Communications Enforcement Network (UCENet), along with agencies from the Republic of Korea, - [How to War-Game for a Nationwide Attack](https://australiancybersecuritymagazine.com.au/how-to-war-game-for-a-nationwide-attack/) - Written by Tony Campbell, Director Innovation & Research, Sekuro. War-gaming and scenario planning for cyber attacks have finally become part of Board and executive-level discussions. While overdue, this is good progress. Organisations across the country are waking up to the reality that threats are ever-present and only getting more sophisticated and widespread. The government recently - [Cyber Threat Actors Eye Aviation Industry, Airlines Step up Security](https://australiancybersecuritymagazine.com.au/cyber-threat-actors-eye-aviation-industry-airlines-step-up-security/) - Written by staff writer. Aviation is a target-rich industry for cybercriminals, with private and state-sponsored crime syndicates increasingly attempting to disrupt it. However, airlines are well aware of the threat and are fighting back with the full backing of regulatory agencies and governments. Malicious actors like the aviation industry. It is high profile, complex, and - [Bogus Websites Continuing to Harvest Data From NDIS Clients](https://australiancybersecuritymagazine.com.au/bogus-websites-continuing-to-harvest-data-from-ndis-clients/) - Written by staff writer. A fake website registered in the United States impersonating a bona fide Sydney-based organisation is the latest attempt by cybercriminals to leverage the National Disability Insurance Scheme (NDIS) to defraud disabled Australians and taxpayers. The phony website, australianagedanddisabilitycare, has the same name as a genuine NDIS provider, Australian Disability and Aged - [Stopping Cyberattacks with AI](https://australiancybersecuritymagazine.com.au/stopping-cyberattacks-with-ai/) - Written by Stephane Marouani, Country Manager ANZ at Mathworks. The war in Ukraine has caused a dramatic rise in distributed denial-of-service (DDoS) cyberattacks worldwide, digital offensives that can bring down websites by overwhelming the targeted server with a deluge of internet traffic. Millions occur every year, with the number and size rising. Approximately a third - [Cipherpoint Signs Agreement with Trend Micro](https://australiancybersecuritymagazine.com.au/cipherpoint-signs-agreement-with-trend-micro/) - Cipherpoint has announced that Excite IT, its recently acquired wholly owned subsidiary, has entered into an agreement with Trend Micro Australia to provide security operations services to support Trend’s managed detection and response service in Australia. Trend Micro and Excite IT are in the final stages of deploying and testing the new services, and will - [Netskope’s Out Former Cisco Lead](https://australiancybersecuritymagazine.com.au/netskopes-out-former-cisco-lead/) - Netskope has announced that after just eight years of operations in ANZ, it now counts more than 25% of the ASX50 in its customer ranks, as well as 36 federal and state government entities. Three of the four largest insurance companies in Australia use Netskope, and its platform protects more than 625,000 Australian workers from - [Number of Aussie Tech Workers on Rise](https://australiancybersecuritymagazine.com.au/number-of-aussie-tech-workers-on-rise/) - Australia’s tech workforce has grown 8 percent in the past 12 months, in line with the government’s goal of 1.2 million technology-related jobs by 2030. Figures released today by the Tech Council show the overall tech workforce has increased to 935,000 compared to 865,000 a year ago. Driving the increase are software developers, data analysts - [NEC Australia and Western Sydney University Partner](https://australiancybersecuritymagazine.com.au/nec-australia-and-western-sydney-university-partner/) - NEC Australia and Western Sydney University have signed a Memorandum of Understanding (MoU) as part of a collaborative agreement that will focus on generating purpose-led and innovative outcomes to enhance growth, development and opportunities in Western Sydney. The partnership builds on a shared vision to utilise expertise, resources and networks to ensure one of the - [SAP Partners with Victoria University Polytechnic](https://australiancybersecuritymagazine.com.au/sap-partners-with-victoria-university-polytechnic/) - SAP SE has announced it has partnered with Victoria University Polytechnic to deliver a training program that seeks to meet the growing demand for SAP skills in Australia. In Data Processing, SAP stands for Systems, Applications & Products. The training program, which is part of the Victorian Government’s $63.8 million Digital Jobs program, is focused - [Scam Alert: ACMA Impersonation Scam](https://australiancybersecuritymagazine.com.au/scam-alert-acma-impersonation-scam/) - Have you received a call or email threatening to disconnect your phone service, claiming to be from the Australian Communications and Media Authority (ACMA) or another government agency? Be wary – this is a scam. Scammers are targeting people who speak Mandarin by pretending to represent a government agency. Some calls also give an English - [Qualys Appoints in Local Talent](https://australiancybersecuritymagazine.com.au/qualys-appoints-in-local-talent/) - Qualys has appointed Richard Sorosina as Chief Technology Security Officer (CTSO) for Australia and New Zealand, along with Frances Kwok in the newly created Business Operations Management role and Neil Chen joining as a new Technical Account Manager. In the position of CTSO, Sorosina will be responsible for consulting with clients who are looking to - [Recommendations for Federal Vulnerability Disclosure Guidelines](https://australiancybersecuritymagazine.com.au/recommendations-for-federal-vulnerability-disclosure-guidelines/) - Internal and external reporting of security vulnerabilities in software and information systems owned or utilized by the Federal Government is critical to mitigating risk, establishing a robust security posture, and maintaining transparency and trust with the public. Formalizing actions to accept, assess, and manage vulnerability disclosure reports can help reduce known security vulnerabilities and exposures. - [Surviving the Metaverse In 2030](https://australiancybersecuritymagazine.com.au/surviving-the-metaverse-in-2030/) - Written by Tony Campbell, Director of Innovation and Research, Sekuro. By 2030, the Metaverse will have achieved mass adoption across both consumer and business markets, with billions of dollars of investment and capability powering a truly parallel existence. As with the ubiquity of the Internet today, organisations will adopt increasingly sophisticated digital replicas of their - [PRC State-Sponsored Cyber Actor Living off the Land to Evade Detection joint cybersecurity advisory](https://australiancybersecuritymagazine.com.au/prc-state-sponsored-cyber-actor-living-off-the-land-to-evade-detection-joint-cybersecurity-advisory/) - Written by staff writer. The Australian Cyber Security Centre has released a joint advisory with international partners on a recently discovered cluster of activity associated with a People’s Republic of China (PRC) state-sponsored cyber actor, also known as Volt Typhoon. The advisory provides an overview of hunting guidance and best practices to detect the cyber - [Legitimate App iRecorder Turns Malicious](https://australiancybersecuritymagazine.com.au/legitimate-app-irecorder-turns-malicious/) - ESET researchers have discovered a trojanised Android app named iRecorder - Screen Recorder. It was available on Google Play as a legitimate app in September 2021, with malicious functionality most likely added in August 2022. During its existence, the app was installed on more than 50,000 devices. The malicious code that was added to the - [OpenJDK offering security and cost efficiencies](https://australiancybersecuritymagazine.com.au/openjdk-offering-security-and-cost-efficiencies/) - Azul is the largest provider of commercial support for OpenJDK, supporting more versions of Java than any other vendor, including Oracle. The University of Sydney has recently selected Azul as the institution’s sole Java provider, switching from Oracle Java. The announcement takes place amid major changes to Oracle Java pricing and a rapid increase in - [AvePoint’s New VP from Within](https://australiancybersecuritymagazine.com.au/avepoints-new-vp-from-within/) - AvePoint has appointed Max McNamara as Vice President and Managing Director, Australia & New Zealand. Max joined AvePoint in August 2022 as Director of Solutions Engineering after a decade at Microsoft-focused professional services consultancy, Antares Solutions, where he previously held the position of General Manager. In his new role, Max will focus on the development and - [Critical Technologies Securing Australia's Future](https://australiancybersecuritymagazine.com.au/critical-technologies-securing-australias-future/) - The federal government says it has updated the List of Critical Technologies that will help secure Australia’s future. The updated list focuses on key enabling technology fields that will have a high impact on our national interest, including by providing opportunities to grow our economy, provide well-paying jobs and improve the lives of Australians. The updated - [Ransomware Group BianLian Targeted in a Joint Cybersecurity Advisory](https://australiancybersecuritymagazine.com.au/ransomware-group-bianlian-targeted-in-a-joint-cybersecurity-advisory/) - Written by staff writer. Ransomware group BianLian was the subject of a joint cybersecurity advisory last week, with the Australian Cyber Security Centre (ACSC), Federal Bureau of Investigations (FBI), and Cybersecurity and Infrastructure Security Agency (CISA) warning that the cybercriminal group is increasingly active and now focusing on exfiltration-based extortion. The FBI says BianLian has - [Future of Resilience for IT decision makers](https://australiancybersecuritymagazine.com.au/future-of-resilience-for-it-decision-makers/) - We speak with Connell Perera, NEC Australia Cyber Security Portfolio Manager. NEC Australia offers a comprehensive range of assessments and managed security services to provide businesses and government departments with peace of mind. NEC Security is focussed on rapidly reducing your risk with a threat focused defence, maximising your security investment through automation and machine - [Australians Lose Almost $200M to Scams](https://australiancybersecuritymagazine.com.au/australians-lose-almost-200m-to-scams/) - April was an expensive month for Australians who experienced financial loss to scams, with almost $52 million stolen by criminals over the course of the month, meaning Australians have now lost almost $200 million to scammers this year alone. The latest findings from the Australian Competition and Consumer Commission’s (ACCC) Scamwatch also reveal the number of scams - [What Australia Can Learn from the US Bio-Terror Simulation](https://australiancybersecuritymagazine.com.au/what-australia-can-learn-from-the-us-bio-terror-simulation/) - Written by Tony Campbell, Director Innovation & Research, Sekuro. Home Affairs Minister Clare O’Neil is working to prepare Australia for a “dystopian future”, which will include new cyber exercises to help energy companies, banks, health providers and other critical infrastructure providers become more resilient in the face of evolving cyber threats. This is a much-needed step in the - [Ransomware Attacks Decline in Australia](https://australiancybersecuritymagazine.com.au/ransomware-attacks-decline-in-australia/) - Sophos has released its annual State of Ransomware 2023 report, which found that the rate of ransomware attacks declined in Australia in 2022 with 70 per cent of organisations surveyed saying they were a victim to ransomware compared to 80 per cent the year before. In 69 per cent of ransomware attacks against surveyed organisations, adversaries succeeded - [Australia’s $23M Cyber Wardens Program](https://australiancybersecuritymagazine.com.au/australias-23m-cyber-wardens-program/) - Australian small businesses and their employees will take a leading role in the nation's defence against global cyber crime, with a $23.4 million investment in the national Cyber Wardens program in this week's federal budget. The program is anticipated to create up to 60,000 Cyber Wardens in small businesses within three years, building small business - [75% Australian Organisations Concerned About 5G](https://australiancybersecuritymagazine.com.au/75-australian-organisations-concerned-about-5g/) - Thales today announced the release of 2023 Thales Data Threat Report, its annual report on the latest data security threats, trends and emerging topics based on a survey of nearly 3000 IT and security professionals in 18 countries. As ransomware attacks continue to impact Australian organisations, the report identifies additional growing security concerns around the - [Partnership to Support Cyber Insurance](https://australiancybersecuritymagazine.com.au/partnership-to-support-cyber-insurance/) - Somerville has partnered with PSC Insurance. “Staying ahead of constantly evolving cyber threats is one of the major challenges facing Australian businesses today. To mitigate this risk, it’s crucial that businesses consistently develop, evolve, and improve their cybersecurity posture in today's fast-paced environment,” says Tom Salter, Account Executive, PSC Insurance. “Effectively managing cyber risks enhances - [Cancer Centre Cyber Attack Highlights Proposed Ransom Payment Ban Issues](https://australiancybersecuritymagazine.com.au/cancer-centre-cyber-attack-highlights-proposed-ransom-payment-ban-issues/) - Written by staff writer. A cybersecurity specialist says the case of a ransomware group demanding the Crown Princess Mary Cancer Centre in western Sydney pay AUD100,000 within a seven-day deadline highlights the challenges of implementing any ransom payment ban. On May 5, 2023, the Medusa ransomware gang issued the deadline, saying that they would begin - [Cyber resiliency consulting and technology-enabled services](https://australiancybersecuritymagazine.com.au/cyber-resiliency-consulting-and-technology-enabled-services/) - We speak with Roman Trukhin, VP of Engineering for Underdefense. UnderDefense provides cyber resiliency consulting and technology-enabled services to anticipate, manage and defend against cyber threats. #rsac #rsac2023 #mysecuritytv - [Driving threat intelligence insights and partnerships](https://australiancybersecuritymagazine.com.au/driving-threat-intelligence-insights-and-partnerships/) - We speak with Roya Gordon, Security Research Evangelist, Nozomi Networks. Roya drives threat intelligence insights and partnerships with Nozomi’s customers such as critical infrastructure companies under pressure to raise their cyber posture in countries including Australia. Roya has worked with the U.S. Navy, Accenture and others and is among the most respected IoT and OT - [Threat intelligence and research](https://australiancybersecuritymagazine.com.au/threat-intelligence-and-research/) - We speak with Martin Zugec, Technical Solutions Director with Bitdefender. Martin specialises in large-scale projects that often involve automation and security, working for many Fortune 500 companies on projects all around the world. Bitdefender provides cybersecurity solutions with leading security efficacy, performance and ease of use to small and medium businesses, mid-market enterprises and consumers. - [New Bankwest and CBA Perth Tech Hub](https://australiancybersecuritymagazine.com.au/new-bankwest-and-cba-perth-tech-hub/) - Image: Melbourne Tech Hub. Credit: CBA. The Commonwealth Bank Group has unveiled its latest technology hub in Perth, as part of its broader strategy to contribute to Australia’s digital economy and support a diverse pipeline of technology talent. CBA’s Tech Hub program has been established to diversify the concentration of tech professionals outside of Sydney - [API security is one of the biggest challenges facing CIOs today](https://australiancybersecuritymagazine.com.au/api-security-is-one-of-the-biggest-challenges-facing-cios-today/) - API security is one of the biggest challenges facing CIOs today. Traditional API security solutions are siloed and fragmented, leaving CIOs with a choice of multiple point products or bolt-on integrations to create a patchworked solution. This results in increased cost and complexity, reduced visibility and control, and greater exposure to risk. Wib, a fast-growth - [Transforming cybersecurity through quantum computing](https://australiancybersecuritymagazine.com.au/transforming-cybersecurity-through-quantum-computing/) - We speak with Duncan Jones, Head of Security for Quantinuum. Quantum computers are getting stronger every day and when powerful enough, experts believe they will be able to break standard encryption. Today, bad actors are employing a 'hack now, decrypt later' strategy to access data when encryption is breached. Executives can discuss how the bank - [Pen Testing as a Service and bug bounty partnerships](https://australiancybersecuritymagazine.com.au/pen-testing-as-a-service-and-bug-bounty-partnerships/) - We speak with Dave Gerry, CEO and Nick McKenzie, CISO of Bugcrowd. Bugcrowd has announced new capabilities in its Penetration Testing as a Service (PTaaS) offering that enables buyers to purchase, set up, and manage pen tests directly online without a need for lengthy sales calls and scoping sessions. PTaaS is one of several solutions - [At the Forefront of Australia’s Quantum Future](https://australiancybersecuritymagazine.com.au/at-the-forefront-of-australias-quantum-future/) - The University of Sydney is one of many institutions to welcome the National Quantum Strategy announced by the Minister for Industry and Science, the Hon. Ed Husic MP, and Australia’s Chief Scientist, Dr Cathy Foley. The University of Sydney Deputy Vice-Chancellor (Research) Professor Emma Johnston said: “It is heartening to see such an ambitious strategy for quantum technologies. Combined with - [Sekuro Secures New Board Chairman](https://australiancybersecuritymagazine.com.au/sekuro-secures-new-board-chairman/) - Sekuro has appointed Ian Buddery as Chairman of the Board, with the team expanding by 30% since July 2022, hiring a total of 41 new staff across Australia. With more than 30 years in the tech industry, Buddery is a software engineer by background and founder of multiple software ventures including eServGlobal which he led - [Cyber-Risk Levels Improve](https://australiancybersecuritymagazine.com.au/cyber-risk-levels-improve/) - Trend Micro has revealed that cyber-risk levels have improved from "elevated" to "moderate" for the first time, but that insiders represent a persistent threat for global organisations. "We saw the Australian cyber-risk index (CRI) improve from -0.54 in 1H 2022 to -0.12 in 2H 2022. It means that organisations may be taking steps to improve their - [Australia’s National Quantum Strategy](https://australiancybersecuritymagazine.com.au/australias-national-quantum-strategy/) - The Tech Council of Australia (TCA) says it welcomes the Australian Government’s National Quantum Strategy (the strategy) released today by the Hon. Ed Husic MP, Minister for Industry and Science. The strategy outlines a roadmap for the future of quantum technology in Australia. Kate Pounder, TCA CEO, said the strategy is a pivotal step in - [Infoblox Hires Sco Mo as MD](https://australiancybersecuritymagazine.com.au/infoblox-hires-sco-mo-as-md/) - Infoblox has hired Scott Morris as its Managing Director for Australia & New Zealand. Scott joins Infoblox from Druva where he held the role of Vice President APAC & Japan, based in Singapore. Scott has also held senior roles at Hewlett Packard Enterprise, Simplivity, and NetApp. “After 15 years of building and implementing sales growth - [Fortinet’s SD-Branch and Secure SD-WAN Solution](https://australiancybersecuritymagazine.com.au/fortinets-sd-branch-and-secure-sd-wan-solution/) - Fortinet has announced that Pacific National, with partner Ip.Glass, has deployed Fortinet Secure SD-Branch and Secure SD-WAN (software-defined wide area networking) to safeguard its critical infrastructure against cyber threats while boosting secure network access for reliable operations, halving its annual networking costs. With more than 86 sites and over 5,000 endpoints on the local area - [Akamai Gets Richmond for Internal Promotion](https://australiancybersecuritymagazine.com.au/akamai-gets-richmond-for-internal-promotion/) - Akamai Technologies has promoted James Richmond to Regional Director for Australia and New Zealand (ANZ) at Akamai Technologies. James will report directly to Akamai’s SVP, Sales and Managing Director, Asia Pacific & Japan, Parimal Pandya. Based in Melbourne, James originally joined Akamai in 2014 where his focus was on helping organisations in highly regulated sectors - [The growing threat of ransomware - learn how to protect your business.](https://australiancybersecuritymagazine.com.au/the-growing-threat-of-ransomware-learn-how-to-protect-your-business/) - Cybercrime is continuing to surge in Australia and for these cyber criminals – ransomware is the most popular weapon of choice! The Australian Cyber Security Centre (ACSC) has recently launched its third annual threat report. It says that it responded to 135 cyber security incidents related to ransomware – that’s an increase of over 75 - [Generative AI Security Tools for Researchers](https://australiancybersecuritymagazine.com.au/generative-ai-security-tools-for-researchers/) - Tenable says it has developed four new prototype AI cybersecurity tools to help firms combat a new generation of cyber threats and to create efficiencies in the cybersecurity research process. This includes areas such as reverse engineering, code debugging, web application security and gaining visibility into cloud-based tools. This development comes at a time when - [SentinelOne’s Integration with Wiz](https://australiancybersecuritymagazine.com.au/sentinelones-integration-with-wiz/) - SentinelOne has announced early access to the integration it is developing with Wiz. The news came during RSA Conference 2023, the cybersecurity event being held at the Moscone Center in San Francisco last week. “Successfully tackling today’s increasingly complex security problems requires an end-to-end approach and this groundbreaking offering enables it,” said Tomer Weingarten, CEO, SentinelOne. “Our integration - [Cyber Program Propelling Prototypes of the Future](https://australiancybersecuritymagazine.com.au/cyber-program-propelling-prototypes-of-the-future/) - When Raja Ravi, Founder and Director of Swan Foresight, first heard about CSIRO’s Innovate to Grow, he was excited to see how his business could progress their potential R&D opportunity. For him, the prospect of having direct access to mentors with expertise in R&D in the sector of his choosing was an opportunity too good - [Trellix Launches and Expands New Offerings](https://australiancybersecuritymagazine.com.au/trellix-launches-and-expands-new-offerings/) - Trellix has announced the launch of Trellix Endpoint Security Suite. Trellix Endpoint Security Suite's products and advanced capabilities empower Security Operations Center (SOC) analysts with superior visibility and control in a single pane of glass to proactively secure all endpoints. Endpoint security is foundational for any organisation's security program and the baseline for securing the enterprise, as - [SentinelOne’s AI Platform for Cybersecurity](https://australiancybersecuritymagazine.com.au/sentinelones-ai-platform-for-cybersecurity/) - SentinelOne has unveiled what it calls a revolutionary threat-hunting platform that integrates multiple layers of AI technology to deliver unparalleled security capabilities and real-time, autonomous response to attacks across the entire enterprise. The news was announced during RSA Conference 2023, the premier cybersecurity event being held at the Moscone Center in San Francisco. “Today marks - [Delinea Recruits Reeves as VP](https://australiancybersecuritymagazine.com.au/delinea-recruits-reeves-as-vp/) - Delinea has appointed Dave Reeves as Vice President, Australia and New Zealand. “There is a massive opportunity for Delinea to lead discussions about implementing solutions that extend PAM and why they are fundamental to help companies thrive by securing their most critical assets,” said Reeves. “My main goals are to increase awareness of our solutions - [How-To Guide to Help Strengthen Security Culture](https://australiancybersecuritymagazine.com.au/how-to-guide-to-help-strengthen-security-culture/) - KnowBe4 has announced the launch of its 2023 Security Culture How-To Guide, which delves into the fundamentals of what security culture is and the steps an organisation can take to understand, build and maintain a strong culture within their workplace. KnowBe4 defines security culture as the ideas, customs and social behaviours of a group that - [Xcitium Integration of Intel](https://australiancybersecuritymagazine.com.au/xcitium-integration-of-intel/) - Xcitium has announced its integration of Intel Threat Detection Technology into its platform. According to industry analysts, ransomware is rapidly shaping up to be the defining online security issue of our era; attacks increased by 97% in just the last two years, while causing over $20 billion in damages. “As adversarial tradecraft evolves and intensifies, - [BlackBerry’s Cybersecurity Solutions Portfolio](https://australiancybersecuritymagazine.com.au/blackberrys-cybersecurity-solutions-portfolio/) - BlackBerry has announced a revamped AI-based Cylance cybersecurity portfolio that advances the company’s mission to deliver enterprise-grade security assurances to organisations at fraction of the time, effort, and initial capital typically required. The company says the upgraded portfolio reduces alert fatigue by 90 percent compared to previous versions, offers faster incident response, expands cloud defense coverage - [ExtraHop’s New Enterprise-Grade Solutions](https://australiancybersecuritymagazine.com.au/extrahops-new-enterprise-grade-solutions/) - ExtraHop has launched ExtraHop IDS, which integrates with the ExtraHop Reveal(x) platform to offer a new approach to intrusion detection for deeper coverage and full-spectrum investigation. As part of its release, ExtraHop also announced several product enhancements, including Automated Retrospective Detection and a native integration with Palo Alto Cortex XSOAR. With ExtraHop IDS and Reveal(x), - [Xcitium announces integration of Intel Threat Detection Technology](https://australiancybersecuritymagazine.com.au/xcitium-announces-integration-of-intel-threat-detection-technology/) - Today at RSA San Francisco, Xcitium, provider of ZeroDwell Containment cybersecurity solutions, announced its integration of Intel Threat Detection Technology into its platform. We spoke to Ken Levine, CEO of Xcitium and Carla Rodriguez, Vice President and General Manager Commercial Client Ecosystem at Intel. Xcitium Advanced integrates neatly with Intel TDT because the patented ZeroDwell - [Rubrik’s New Partnership and Ransomware Warranty](https://australiancybersecuritymagazine.com.au/rubriks-new-partnership-and-ransomware-warranty/) - Rubrik and Zscaler have announced a new partnership and technology integration to streamline data protection and compliance and boost cyber resilience. According to the new Rubrik Zero Labs’ State of Data Security report, data security is becoming increasingly complex as mission-critical datasets rapidly grow and become more distributed. According to new Rubrik data, in 2022, organisations - [Macquarie Government’s Focus on Defence Review](https://australiancybersecuritymagazine.com.au/macquarie-governments-focus-on-defence-review/) - Macquarie Government, part of Macquarie Telecom Group says it welcomes the federal government’s release of the public version of the Defence Strategic Review (DSR) as the strongest indication yet of the importance of cybersecurity to Government and Defence capabilities. The DSR, to which Macquarie contributed a detailed submission during public consultation, sets the agenda for - [A threat to us is a threat to you - US Hunt Forward Operations embedded to Homeland Security](https://australiancybersecuritymagazine.com.au/a-threat-to-us-is-a-threat-to-you-us-hunt-forward-operations-embedded-to-homeland-security/) - By Chris Cubbage, Editor The US Department of Defence Cyber National Mission Force (CNMF), and Department of Homeland Security Cybersecurity and Infrastructure Security Agency (CISA) shared details for the first time this morning on recently declassified cyber operations, showcasing how both organisations work together to bolster cyber defenses. U.S. Army Maj. Gen. William J. Hartman, - [Sky’s the Limit for CyRise](https://australiancybersecuritymagazine.com.au/skys-the-limit-for-cyrise/) - In 2017, NTT and Deakin University established CyRise Accelerator. After five years of successful collaboration the program has come to its natural conclusion and together NTT and Deakin have decided to close the CyRise initiative effective 19 May 2023. Since its inception, CyRise has made significant contributions to the future of the Australian cybersecurity ecosystem, - [Slater and Gordon Commence Class Action Against Optus](https://australiancybersecuritymagazine.com.au/slater-and-gordon-commence-class-action-against-optus/) - Slater and Gordon has issued proceedings against Optus on behalf of current and former customers whose personal information – including key identity documents – were allegedly compromised in the September data breach. The statement of claim, lodged in the Federal Court, accuses Optus of breaching privacy, telecommunication and consumer laws as well as the company’s - [Macquarie’s Extraordinary General Meeting to Change Name](https://australiancybersecuritymagazine.com.au/macquaries-extraordinary-general-meeting-to-change-name/) - Macquarie Telecom Group has announced that it intends to change its listed company name to Macquarie Technology Group, reflecting the company’s evolution to become a digital infrastructure business through its success in cloud infrastructure, cyber security, data centres, and telecom. Recognising that the successful execution of Macquarie’s strategy has fundamentally changed the company over the - [Why Passkeys Have Made Passwords So Passé](https://australiancybersecuritymagazine.com.au/why-passkeys-have-made-passwords-so-passe/) - Written by Geoff Schomburgk, Asia Pacific Vice President at Yubico. Passwords clearly have some significant drawbacks around usability, including the difficulty of remembering the multiple increasingly complex passwords in your head, having to write them down somewhere or using password management software to keep track of them all. Beyond usability, there are clear security risks - [Phronesis on Point with Pinky Appointment](https://australiancybersecuritymagazine.com.au/phronesis-on-point-with-pinky-appointment/) - Phronesis Security has appointed Eric “Pinky” Pinkerton as their new cyber security consultant and Director of NSW. With over three decades of experience in IT, Networking, Security Architecture and Network Security/Operations, Eric will be based in Sydney with a remit to build specialist teams and be the company’s “Problem Solver in Chief”. Eric has provided - [CSIRO Program To Help SMEs Digitally Advance](https://australiancybersecuritymagazine.com.au/csiro-program-to-help-smes-digitally-advance/) - The CSIRO is helping small to medium enterprises (SMEs) enhance their research and development (R&D) knowledge with a free 10-week online program focused on cyber security and digital technologies. The Innovate to Grow program, connects businesses working on solutions in cyber and digital tech with knowledge, resources and mentors to advance their project or ideas. - [ISACA’s CMMI Upgrade](https://australiancybersecuritymagazine.com.au/isacas-cmmi-upgrade/) - In a tightening economic market, addressing enterprise performance can help organisations better weather challenges by reducing costs, creating efficiencies, and coming in on schedule while improving overall quality. ISACA says it’s Capability Maturity Model Integration, or CMMI, has been doing just that for enterprises for more than three decades, and is now out with a major - [Varonis Opens Australia Data Centre](https://australiancybersecuritymagazine.com.au/varonis-opens-australia-data-centre/) - Varonis Systems has announced the opening of its first data centre in Australia to support customers moving to Varonis' SaaS offering. The new data centre, located in Sydney, will help Varonis customers demonstrate compliance with national data sovereignty rules and enable them to leverage Varonis' world-class visibility, automation, and support. The new data centre will - [ESET Australia and Red Piranha Partner](https://australiancybersecuritymagazine.com.au/eset-australia-and-red-piranha-partner/) - ESET has announced a strategic partnership with Red Piranha. In the partnership, ESET and Red Piranha intend to provide an integrated cybersecurity system, where security infrastructure can be managed from a single console. Eric Rollett, Head of Channel Sales for ESET Australia, said, “We are thrilled about our partnership with Red Piranha and the expanded - [Five High-Risk Vulnerabilities to Watch Out For](https://australiancybersecuritymagazine.com.au/five-high-risk-vulnerabilities-to-watch-out-for/) - Recorded Future has released its March 2023 vulnerabilities summary which identifies 5 newly disclosed vulnerabilities with high-risk scores, four of which are zero-day vulnerabilities affecting Microsoft, Adobe, Fortinet and Samsung. Four of the five vulnerabilities identified had risk scores of 99 in the Recorded Future Intelligence Cloud, meaning they had a score of “very critical”. “With - [Huntress on the Prowl in ANZ](https://australiancybersecuritymagazine.com.au/huntress-on-the-prowl-in-anz/) - Huntress has launched in Australia and New Zealand with an eye on servicing small-to-medium businesses (SMBs) through the Managed Service Provider (MSP) channel. Founded by former NSA cyber operators and backed by ThreatOps researchers, Huntress allows MSPs to deploy managed endpoint detection and response (EDR) solutions. With an investment in on-shore threat hunting and product - [Latitude Group Confirms Ransom Demand](https://australiancybersecuritymagazine.com.au/latitude-group-confirms-ransom-demand/) - Latitude Financial has confirmed it has notified ASX that it has received a ransom demand from the criminals behind the cyber-attack on the company. Latitude confirmed it will not pay a ransom. In the statement, the company said, “In line with advice from cybercrime experts, Latitude strongly believes that paying a ransom will be detrimental - [Standardised Cyber Skills to Increase Workforce Diversity](https://australiancybersecuritymagazine.com.au/standardised-cyber-skills-to-increase-workforce-diversity/) - ACT Chief Minister Andrew Barr has launched a new program, backed by the Federal Government, aimed at increasing the cyber workforce and its diversity by at least 100 people by 2024. The program named CYNAPSE (Cyber National Assessment Program for Skills and Employment) is led by FifthDomain, a sovereign tech company that provides a cyber - [Women Critical to Future of Australia’s Cyber Security](https://australiancybersecuritymagazine.com.au/women-critical-to-future-of-australias-cyber-security/) - A new report by RMIT’s Centre for Cyber Security Research and Innovation (CCSRI) has highlighted the stark underrepresentation of women in the cybersecurity workforce. Gender Dimensions of the Australian Cyber Security Sector is the first in-depth look into the industry’s gender make-up, where according to the 2021 Census data women only represented 17 per cent - [State of Cyber Threat Intelligence: Australia Edition](https://australiancybersecuritymagazine.com.au/state-of-cyber-threat-intelligence-australia-edition/) - Flashpoint has released a new report, State of Cyber Threat Intelligence: Australia Edition, detailing the state of Australia’s cyber threat intelligence and an analysis of emerging security and intelligence trends impacting organisations across the public and private sectors. Following international trends outlined in Flashpoint’s global State of Cyber Threat Intelligence Report, the Australian report showed - [New AI-Powered App and API Security Capabilities](https://australiancybersecuritymagazine.com.au/new-ai-powered-app-and-api-security-capabilities/) - F5 has announced new security capabilities to increase protection and control in managing apps and APIs across data centre, cloud, hybrid, and edge locations. New machine learning enhancements provide F5’s cloud security portfolio with advanced API endpoint discovery, anomaly detection, telemetry, and behavioural analysis. As more transactions and customer engagements occur through digital channels such - [Canberra Bans TikTok on Government Issued Devices](https://australiancybersecuritymagazine.com.au/canberra-bans-tiktok-on-government-issued-devices/) - Written by staff writer. The Australian Government is banning the TikTok app on devices issued by Commonwealth departments and agencies. Attorney General Mark Dreyfus announced the decision on April 4, 2023, and said it would come into effect "as soon as practicable." The Australian Government was the last of the Five Eyes nations to ban - [Cequence Secures Former Sophos and ExtraHop Guru](https://australiancybersecuritymagazine.com.au/cequence-secures-former-sophos-and-extrahop-guru/) - Cequence Security has appointed Glen Maloney as ANZ Country Lead. Based in Sydney, Maloney joins Cequence Security with more than 20 years of new business development and account management experience in the cybersecurity industry. Most recently, Maloney was ANZ Regional Sales Manager at ExtraHop where he successfully drove the company’s regional business strategy for growth - [Australia's Public Sector Vulnerable to Cyber Attacks](https://australiancybersecuritymagazine.com.au/australias-public-sector-vulnerable-to-cyber-attacks/) - Research from Trellix’s XDR: Redefining the future of cybersecurity report has revealed critical cybersecurity gaps in Australia’s public sector. According to a global survey of cybersecurity professionals, including 1,000 from Australia, 41% of public sector respondents recognise that their employers have blind spots in their protection today, leaving them vulnerable to attacks. Faced with a - [Supply Chain Compromise of 3CX DesktopApp](https://australiancybersecuritymagazine.com.au/supply-chain-compromise-of-3cx-desktopapp/) - The ACSC has issued a medium alert warning, confirming it is aware of a reported supply chain compromise affecting the 3CX DesktopApp allowing malicious actors to conduct multi-stage attacks against users of the legitimate software. Australian users of affected versions of 3CX DesktopApp should immediately follow the vendor’s advice and investigate for signs of malicious - [Isaacs Regional Council Cyber Attack Highlights Risks Local Governments Face](https://australiancybersecuritymagazine.com.au/isaacs-regional-council-cyber-attack-highlights-risks-local-governments-face/) - By staff writer. Isaac Regional Council in Central Queensland is the latest local council to face a cyberattack. The central Queensland council publicly confirmed the attack late on Sunday, April 2, saying they had flown in external cybersecurity experts over the weekend to help manage it. "We are taking this matter very seriously as cybersecurity - [Australian app developers join class action against Apple, Google](https://australiancybersecuritymagazine.com.au/australian-app-developers-join-class-action-against-apple-google/) - Australian app designers and founders are taking on Apple and Google alleging the companies abused their market power to charge 30 percent commissions on in-app spending while blocking competitors from offering better value payment systems. The California-based tech giants are already facing a consumer class action alleging the companies abused their market dominance to inflate - [High Severity Vulnerability in Microsoft Outlook](https://australiancybersecuritymagazine.com.au/high-severity-vulnerability-in-microsoft-outlook/) - The Australian Cyber Security Centre (ACSC) has issued a high alert confirming it is aware of a Microsoft Outlook for Windows vulnerability. ACSC is advising all Australian organisations using all versions of Microsoft Outlook for Windows should apply the available patch immediately. Background / What has happened? A critical elevation of privilege vulnerability (CVE-2023-23397) has - [Australian Businesses Struggle to Resolve Cyberthreats](https://australiancybersecuritymagazine.com.au/australian-businesses-struggle-to-resolve-cyberthreats/) - With organisations of all sizes moving more of their operations to the cloud, a majority are struggling to automate cloud security and mitigate risks. It’s one reason why many companies are trying to improve security earlier in the development process, and looking for fewer vendors that can offer more security capabilities. Palo Alto Networks has - [Almost 100% Cyber Incidents Result of Human Error](https://australiancybersecuritymagazine.com.au/almost-100-cyber-incidents-result-of-human-error/) - The 2023 CyberWest Summit is taking place on May 10th & 11th at Pan Pacific Perth - but this year, it’s not just for those already working in the cyber security industry. The recent Future of Cyber 2023 report by Deloitte identified that 95% of cyber events are caused by human error. When it comes - [World Backup Day](https://australiancybersecuritymagazine.com.au/world-backup-day/) - Thanks to the increasing bursting digitalisation, global attention is turning to cybersecurity and defence against unwanted cyber-attacks. From SMEs to large corporations, via government organisations and individuals, the winning ally in this context is undoubtedly Backup. Just to raise awareness and make people understand the importance of this simple act, World Backup Day is celebrated - [Episode 355 - WA's flagship cybersecurity industry event - Cyber West Summit 2023](https://australiancybersecuritymagazine.com.au/episode-355-was-flagship-cybersecurity-industry-event-cyber-west-summit-2023/) - The WA Cyber Security Innovation Hub is excited to be delivering the second CyberWest Summit, 10-11 May, 2023 at the Pan Pacific, Perth WA. Your browser does not support the audio element. Download Now - [WA's flagship cybersecurity industry event - Cyber West Summit 2023](https://australiancybersecuritymagazine.com.au/was-flagship-cybersecurity-industry-event-cyber-west-summit-2023/) - The WA Cyber Security Innovation Hub is excited to be delivering the second CyberWest Summit, 10-11 May, 2023 at the Pan Pacific, Perth WA. CyberWest Summit is WA’s flagship event providing cyber security education and awareness to key sectors and highlighting WA cyber security capabilities. The conference will deliver three content streams: Critical Infrastructure & - [Accelerate Adoption of Digital Identities on Mobile Devices](https://australiancybersecuritymagazine.com.au/accelerate-adoption-of-digital-identities-on-mobile-devices/) - Seeking Feedback The National Cybersecurity Center of Excellence (NCCoE) has published for comment a draft project description, Accelerate Adoption of Digital Identities on Mobile Devices. The organisation is seeking feedback from all stakeholders in the digital identity sector. The NCCoE is especially interested in hearing from Issuing Authorities, digital identity solutions providers, Verifiers, and trust service - [Latitude Financial Scrambles to Contain Large Data Breach  ](https://australiancybersecuritymagazine.com.au/latitude-financial-scrambles-to-contain-large-data-breach/) - Written by staff writer. Update: 27 March 2023 In a statement, Latitude has reported that approximately 7.9 million Australian and New Zealand driver licence numbers were stolen, of which approximately 3.2 million, or 40%, were provided to us in the last 10 years. In addition, approximately 53,000 passport numbers were stolen. The company has also - [Personal Data of Over One Million Subscribers Compromised in ChatGPT Breach](https://australiancybersecuritymagazine.com.au/personal-data-of-over-one-million-subscribers-compromised-in-chatgpt-breach/) - Written by staff writer. A subset of ChatGPT subscribers may have had their payment information exposed after a now-fixed software bug allowed other users of the high-profile content-generating platform to access personal details. The leak potentially impacts over one million subscribers. ChatGPT users were first alerted to a problem on March 20 when they began - [Crown Resorts Joins Growing List of GoAnywhere Cyberattack Victims](https://australiancybersecuritymagazine.com.au/crown-resorts-joins-growing-list-of-goanywhere-cyberattack-victims/) - Written by staff writer. A large data breach at third-party file transfer software company GoAnywhere earlier this year is having ramifications for several large Australian entities, with Crown Resorts confirming on March 27 that it had received a ransomware demand from Russian cybercriminals. "We were recently contacted by a ransomware group who claim they have - [KPMG’s ‘Private’ ChatGPT Software](https://australiancybersecuritymagazine.com.au/kpmgs-private-chatgpt-software/) - KPMG Australia has launched a proprietary version of ChatGPT. The company says it is one of only a handful of companies globally to be given access to develop a private version of the tool, with the assistance of a partnership with Microsoft. The tool, dubbed KymChat, provides KPMG employees access to the processing power of - [11% Australian Companies Cybersecurity Ready](https://australiancybersecuritymagazine.com.au/11-australian-companies-cybersecurity-ready/) - A mere 11% of organisations in Australia have a ‘Mature’ level of readiness to tackle the cybersecurity risks of a hybrid world, according to Cisco’s first-ever Cybersecurity Readiness Index released today. The index has been developed against the backdrop of a post-COVID world, where users and data must be secured wherever work gets done. The - [Language of Risk - Cyber Security, Risk and Vulnerability Management](https://australiancybersecuritymagazine.com.au/language-of-risk-cyber-security-risk-and-vulnerability-management/) - Interview with Sumedh Thakar, President and CEO of Qualys on his visit to Australia and New Zealand to meet with customers and partners for a cyber risk management briefing: Has the ‘Language of Risk’ Evolved Enough to Save Us All? Recorded on 16 March, 2023. For more information visit www.qualys.com #cybersecurity #vulnerabilityassessment #qualys #ceo #mysecuritytv - [Interactive acquires Slipstream Cyber Security](https://australiancybersecuritymagazine.com.au/interactive-acquires-slipstream-cyber-security/) - Interactive has acquired Slipstream Cyber Security. Interactive’s Executive Chairman, Brendan Fleiter, says the acquisition comes at a critical point for Australian enterprises as the country reaches a cyber maturity impasse. “Australian organisations are facing into daily, even hourly, threats to their operations, as well as their peoples’ and customers’ livelihoods. The path to staying secure - [SentinelOne to Work with Australian Government](https://australiancybersecuritymagazine.com.au/sentinelone-to-work-with-australian-government/) - SentinelOne has announced the completion of the IRAP assessment for the SentinelOne Singularity XDR Platform. This enables SentinelOne to work with the Australian government to improve its cybersecurity posture. IRAP is an Australian Signals Directorate (ASD) initiative that provides high-quality information and communications technology (ICT) security assessment services to government and industry. IRAP assesses cybersecurity systems - [Sophos Makes ChatGPT a Cybersecurity Co-Pilot](https://australiancybersecuritymagazine.com.au/sophos-makes-chatgpt-a-cybersecurity-co-pilot/) - Sophos has released new research on how the cybersecurity industry can leverage GPT-3, the language model behind the now well-known ChatGPT framework, as a co-pilot to help defeat attackers. The latest report, “GPT for You and Me: Applying AI Language Processing to Cyber Defenses,” details projects developed by Sophos X-Ops using GPT-3's large language models to simplify - [Founder of BreachForums Arrested, New Administrator Keeps Site Running](https://australiancybersecuritymagazine.com.au/founder-of-breachforums-arrested-new-administrator-keeps-site-running/) - Written by staff writer. Federal Bureau of Investigations (FBI) agents have arrested a man known as Pompompurin, who they allege was behind the dark web hacking website, BreachForums. Meanwhile, a new administrator has stepped in to keep the website running. First reported by Bloomberg, Conor Brian Fitzpatrick, 22, was arrested at his home in Peekskill, - [Potential for Accelerated Cybercrime with ChatGPT4](https://australiancybersecuritymagazine.com.au/potential-for-accelerated-cybercrime-with-chatgpt4/) - Despite the presence of safeguards in ChatGPT4, some restrictions can be easily circumvented, enabling threat actors to achieve their objectives without much hindrance. CPR warns of ChatGPT4’s potential to accelerate cybercrime execution and will continue its analysis of the platform in the following days. Check Point Research (CPR) has taken an initial look into ChatGPT4 - [Helping cybersecurity professionals before burnout](https://australiancybersecuritymagazine.com.au/helping-cybersecurity-professionals-before-burnout/) - Burnout is common throughout many industries, but a recent report has shown that cybersecurity professionals are amongst those most affected – possibly at a faster rate than frontline health care workers. That’s why the non-for-profit CyberMindz was born – to provide direct support to restore and rebuild emotional and cognitive health in the cyber community. - [XEM Converged Endpoint Management](https://australiancybersecuritymagazine.com.au/xem-converged-endpoint-management/) - We speak with James Sillence, Vice President, Technical Account Management, South Asia for Tanium. JOIN US ON APRIL 4, 2023 for a special virtual deep-dive with Tanium - register here https://www.eventbrite.com.au/e/stay-... Tanium defends every team, endpoint and workflow against the largest attack surface in history by delivering the industry’s first convergence of IT management and - [UniSA and Optus’s New Cyber Chair](https://australiancybersecuritymagazine.com.au/unisa-and-optuss-new-cyber-chair/) - United Nations University Institute computer science researcher has appointed the inaugural Optus Chair of Cyber Security and Data Science at UniSA. Dr Mamello Thinyane will bring 15 years of international experience in managing digital development projects in Africa, Asia, and Australia when he takes up his new role at Lot 14 in Adelaide in March. - [Tenable Extends its OT Security](https://australiancybersecuritymagazine.com.au/tenable-extends-its-ot-security/) - Tenable has announced new capabilities within Tenable OT Security, providing broader protection for operational technology (OT), critical infrastructure and industrial control systems, regardless of size of deployment or configuration of environment. The new functionality keeps the CISO’s organization front and center — making it even easier to secure and maintain governance of the entire attack surface, using the same tools - [Troy Hunt to keynote Cyber West Summit 2023](https://australiancybersecuritymagazine.com.au/troy-hunt-to-keynote-cyber-west-summit-2023/) - The WA Cyber Security Innovation Hub is excited to be delivering the second CyberWest Summit, 10-11 May, 2023 at the Pan Pacific, Perth WA. CyberWest Summit is WA’s flagship event providing cyber security education and awareness to key sectors and highlighting WA cyber security capabilities. The conference will deliver three content streams: Critical Infrastructure & - [A Healthier Australian Healthcare Industry](https://australiancybersecuritymagazine.com.au/a-healthier-australian-healthcare-industry/) - Written by Nam Lam, Country Manager, ANZ, SailPoint. The healthcare industry continues to be the most targeted industry by cybercriminals in Australia, with the sector reporting the highest number of notified breaches in Australia - 14% of 497 data breaches - to the privacy regulator in the second half of 2022, according to the OAIC report. - [Only 37% of IT Pros Concerned About Phishing](https://australiancybersecuritymagazine.com.au/only-37-of-it-pros-concerned-about-phishing/) - Data breaches hit the headlines last year, but they have seemingly had little impact on how IT decision makers view the risks to their organisations. According to new research from KnowBe4, less than four in ten (37 percent) Australian IT decision-makers say they are concerned about phishing as a risk to their organisation, compared with almost the - [Barracuda Snaps Up Former NetApp MD](https://australiancybersecuritymagazine.com.au/barracuda-snaps-up-former-netapp-md/) - Barracuda has appointed Paul Crighton as its Regional Sales Director for Australia, New Zealand & the Pacific Islands. Based in Melbourne, Crighton will focus on accelerating the company’s sales and channel program in Australia, New Zealand, and the Pacific Islands. He brings more than 25 years of sales leadership and channel partner management experience to - [New Cybersecurity Strategy Shifts Breach Responsibility to Vendors, Software Providers](https://australiancybersecuritymagazine.com.au/new-cybersecurity-strategy-shifts-breach-responsibility-to-vendors-software-providers/) - By staff writer. The White House wants to shift the responsibility for cybersecurity away from individuals and small businesses to entities that hold onto personal data, software makers and vendors. US President Joe Biden said the stakeholders best placed to prevent bad cyber outcomes needed to take more of the burden to prevent them. His - [Call For Employers to Take On Cyber Interns](https://australiancybersecuritymagazine.com.au/call-for-employers-to-take-on-cyber-interns/) - The Digital Skills Organisation (DSO) and the Canberra Cyber Hub have announced their cyber security work-integrated learning pilot. This pilot was developed in collaboration with employers to be able to better place aptitude-assessed interns in training while they gained workplace skills. Despite being ranked the fifth most powerful cyber nation, Australia severely lacks the skills required to - [IBM and Cohesity Collaboration](https://australiancybersecuritymagazine.com.au/ibm-and-cohesity-collaboration/) - IBM and Cohesity have announced a new collaboration to address the critical need organisations have for increased data security and resiliency in hybrid cloud environments. Combining data protection, cyber resilience, and data management capabilities from both companies, IBM will launch its new IBM Storage Defender solution which will include Cohesity’s data protection as an integral - [Mustang Panda Targets Europe, Asia, and Australia](https://australiancybersecuritymagazine.com.au/mustang-panda-targets-europe-asia-and-australia/) - ESET researchers have just analysed MQsTTang, a new custom backdoor that we attribute to the China-aligned Mustang Panda APT group. This backdoor is part of an ongoing campaign that ESET can trace back to early January 2023. ESET Research has seen unknown entities in Bulgaria and Australia in our telemetry as targets. ESET also has - [Supply Chain Security: Risk Management Requirements](https://australiancybersecuritymagazine.com.au/supply-chain-security-risk-management-requirements/) - Australian critical infrastructure companies are reportedly experiencing increased uncertainty and risks to their supply chain security as they address risk management requirements under the Security of Critical Infrastructure (SOCI) Act, an invite-only panel discussion on ‘Supply Chain Security as a Component of the Insider Risk Program’ heard on Tuesday (28 February 2023). The event, hosted - [Cyber Security Incidents Impact Data Breach Risk](https://australiancybersecuritymagazine.com.au/cyber-security-incidents-impact-data-breach-risk/) - Several large-scale data breaches impacted millions of Australians’ personal information in the second half of 2022, as part of a 26% increase in breaches overall, according to the latest Notifiable data breaches report. Australian Information Commissioner and Privacy Commissioner Angelene Falk said cyber security incidents in particular can have significant impacts on individuals, and organisations - [APAC at Epicentre of Global Data Breach Incidents](https://australiancybersecuritymagazine.com.au/apac-at-epicentre-of-global-data-breach-incidents/) - New research by Tenable has revealed 2.29 billion records were exposed worldwide in 2022, as calculated by Tenable’s Security Response Team’s analysis of 1,335 breach data incidents publicly disclosed between November 2021 and October 2022. Of the 1,335 breaches analysed globally, 143 breaches occurred in APAC, resulting in 1,561,990,339 exposed records and representing a whopping 68% of the - [Digital Infrastructure to Drive 49% of Business Revenue](https://australiancybersecuritymagazine.com.au/digital-infrastructure-to-drive-49-of-business-revenue/) - Lenovo jointly with AMD have launched a new InfoBrief titled ‘CIO Technology Playbook 2023’, that aims to highlight the opportunities, challenges, and considerations for CIOs in today’s data-driven economy to help them make the right IT investments. The IDC paper, commissioned by Lenovo and AMD, reveals that with the rapid digital transformation in Asia Pacific, - [Prime Minister's Cyber Security Roundtable](https://australiancybersecuritymagazine.com.au/prime-ministers-cyber-security-roundtable/) - Australian Prime Minister, the Hon Anthony Albanese MP, has led a Cyber Security Roundtable, focused on the whole-of-nation effort required to protect Australians and our economy, with the aim of making Australia the most cyber-secure nation by 2030. Attending the roundtable were leaders from the public service and intelligence agencies, and independent experts from business, - [Odaseva Completes IRAP Assessment](https://australiancybersecuritymagazine.com.au/odaseva-completes-irap-assessment/) - Odaseva has completed an IRAP assessment at the ‘PROTECTED’ classification level. The company says this milestone represents a tangible demonstration of Odaseva’s continuous security culture, and the global organization’s ability to operate in highly regulated spaces including the public sector, healthcare, and financial services. The Information Security Registered Assessors Program (IRAP), governed by the Australian - [Akamai Ascents on Auckland](https://australiancybersecuritymagazine.com.au/akamai-ascents-on-auckland/) - Akamai Technologies has announced that it is building a Scrubbing Centre and Cloud Data Centre in Auckland, New Zealand as part of its global infrastructure investment strategy. This is aimed at providing on-ground support to Akamai’s New Zealand users to help defend against distributed denial of service (DDoS) attacks and help accelerate their cloud journey. - [ASG Group Rebrands as Nomura Research Institute](https://australiancybersecuritymagazine.com.au/asg-group-rebrands-as-nomura-research-institute/) - Nomura Research Institute (NRI) has announced that its Australian subsidiary, ASG Group, has been rebranded as NRI as part of the company’s global expansion plans. ASG Group CEO Dean Langenbach will step into the role of NRI Australia & New Zealand CEO, and the announcement marks the start of NRI’s ambitious plan to grow its ## Pages - [Main Home](https://australiancybersecuritymagazine.com.au/) - Australia's Leading Cyber Security Magazine - [Subscribe](https://australiancybersecuritymagazine.com.au/subscribe/) - Subscribe to our newsletter to receive weekly newsletters. Our team curates the best content around the world for professionals and delivers it straight to your inbox. - [Magazines](https://australiancybersecuritymagazine.com.au/magazines/) - [Contributors](https://australiancybersecuritymagazine.com.au/contributors/) - Write for Us MySecurity Media is always welcoming of enthusiastic cyber security professionals who are keen on writing for our websites and magazine on any of the following topics: Digital forensics in Australia Workforce development Security in the development lifecycle Threat management and threat hunting Incident management Operational security Security book reviews Risk management True - [Thank you for subscribing](https://australiancybersecuritymagazine.com.au/thank-you/) - Thank you for subscribing to Australian Cyber Security Magazine. You will receive an onboarding email shortly. Please check your Spam/Junk folder if you do not receive this within half an hour. Join Marketplace - [Your Contributors & Community](https://australiancybersecuritymagazine.com.au/our-contributors/) - Write for Us MySecurity Media is always welcoming of enthusiastic cyber security professionals who are keen on writing for our websites and magazine on any of the following topics: Digital forensics in Australia Workforce development Security in the development lifecycle Threat management and threat hunting Incident management Operational security Security book reviews Risk management True - [ACSM Bookstore - Latest Releases in the Security Domain](https://australiancybersecuritymagazine.com.au/education/acsm-bookstore-latest-releases-in-the-security-domain/) - Coming Soon - [Advertising](https://australiancybersecuritymagazine.com.au/advertise/) - MARKETING AND ADVERTISING If you would like to obtain a copy of our Media Kit for the opportunity to advertise with us, please email us at promoteme@mysecuritymedia.com or call +61 8 6465 4732 (Western Australia). We can also customise your campaign to utilise our other marketing channels to strengthen your campaign and increase the reach of your marketing - [About Us](https://australiancybersecuritymagazine.com.au/about-us/) - The Australian Cyber Security Magazine was launched in agreement with the Australian Information Security Association (AISA) to be focused on AISA's 3,000 members, nationally and forms part of AISA's national cyber security awareness and membership communication platform. It is published and distributed free of charge to many of the biggest decision makers in the cyber security - [Events](https://australiancybersecuritymagazine.com.au/events/) - PLEASE CLICK ON EVENT NAMES OR BANNERS FOR DIRECT LINKS 2018 26-27 February 2018 Gartner Data & Analytics Summit 2018 Venue: Sydney, Australia Event Topic: Leadership, Strategy, Analytics, Governance and Innovation – it’s all here at Gartner Data & Analytics Summit 2018. Data and analytics are at the heart of the digital revolution. They are imperative across - [Featured](https://australiancybersecuritymagazine.com.au/featured/) - [Industry Partners](https://australiancybersecuritymagazine.com.au/industry-partners/) - ASIS International is the leading organization for security professionals, with more than 38,000 members worldwide. Founded in 1955, ASIS is dedicated to increasing the effectiveness and productivity of security professionals by developing educational programs and materials that address broad security interests, such as the ASIS Annual Seminar and Exhibits, as well as specific security topics. ASIS - [Interpol World 2017](https://australiancybersecuritymagazine.com.au/interpolworld2017/) - My Security Media is pleased to be the official and exclusive marketing agency for the region of Australia & New Zealand for INTERPOL World 2017. INTERPOL World 2017 provides a premium platform for public and private security sectors to discuss and showcase solutions to fast evolving global security challenges. The biennial exhibition and congress brings - [Subscriptions Payment](https://australiancybersecuritymagazine.com.au/subscriptions-payment/) - [Refund Policy](https://australiancybersecuritymagazine.com.au/refund-policy/) - [Privacy Policy](https://australiancybersecuritymagazine.com.au/privacy-policy/) - [Editor's Desk](https://australiancybersecuritymagazine.com.au/editors-desk/) - [Education](https://australiancybersecuritymagazine.com.au/education/) - [Women in Security](https://australiancybersecuritymagazine.com.au/women-in-security/) - [TechTime](https://australiancybersecuritymagazine.com.au/techtime/) - [Frontline Security](https://australiancybersecuritymagazine.com.au/frontline-security/) - [Cyber Resilience](https://australiancybersecuritymagazine.com.au/cyber-resilience/) - [Australian Security](https://australiancybersecuritymagazine.com.au/australian-security/) - [Asia Pacific](https://australiancybersecuritymagazine.com.au/asia-pacific/) - [Main Home Full Width](https://australiancybersecuritymagazine.com.au/main-home-full-width/) - APP-ACSM | Cyber Security | Featured | White Papers & Research | August 12, 2026 One in three ANZ organisations still pay ransomware demands, Commvault research says Commvault has released research suggesting organisations across Australia and New Zealand continue to pay ransomware demands despite uncertainty over whether data will be returned or business operations restored. - [Create Your Own Homepage](https://australiancybersecuritymagazine.com.au/drag-drop-page-builder/) - SmartMag is equipped a Drag and Drop Page Builder that will allow you to use over 11 special page builder widgets and 7 blocks variations. Drag & Drop Page Builder Using the page builder, you can get creative and use the several blocks and widget combinations to create the homepage or any page you desire. - [All Homepage Blocks](https://australiancybersecuritymagazine.com.au/all-homepage-blocks/) - [Timeline Listing Style](https://australiancybersecuritymagazine.com.au/timeline-listing-style/) - [Blog Style Listing Example](https://australiancybersecuritymagazine.com.au/blog-style-listing-example/) - [Authors](https://australiancybersecuritymagazine.com.au/authors/) - Something about our authors goes here. - [Common Shortcodes](https://australiancybersecuritymagazine.com.au/shortcodes/) - Columns 1/2 Quisque volutpat condimentum velit. Class aptent taciti sociosqu ad litora torquent per conubia nostra, per inceptos himenaeos. Nam nec ante. Sed lacinia, urna non tincidunt mattis, tortor neque adipiscing diam, a cursus ipsum ante quis turpis. Nulla facilisi. Ut fringilla. Suspendisse potenti. Nunc feugiat mi a tellus consequat imperdiet. Vestibulum sapien. Proin quam. - [Modern Listing Example](https://australiancybersecuritymagazine.com.au/default-page-style-full-width/) - Lorem ipsum dolor sit amet, consectetur adipiscing elit. Etiam vitae mi metus. Nulla eget mollis lacus. Nam vel metus vel orci posuere fermentum a eu arcu. Maecenas eget est velit, rutrum hendrerit augue. Phasellus vel sem eu purus suscipit molestie non a erat. Integer turpis nulla, posuere varius fringilla aliquet, aliquet eget ante. Lorem ipsum - [Default Page Style](https://australiancybersecuritymagazine.com.au/default-page-style/) - Lorem ipsum dolor sit amet, consectetur adipiscing elit. Etiam vitae mi metus. Nulla eget mollis lacus. Nam vel metus vel orci posuere fermentum a eu arcu. Maecenas eget est velit, rutrum hendrerit augue. Phasellus vel sem eu purus suscipit molestie non a erat. Integer turpis nulla, posuere varius fringilla aliquet, aliquet eget ante. Lorem ipsum - [Typography](https://australiancybersecuritymagazine.com.au/typography/) - Drop caps example here. Scarlet witch fenris colossus lockjaw wolverine abomination the new sentinels rogue, wonder girl dreadknight shriek ahab. Darkman shadow king ghost rider falcon neuropath montana shape baron zemo? Drop caps alternate example here. Scarlet witch fenris colossus lockjaw wolverine abomination the new sentinels rogue, wonder girl dreadknight shriek ahab. Darkman shadow king - [Sitemap](https://australiancybersecuritymagazine.com.au/sitemap/) - Here you can add a custom message if you wish to - perhaps defining how to use sitemap or giving a few useful statistics. Set your own featured image and enable sidebar if you wish to. Customizable message! - [Get In Touch](https://australiancybersecuritymagazine.com.au/contact/) - Lorem Ipsum Press is licensed by Bionetwork Ltd. Our office is located within the company's building. Address: Lorem 15 Str., 4844, Ipsum, State, UK Phone: +30-2106019311 Contact Us Your Name (required) Your Email (required) Subject Your Message - [Default Page - Full Width](https://australiancybersecuritymagazine.com.au/testing-a-page/) - Lorem ipsum dolor sit amet, consectetur adipiscing elit. Etiam vitae mi metus. Nulla eget mollis lacus. Nam vel metus vel orci posuere fermentum a eu arcu. Maecenas eget est velit, rutrum hendrerit augue. Phasellus vel sem eu purus suscipit molestie non a erat. Integer turpis nulla, posuere varius fringilla aliquet, aliquet eget ante. Lorem ipsum ## Events - [Safe secure Pakistan](https://australiancybersecuritymagazine.com.au/event/safe-secure-pakistan/) - Safe Secure Pakistan 2016 is the only premium b2b exhibition of Pakistan which provides an excellent opportunity for international safety & security equipment manufacturers to reap the benefits from this potential market. - [4th World BORDERPOL Congress](https://australiancybersecuritymagazine.com.au/event/4th-world-borderpol-congress/) - The World BORDERPOL Congress is the only multi-jurisdictional transnational platform where the border protection, management and security industry policy-makers and practitioners convene annually to discuss the international challenges faced in protecting not only one’s own country’s borders, but those of neighbours and friends. - [Smart ID Show 2015](https://australiancybersecuritymagazine.com.au/event/smart-id-show-2015/) - The thriving Israeli Smart ID and RFID industry involves around 8,000 people and 100 companies, integrated as world leaders in this fast-growing field. - [12th Annual Maritime Security and Coastal Surveillance 2015](https://australiancybersecuritymagazine.com.au/event/12th-annual-maritime-security-and-coastal-surveillance-2015/) - The 12th Annual Maritime Security and Coastal Surveillance conference is back after a runaway success last year! Visit http://goo.gl/vw16WP for more information. - [Security Conference and Exhibition 2015](https://australiancybersecuritymagazine.com.au/event/security-conference-and-exhibition-2015/) - The Conference theme this year is “Safe and Secure Cities”. Visit http://security.org.nz/ for more information. - [CIO Leaders Summit - Singapore](https://australiancybersecuritymagazine.com.au/event/cio-leaders-summit-singapore/) - The CIO Leaders Summit Singapore 2015 is invitation only and intended for Singapore’s senior IT leaders to gather for a strategic one day event in order to exchange knowledge and interact as one over a range of important issues facing the industry. - [Cyber Security – Industry Panel Luncheon](https://australiancybersecuritymagazine.com.au/event/cyber-security-industry-panel-luncheon/) - Is Australian business prepared for the mandatory data-breach notification scheme and are they taking the Cyber threat seriously? Visit http://www.amcham.com.au/vpLink.aspx?ID=4200&EVENT=000000003016&STATE=VIC to find out more. - [Commercial UAVS](https://australiancybersecuritymagazine.com.au/event/commercial-uavs/) - The 2nd Annual Commercial UAVs event will bring together your peers from a range of industries, and companies such as Ergon Energy, Cristal Mining, CASA, Royal Australian Air Force to discuss the most pressing issues around UAVs including: How to achieve effective integration Improving data collecting and access Keeping abreast of fast moving technology and - [Asia Pacific Homeland Security: Homeland and Civil Security](https://australiancybersecuritymagazine.com.au/event/asia-pacific-homeland-security-homeland-and-civil-security/) - Major international companies are based in this region and need security solutions to protect their personnel and their sensitive infrastructures. - [Global Sources Electronics Show](https://australiancybersecuritymagazine.com.au/event/global-sources-electronics-show/) - Source the latest security products for the home, auto, mobile and office direct from Asia’s leading manufacturers! Visit www.globalsources.com/daa to find out more and pre-register now to save HK$50 entry fee. - [SPAAL Women in Frontline Security Lunch](https://australiancybersecuritymagazine.com.au/event/spaal-women-in-frontline-security-lunch/) - Women are employed in all areas of law enforcement and security related roles. Visit www.spaal.com.au/category/security-news/national/ to find out more. - [CIO Leaders Summit - Thailand](https://australiancybersecuritymagazine.com.au/event/cio-leaders-summit-thailand/) - The CIO Leaders Summit Thailand 2015 is invitation only and intended for Thailand’s senior IT leaders to gather for a strategic one day event in order to exchange knowledge and interact as one over a range of important issues facing the industry. - [Protecting critical value data from the inside](https://australiancybersecuritymagazine.com.au/event/protecting-critical-value-data-from-the-inside/) - More than one-third of all cybercrime incidents and security breaches are caused by insiders. Visit http://info.nuix.com/protecting-critical-value-data-from-inside-webinar-ASM.html to register now! - [FSI Leaders Summit - Australia](https://australiancybersecuritymagazine.com.au/event/fsi-leaders-summit-australia/) - The summit is invitation only and intended for Australia's most senior Financial Services and Insurance leaders to gather together over two days while interacting and engaging on a range of key issues and trends currently facing the industry. - [CIO Leaders Summit Australia - Melbourne](https://australiancybersecuritymagazine.com.au/event/cio-leaders-summit-australia-melbourne/) - The CIO Leaders Summit Australia 2015 is invitation only and intended for Australia’s senior IT leaders to gather for a strategic one day event in order to exchange knowledge and interact as one over a range of important issues facing the industry. ## Categories - [Uncategorized](https://australiancybersecuritymagazine.com.au/category/uncategorized/) - [Featured](https://australiancybersecuritymagazine.com.au/category/featured/) - Featured posts - [Governance, Risk & Compliance](https://australiancybersecuritymagazine.com.au/category/governance-risk-compliance/) - [Information Security](https://australiancybersecuritymagazine.com.au/category/information-security/) - [CyberTech Verticals](https://australiancybersecuritymagazine.com.au/category/cybertech-verticals/) - [Contributors](https://australiancybersecuritymagazine.com.au/category/contributors/) - [Cryptography & Encryption](https://australiancybersecuritymagazine.com.au/category/cryptography-encryption/) - [Women in CyberSecurity](https://australiancybersecuritymagazine.com.au/category/women-in-cybersecurity/) - [Hacking & Penetration Testing](https://australiancybersecuritymagazine.com.au/category/hacking-penetration-testing/) - [Editor's Desk](https://australiancybersecuritymagazine.com.au/category/editors-desk/) - [Strategy & Architecture](https://australiancybersecuritymagazine.com.au/category/strategy-architecture/) - [End-Point Security](https://australiancybersecuritymagazine.com.au/category/end-point-security/) - [White Papers & Research](https://australiancybersecuritymagazine.com.au/category/white-papers-research/) - [Events](https://australiancybersecuritymagazine.com.au/category/events/) - [Network Security](https://australiancybersecuritymagazine.com.au/category/network-security/) - [Next Gen Tech](https://australiancybersecuritymagazine.com.au/category/next-gen-tech/) - [Skills & Training](https://australiancybersecuritymagazine.com.au/category/skills-training/) - [Vulnerabilities](https://australiancybersecuritymagazine.com.au/category/vulnerabilities/) - [APPACSM2017ISSUE3](https://australiancybersecuritymagazine.com.au/category/app/) - [APPACSM2017ISSUE2](https://australiancybersecuritymagazine.com.au/category/appacsm2017issue2/) - [APP-ACSM](https://australiancybersecuritymagazine.com.au/category/app-acsm/) - [APPACSM2018ISSUE4](https://australiancybersecuritymagazine.com.au/category/appacsm2018issue4/) - [Cryptocurrency](https://australiancybersecuritymagazine.com.au/category/cryptocurrency/) - [Artificial intelligence](https://australiancybersecuritymagazine.com.au/category/artificial-intelligence/) - [APPACSM2017ISSUE1](https://australiancybersecuritymagazine.com.au/category/appacsm2017issue1/) - [Movers & Shakers](https://australiancybersecuritymagazine.com.au/category/movers-shakers/) - [APPACSM2018ISSUE5](https://australiancybersecuritymagazine.com.au/category/appacsm2018issue5/) - [APPACSM2018ISSUE6](https://australiancybersecuritymagazine.com.au/category/appacsm2018issue6/) - [APPACSM2018ISSUE7](https://australiancybersecuritymagazine.com.au/category/appacsm2018issue7/) - [APPACSM2018ISSUE8](https://australiancybersecuritymagazine.com.au/category/appacsm2018issue8/) - [APPACSM2018ISSUE9](https://australiancybersecuritymagazine.com.au/category/appacsm2018issue9/) - [Cyber Security](https://australiancybersecuritymagazine.com.au/category/cyber-security/) - [Technology](https://australiancybersecuritymagazine.com.au/category/technology/) - [Podcast](https://australiancybersecuritymagazine.com.au/category/podcast/) ## Tags - [testing](https://australiancybersecuritymagazine.com.au/tag/test-2/) - test - [Australia](https://australiancybersecuritymagazine.com.au/tag/australia/) - [My Security Media](https://australiancybersecuritymagazine.com.au/tag/my-security-media/) - [New Zealand](https://australiancybersecuritymagazine.com.au/tag/new-zealand/) - [Security companies](https://australiancybersecuritymagazine.com.au/tag/security-companies/) - [Security products](https://australiancybersecuritymagazine.com.au/tag/security-products-2/) - [Fortinet](https://australiancybersecuritymagazine.com.au/tag/fortinet/) - [security](https://australiancybersecuritymagazine.com.au/tag/security/) - [Women in Security](https://australiancybersecuritymagazine.com.au/tag/women-in-security/) - [Asia Pacific](https://australiancybersecuritymagazine.com.au/tag/asia-pacific/) - [ASIS](https://australiancybersecuritymagazine.com.au/tag/asis/) - [ASIS International](https://australiancybersecuritymagazine.com.au/tag/asis-international/) - [Kuala Lumpur](https://australiancybersecuritymagazine.com.au/tag/kuala-lumpur/) - [Malaysia](https://australiancybersecuritymagazine.com.au/tag/malaysia/) - [Angelo Salvatore](https://australiancybersecuritymagazine.com.au/tag/angelo-salvatore/) - [Milestone Systems](https://australiancybersecuritymagazine.com.au/tag/milestone-systems/) - [CCTV](https://australiancybersecuritymagazine.com.au/tag/cctv/) - [Marketing](https://australiancybersecuritymagazine.com.au/tag/marketing/) - [Perth](https://australiancybersecuritymagazine.com.au/tag/perth/) - [China](https://australiancybersecuritymagazine.com.au/tag/china/) - [India](https://australiancybersecuritymagazine.com.au/tag/india/) - [Counter Terrorism](https://australiancybersecuritymagazine.com.au/tag/counter-terrorism/) - [Terrorism](https://australiancybersecuritymagazine.com.au/tag/terrorism/) - [Chris Cubbage](https://australiancybersecuritymagazine.com.au/tag/chris-cubbage/) - [Head of Security](https://australiancybersecuritymagazine.com.au/tag/head-of-security/) - [Qantas](https://australiancybersecuritymagazine.com.au/tag/qantas/) - [ASIAL](https://australiancybersecuritymagazine.com.au/tag/asial/) - [Deloitte](https://australiancybersecuritymagazine.com.au/tag/deloitte/) - [National Security](https://australiancybersecuritymagazine.com.au/tag/national-security/) - [Critical Infrastructure](https://australiancybersecuritymagazine.com.au/tag/critical-infrastructure/) - [Edith Cowan University](https://australiancybersecuritymagazine.com.au/tag/edith-cowan-university/) - [attacks](https://australiancybersecuritymagazine.com.au/tag/attacks/) - [Cyber Resilience](https://australiancybersecuritymagazine.com.au/tag/cyber-resilience/) - [social media](https://australiancybersecuritymagazine.com.au/tag/social-media/) - [Secure Systems](https://australiancybersecuritymagazine.com.au/tag/secure-systems/) - [Teleworking](https://australiancybersecuritymagazine.com.au/tag/teleworking/) - [IP cameras](https://australiancybersecuritymagazine.com.au/tag/ip-cameras/) - [Milestone](https://australiancybersecuritymagazine.com.au/tag/milestone/) - [HID Global](https://australiancybersecuritymagazine.com.au/tag/hid-global/) - [Frost & Sullivan](https://australiancybersecuritymagazine.com.au/tag/frost-sullivan/) - [Indonesia](https://australiancybersecuritymagazine.com.au/tag/indonesia/) - [Private security](https://australiancybersecuritymagazine.com.au/tag/private-security/) - [University of South Australia](https://australiancybersecuritymagazine.com.au/tag/university-of-south-australia/) - [AUSTRAC](https://australiancybersecuritymagazine.com.au/tag/austrac/) - [Australian Transaction Reports and Analysis Centre](https://australiancybersecuritymagazine.com.au/tag/australian-transaction-reports-and-analysis-centre/) - [CEO](https://australiancybersecuritymagazine.com.au/tag/ceo/) - [Woodside Energy](https://australiancybersecuritymagazine.com.au/tag/woodside-energy/) - [Founder](https://australiancybersecuritymagazine.com.au/tag/founder/) - [Director](https://australiancybersecuritymagazine.com.au/tag/director/) - [organisations](https://australiancybersecuritymagazine.com.au/tag/organisations/) - [Payment card industry](https://australiancybersecuritymagazine.com.au/tag/payment-card-industry/) - [Mobile](https://australiancybersecuritymagazine.com.au/tag/mobile/) - [Mcafee](https://australiancybersecuritymagazine.com.au/tag/mcafee/) - [SonicWall](https://australiancybersecuritymagazine.com.au/tag/sonicwall/) - [WatchGuard](https://australiancybersecuritymagazine.com.au/tag/watchguard/) - [Matthew Curtis](https://australiancybersecuritymagazine.com.au/tag/matthew-curtis/) - [risk detection](https://australiancybersecuritymagazine.com.au/tag/risk-detection/) - [Video Analytics](https://australiancybersecuritymagazine.com.au/tag/video-analytics/) - [australian security](https://australiancybersecuritymagazine.com.au/tag/australian-security-2/) - [World Health Organisation](https://australiancybersecuritymagazine.com.au/tag/world-health-organisation/) - [Australian Prime Minister](https://australiancybersecuritymagazine.com.au/tag/australian-prime-minister/) - [defence](https://australiancybersecuritymagazine.com.au/tag/defence/) - [NATO](https://australiancybersecuritymagazine.com.au/tag/nato/) - [Education](https://australiancybersecuritymagazine.com.au/tag/education/) - [WA](https://australiancybersecuritymagazine.com.au/tag/wa/) - [resilience](https://australiancybersecuritymagazine.com.au/tag/resilience/) - [CSIRO](https://australiancybersecuritymagazine.com.au/tag/csiro/) - [security training](https://australiancybersecuritymagazine.com.au/tag/security-training/) - [IT](https://australiancybersecuritymagazine.com.au/tag/it/) - [Kaspersky](https://australiancybersecuritymagazine.com.au/tag/kaspersky/) - [Kaspersky Lab](https://australiancybersecuritymagazine.com.au/tag/kaspersky-lab/) - [security operations](https://australiancybersecuritymagazine.com.au/tag/security-operations/) - [Gartner](https://australiancybersecuritymagazine.com.au/tag/gartner/) - [smartphones](https://australiancybersecuritymagazine.com.au/tag/smartphones/) - [Symantec](https://australiancybersecuritymagazine.com.au/tag/symantec/) - [bring-your-own-device](https://australiancybersecuritymagazine.com.au/tag/bring-your-own-device/) - [Distributed Denial of Service](https://australiancybersecuritymagazine.com.au/tag/distributed-denial-of-service/) - [AusCERT](https://australiancybersecuritymagazine.com.au/tag/auscert/) - [Events](https://australiancybersecuritymagazine.com.au/tag/events/) - [Akamai Technologies](https://australiancybersecuritymagazine.com.au/tag/akamai-technologies/) - [Inmarsat](https://australiancybersecuritymagazine.com.au/tag/inmarsat/) - [McAfee Labs](https://australiancybersecuritymagazine.com.au/tag/mcafee-labs/) - [Unisys](https://australiancybersecuritymagazine.com.au/tag/unisys/) - [Australian Federal Police](https://australiancybersecuritymagazine.com.au/tag/australian-federal-police/) - [Dimension Data](https://australiancybersecuritymagazine.com.au/tag/dimension-data/) - [training](https://australiancybersecuritymagazine.com.au/tag/training/) - [Australian National University](https://australiancybersecuritymagazine.com.au/tag/australian-national-university/) - [Lockheed Martin](https://australiancybersecuritymagazine.com.au/tag/lockheed-martin/) - [Australian Government agency](https://australiancybersecuritymagazine.com.au/tag/australian-government-agency/) - [data protection](https://australiancybersecuritymagazine.com.au/tag/data-protection/) - [Australian Government](https://australiancybersecuritymagazine.com.au/tag/australian-government/) - [Accenture](https://australiancybersecuritymagazine.com.au/tag/accenture/) - [AISA](https://australiancybersecuritymagazine.com.au/tag/aisa/) - [UL](https://australiancybersecuritymagazine.com.au/tag/ul/) - [Palo Alto Networks](https://australiancybersecuritymagazine.com.au/tag/palo-alto-networks/) - [Melbourne](https://australiancybersecuritymagazine.com.au/tag/melbourne/) - [Firewall](https://australiancybersecuritymagazine.com.au/tag/firewall/) - [cyber security](https://australiancybersecuritymagazine.com.au/tag/cyber-security/) - [data centres](https://australiancybersecuritymagazine.com.au/tag/data-centres/) - [malware](https://australiancybersecuritymagazine.com.au/tag/malware/) - [AUSMIN](https://australiancybersecuritymagazine.com.au/tag/ausmin/) - [CyberArk](https://australiancybersecuritymagazine.com.au/tag/cyberark/) - [AFP](https://australiancybersecuritymagazine.com.au/tag/afp/) - [Cisco](https://australiancybersecuritymagazine.com.au/tag/cisco/) - [CyberSecurity](https://australiancybersecuritymagazine.com.au/tag/cybersecurity/) - [Curtin University](https://australiancybersecuritymagazine.com.au/tag/curtin-university/) - [ES2](https://australiancybersecuritymagazine.com.au/tag/es2/) - [Trend Micro](https://australiancybersecuritymagazine.com.au/tag/trend-micro/) - [Asia Pacific Region](https://australiancybersecuritymagazine.com.au/tag/asia-pacific-region/) - [Thailand](https://australiancybersecuritymagazine.com.au/tag/thailand/) - [Kaspersky Labs](https://australiancybersecuritymagazine.com.au/tag/kaspersky-labs/) - [DDoS Attack](https://australiancybersecuritymagazine.com.au/tag/ddos-attack/) - [Deep Web](https://australiancybersecuritymagazine.com.au/tag/deep-web/) - [Seagate Technologies](https://australiancybersecuritymagazine.com.au/tag/seagate-technologies/) - [Seagate Technology](https://australiancybersecuritymagazine.com.au/tag/seagate-technology/) - [data breaches](https://australiancybersecuritymagazine.com.au/tag/data-breaches/) - [Honeywell](https://australiancybersecuritymagazine.com.au/tag/honeywell/) - [FireEye](https://australiancybersecuritymagazine.com.au/tag/fireeye/) - [Data Analytics](https://australiancybersecuritymagazine.com.au/tag/data-analytics/) - [HP](https://australiancybersecuritymagazine.com.au/tag/hp/) - [Apple](https://australiancybersecuritymagazine.com.au/tag/apple/) - [Seagate](https://australiancybersecuritymagazine.com.au/tag/seagate/) - [Akamai](https://australiancybersecuritymagazine.com.au/tag/akamai/) - [Bitdefender](https://australiancybersecuritymagazine.com.au/tag/bitdefender/) - [Lockheed Martin Australia](https://australiancybersecuritymagazine.com.au/tag/lockheed-martin-australia/) - [Sophos](https://australiancybersecuritymagazine.com.au/tag/sophos/) - [Cyber Crime](https://australiancybersecuritymagazine.com.au/tag/cyber-crime/) - [Security Threat](https://australiancybersecuritymagazine.com.au/tag/security-threat/) - [Business Continuity](https://australiancybersecuritymagazine.com.au/tag/business-continuity/) - [Video surveillance](https://australiancybersecuritymagazine.com.au/tag/video-surveillance/) - [F5](https://australiancybersecuritymagazine.com.au/tag/f5/) - [Trustwave](https://australiancybersecuritymagazine.com.au/tag/trustwave/) - [RMIT University](https://australiancybersecuritymagazine.com.au/tag/rmit-university/) - [F5 Networks](https://australiancybersecuritymagazine.com.au/tag/f5-networks/) - [imperva](https://australiancybersecuritymagazine.com.au/tag/imperva/) - [RMIA](https://australiancybersecuritymagazine.com.au/tag/rmia/) - [Verizon](https://australiancybersecuritymagazine.com.au/tag/verizon/) - [Telstra](https://australiancybersecuritymagazine.com.au/tag/telstra/) - [Thales](https://australiancybersecuritymagazine.com.au/tag/thales/) - [Nuix](https://australiancybersecuritymagazine.com.au/tag/nuix/) - [Genetec](https://australiancybersecuritymagazine.com.au/tag/genetec/) - [Threat Intelligence](https://australiancybersecuritymagazine.com.au/tag/threat-intelligence/) - [Watchguard Technologies](https://australiancybersecuritymagazine.com.au/tag/watchguard-technologies/) - [IHMA](https://australiancybersecuritymagazine.com.au/tag/ihma/) - [ACSC](https://australiancybersecuritymagazine.com.au/tag/acsc/) - [Norton](https://australiancybersecuritymagazine.com.au/tag/norton/) - [Commonwealth Bank](https://australiancybersecuritymagazine.com.au/tag/commonwealth-bank/) - [Quantum](https://australiancybersecuritymagazine.com.au/tag/quantum/) - [EY](https://australiancybersecuritymagazine.com.au/tag/ey/) - [ISS](https://australiancybersecuritymagazine.com.au/tag/iss/) - [Threat Management](https://australiancybersecuritymagazine.com.au/tag/threat-management/) - [Cyber Attacks](https://australiancybersecuritymagazine.com.au/tag/cyber-attacks/) - [DDLS](https://australiancybersecuritymagazine.com.au/tag/ddls/) - [Online Safety](https://australiancybersecuritymagazine.com.au/tag/online-safety/) - [Interpol World](https://australiancybersecuritymagazine.com.au/tag/interpol-world/) - [University of Sydney](https://australiancybersecuritymagazine.com.au/tag/university-of-sydney/) - [CheckPoint Software](https://australiancybersecuritymagazine.com.au/tag/checkpoint-software/) - [Fujitsu](https://australiancybersecuritymagazine.com.au/tag/fujitsu/) - [RSA](https://australiancybersecuritymagazine.com.au/tag/rsa/) - [Microsoft](https://australiancybersecuritymagazine.com.au/tag/microsoft/) - [LogRhythm](https://australiancybersecuritymagazine.com.au/tag/logrhythm/) - [ManageEngine](https://australiancybersecuritymagazine.com.au/tag/manageengine/) - [AIIA](https://australiancybersecuritymagazine.com.au/tag/aiia/) - [Interpol](https://australiancybersecuritymagazine.com.au/tag/interpol/) - [Security Professionals](https://australiancybersecuritymagazine.com.au/tag/security-professionals/) - [Surveillance](https://australiancybersecuritymagazine.com.au/tag/surveillance/) - [Privacy](https://australiancybersecuritymagazine.com.au/tag/privacy/) - [Online Security](https://australiancybersecuritymagazine.com.au/tag/online-security/) - [Venafi](https://australiancybersecuritymagazine.com.au/tag/venafi/) - [robotics](https://australiancybersecuritymagazine.com.au/tag/robotics/) - [hybrid IT](https://australiancybersecuritymagazine.com.au/tag/hybrid-it/) - [tenable](https://australiancybersecuritymagazine.com.au/tag/tenable/) - [Menlo Security](https://australiancybersecuritymagazine.com.au/tag/menlo-security/) - [ransomware](https://australiancybersecuritymagazine.com.au/tag/ransomware/) - [state of the internet report](https://australiancybersecuritymagazine.com.au/tag/state-of-the-internet-report/) - [DDoS](https://australiancybersecuritymagazine.com.au/tag/ddos/) - [Sean Duca](https://australiancybersecuritymagazine.com.au/tag/sean-duca/) - [#AISACON17](https://australiancybersecuritymagazine.com.au/tag/aisacon17/) - [cyber attack](https://australiancybersecuritymagazine.com.au/tag/cyber-attack/) - [automation](https://australiancybersecuritymagazine.com.au/tag/automation/) - [SOC](https://australiancybersecuritymagazine.com.au/tag/soc/) - [Alex Hoffmann](https://australiancybersecuritymagazine.com.au/tag/alex-hoffmann/) - [CQR](https://australiancybersecuritymagazine.com.au/tag/cqr/) - [Insider](https://australiancybersecuritymagazine.com.au/tag/insider/) - [David Buerckner](https://australiancybersecuritymagazine.com.au/tag/david-buerckner/) - [Head of Security Operations](https://australiancybersecuritymagazine.com.au/tag/head-of-security-operations/) - [Tesserent](https://australiancybersecuritymagazine.com.au/tag/tesserent/) - [network](https://australiancybersecuritymagazine.com.au/tag/network/) - [siemplicity](https://australiancybersecuritymagazine.com.au/tag/siemplicity/) - [DR JACQ ROMERO](https://australiancybersecuritymagazine.com.au/tag/dr-jacq-romero/) - [L’Oréal-UNESCO’s 2017 Australian Fellow for Women in Science](https://australiancybersecuritymagazine.com.au/tag/loreal-unescos-2017-australian-fellow-for-women-in-science/) - [#womenincyber](https://australiancybersecuritymagazine.com.au/tag/womenincyber/) - [Glenn Welby](https://australiancybersecuritymagazine.com.au/tag/glenn-welby/) - [General Manager Security](https://australiancybersecuritymagazine.com.au/tag/general-manager-security/) - [TTD](https://australiancybersecuritymagazine.com.au/tag/ttd/) - [Sourcefire](https://australiancybersecuritymagazine.com.au/tag/sourcefire/) - [detection](https://australiancybersecuritymagazine.com.au/tag/detection/) - [Bonnie Butlin](https://australiancybersecuritymagazine.com.au/tag/bonnie-butlin/) - [Podcast](https://australiancybersecuritymagazine.com.au/tag/podcast/) - [Cyber Security Weekly Podcast](https://australiancybersecuritymagazine.com.au/tag/cyber-security-weekly-podcast/) - [WATCF](https://australiancybersecuritymagazine.com.au/tag/watcf/) - [capture the flag](https://australiancybersecuritymagazine.com.au/tag/capture-the-flag/) - [Aaron Doggett](https://australiancybersecuritymagazine.com.au/tag/aaron-doggett/) - [Kevin O'Sullivan](https://australiancybersecuritymagazine.com.au/tag/kevin-osullivan/) - [Hivint](https://australiancybersecuritymagazine.com.au/tag/hivint/) - [KineticIT](https://australiancybersecuritymagazine.com.au/tag/kineticit/) - [EMT](https://australiancybersecuritymagazine.com.au/tag/emt/) - [flexera](https://australiancybersecuritymagazine.com.au/tag/flexera/) - [airlock](https://australiancybersecuritymagazine.com.au/tag/airlock/) - [ASD](https://australiancybersecuritymagazine.com.au/tag/asd/) - [Top 4](https://australiancybersecuritymagazine.com.au/tag/top-4/) - [Scott Hagenus](https://australiancybersecuritymagazine.com.au/tag/scott-hagenus/) - [Netevents](https://australiancybersecuritymagazine.com.au/tag/netevents/) - [Dolce](https://australiancybersecuritymagazine.com.au/tag/dolce/) - [Mansion](https://australiancybersecuritymagazine.com.au/tag/mansion/) - [San Jose](https://australiancybersecuritymagazine.com.au/tag/san-jose/) - [Silicon Valley](https://australiancybersecuritymagazine.com.au/tag/silicon-valley/) - [AI](https://australiancybersecuritymagazine.com.au/tag/ai/) - [OSPAs](https://australiancybersecuritymagazine.com.au/tag/ospas/) - [Women in Cyber](https://australiancybersecuritymagazine.com.au/tag/women-in-cyber/) - [Application Security](https://australiancybersecuritymagazine.com.au/tag/application-security/) - [Micro Focus](https://australiancybersecuritymagazine.com.au/tag/micro-focus/) - [zerto](https://australiancybersecuritymagazine.com.au/tag/zerto/) - [matthew kates](https://australiancybersecuritymagazine.com.au/tag/matthew-kates/) - [Virtual Replication](https://australiancybersecuritymagazine.com.au/tag/virtual-replication/) - [ZVR](https://australiancybersecuritymagazine.com.au/tag/zvr/) - [harlie Miller](https://australiancybersecuritymagazine.com.au/tag/harlie-miller/) - [Chris Valasek](https://australiancybersecuritymagazine.com.au/tag/chris-valasek/) - [#AISACON17. GM](https://australiancybersecuritymagazine.com.au/tag/aisacon17-gm/) - [Cruise](https://australiancybersecuritymagazine.com.au/tag/cruise/) - [Hackers](https://australiancybersecuritymagazine.com.au/tag/hackers/) - [Jeep](https://australiancybersecuritymagazine.com.au/tag/jeep/) - [architects](https://australiancybersecuritymagazine.com.au/tag/architects/) - [driverless cars](https://australiancybersecuritymagazine.com.au/tag/driverless-cars/) - [autonomous vehicles](https://australiancybersecuritymagazine.com.au/tag/autonomous-vehicles/) - [Update](https://australiancybersecuritymagazine.com.au/tag/update/) - [weekly podcast](https://australiancybersecuritymagazine.com.au/tag/weekly-podcast/) - [Cyber Threat Alliance](https://australiancybersecuritymagazine.com.au/tag/cyber-threat-alliance/) - [CTA](https://australiancybersecuritymagazine.com.au/tag/cta/) - [Michael Daniel](https://australiancybersecuritymagazine.com.au/tag/michael-daniel/) - [President](https://australiancybersecuritymagazine.com.au/tag/president/) - [Vendors](https://australiancybersecuritymagazine.com.au/tag/vendors/) - [Dr. Chris Wallace](https://australiancybersecuritymagazine.com.au/tag/dr-chris-wallace/) - [ARPC](https://australiancybersecuritymagazine.com.au/tag/arpc/) - [cyberterrorism](https://australiancybersecuritymagazine.com.au/tag/cyberterrorism/) - [cyber](https://australiancybersecuritymagazine.com.au/tag/cyber/) - [insurance](https://australiancybersecuritymagazine.com.au/tag/insurance/) - [9/11](https://australiancybersecuritymagazine.com.au/tag/911/) - [Australian Reinsurance Pool Corporation](https://australiancybersecuritymagazine.com.au/tag/australian-reinsurance-pool-corporation/) - [Dr. Gavriel Schneider](https://australiancybersecuritymagazine.com.au/tag/dr-gavriel-schneider/) - [Can I See your Hands](https://australiancybersecuritymagazine.com.au/tag/can-i-see-your-hands/) - [Situational Awareness](https://australiancybersecuritymagazine.com.au/tag/situational-awareness/) - [Personal Risk Management](https://australiancybersecuritymagazine.com.au/tag/personal-risk-management/) - [Rinske Geerlings](https://australiancybersecuritymagazine.com.au/tag/rinske-geerlings/) - [BCP](https://australiancybersecuritymagazine.com.au/tag/bcp/) - [Consultant of the Year](https://australiancybersecuritymagazine.com.au/tag/consultant-of-the-year/) - [National Conference](https://australiancybersecuritymagazine.com.au/tag/national-conference/) - [Risk Management Institute of Australasia](https://australiancybersecuritymagazine.com.au/tag/risk-management-institute-of-australasia/) - [Social Media Communications](https://australiancybersecuritymagazine.com.au/tag/social-media-communications/) - [GM Risk Group](https://australiancybersecuritymagazine.com.au/tag/gm-risk-group/) - [hostile environments](https://australiancybersecuritymagazine.com.au/tag/hostile-environments/) - [media](https://australiancybersecuritymagazine.com.au/tag/media/) - [journalist](https://australiancybersecuritymagazine.com.au/tag/journalist/) - [Shannon Sedgwick](https://australiancybersecuritymagazine.com.au/tag/shannon-sedgwick/) - [Australian Information Security Magazine](https://australiancybersecuritymagazine.com.au/tag/australian-information-security-magazine/) - [Conference](https://australiancybersecuritymagazine.com.au/tag/conference/) - [AISACON](https://australiancybersecuritymagazine.com.au/tag/aisacon/) - [BrisSec](https://australiancybersecuritymagazine.com.au/tag/brissec/) - [AISA WA](https://australiancybersecuritymagazine.com.au/tag/aisa-wa/) - [membership](https://australiancybersecuritymagazine.com.au/tag/membership/) - [Daisy Sinclair](https://australiancybersecuritymagazine.com.au/tag/daisy-sinclair/) - [Mourad Khalil](https://australiancybersecuritymagazine.com.au/tag/mourad-khalil/) - [Kelly Taylor](https://australiancybersecuritymagazine.com.au/tag/kelly-taylor/) - [Helaine Leggat](https://australiancybersecuritymagazine.com.au/tag/helaine-leggat/) - [Tony Campbell](https://australiancybersecuritymagazine.com.au/tag/tony-campbell/) - [Alan Fereday](https://australiancybersecuritymagazine.com.au/tag/alan-fereday/) - [Editor](https://australiancybersecuritymagazine.com.au/tag/editor/) - [Australian Cyber Security Magazine](https://australiancybersecuritymagazine.com.au/tag/australian-cyber-security-magazine/) - [Raqib Taskforce](https://australiancybersecuritymagazine.com.au/tag/raqib-taskforce/) - [Anooshe Mustaq](https://australiancybersecuritymagazine.com.au/tag/anooshe-mustaq/) - [youth](https://australiancybersecuritymagazine.com.au/tag/youth/) - [muslim](https://australiancybersecuritymagazine.com.au/tag/muslim/) - [extremism](https://australiancybersecuritymagazine.com.au/tag/extremism/) - [online](https://australiancybersecuritymagazine.com.au/tag/online/) - [Islam](https://australiancybersecuritymagazine.com.au/tag/islam/) - [Christianity](https://australiancybersecuritymagazine.com.au/tag/christianity/) - [Scott Ryrie](https://australiancybersecuritymagazine.com.au/tag/scott-ryrie/) - [Anthony Ventura](https://australiancybersecuritymagazine.com.au/tag/anthony-ventura/) - [Risk](https://australiancybersecuritymagazine.com.au/tag/risk/) - [Risk Management](https://australiancybersecuritymagazine.com.au/tag/risk-management/) - [Jason Brown](https://australiancybersecuritymagazine.com.au/tag/jason-brown/) - [Security Professionals of Australasia](https://australiancybersecuritymagazine.com.au/tag/security-professionals-of-australasia/) - [SPA](https://australiancybersecuritymagazine.com.au/tag/spa/) - [Australian Standards](https://australiancybersecuritymagazine.com.au/tag/australian-standards/) - [Crowded Places](https://australiancybersecuritymagazine.com.au/tag/crowded-places/) - [BSides](https://australiancybersecuritymagazine.com.au/tag/bsides/) - [Canberra](https://australiancybersecuritymagazine.com.au/tag/canberra/) - [DefCon](https://australiancybersecuritymagazine.com.au/tag/defcon/) - [WA_CTF](https://australiancybersecuritymagazine.com.au/tag/wa_ctf/) - [Anastasia Rae](https://australiancybersecuritymagazine.com.au/tag/anastasia-rae/) - [General Manager](https://australiancybersecuritymagazine.com.au/tag/general-manager/) - [Industrial Security](https://australiancybersecuritymagazine.com.au/tag/industrial-security/) - [mitigation](https://australiancybersecuritymagazine.com.au/tag/mitigation/) - [ANZ](https://australiancybersecuritymagazine.com.au/tag/anz/) - [Derek Manky](https://australiancybersecuritymagazine.com.au/tag/derek-manky/) - [Notifiable Data Breach](https://australiancybersecuritymagazine.com.au/tag/notifiable-data-breach/) - [White Paper](https://australiancybersecuritymagazine.com.au/tag/white-paper/) - [NDB](https://australiancybersecuritymagazine.com.au/tag/ndb/) - [Mandatory Data Breach legislation](https://australiancybersecuritymagazine.com.au/tag/mandatory-data-breach-legislation/) - [Q3](https://australiancybersecuritymagazine.com.au/tag/q3/) - [Threat Landscape Report](https://australiancybersecuritymagazine.com.au/tag/threat-landscape-report/) - [Twan Tranh](https://australiancybersecuritymagazine.com.au/tag/twan-tranh/) - [Consulting Systems Engineer](https://australiancybersecuritymagazine.com.au/tag/consulting-systems-engineer/) - [Security Architect](https://australiancybersecuritymagazine.com.au/tag/security-architect/) - [General Data Protection Regulation](https://australiancybersecuritymagazine.com.au/tag/general-data-protection-regulation/) - [GDPR](https://australiancybersecuritymagazine.com.au/tag/gdpr/) - [cyber insurance](https://australiancybersecuritymagazine.com.au/tag/cyber-insurance/) - [vendor mergers](https://australiancybersecuritymagazine.com.au/tag/vendor-mergers/) - [IoT predictions](https://australiancybersecuritymagazine.com.au/tag/iot-predictions/) - [Social Credit System](https://australiancybersecuritymagazine.com.au/tag/social-credit-system/) - [Canalys](https://australiancybersecuritymagazine.com.au/tag/canalys/) - [CCF](https://australiancybersecuritymagazine.com.au/tag/ccf/) - [Channels Forum](https://australiancybersecuritymagazine.com.au/tag/channels-forum/) - [Claudio Stahnke](https://australiancybersecuritymagazine.com.au/tag/claudio-stahnke/) - [Privacy Amendment (Notifiable Data Breaches) Bill 2016](https://australiancybersecuritymagazine.com.au/tag/privacy-amendment-notifiable-data-breaches-bill-2016/) - [Alex Manea](https://australiancybersecuritymagazine.com.au/tag/alex-manea/) - [CSO](https://australiancybersecuritymagazine.com.au/tag/cso/) - [Melbourne Shield](https://australiancybersecuritymagazine.com.au/tag/melbourne-shield/) - [QIS](https://australiancybersecuritymagazine.com.au/tag/qis/) - [At-Hoc](https://australiancybersecuritymagazine.com.au/tag/at-hoc/) - [Workspaces](https://australiancybersecuritymagazine.com.au/tag/workspaces/) - [Chief Security Officer](https://australiancybersecuritymagazine.com.au/tag/chief-security-officer/) - [Blackberry](https://australiancybersecuritymagazine.com.au/tag/blackberry/) - [Ashley Wearne](https://australiancybersecuritymagazine.com.au/tag/ashley-wearne/) - [Chester Wisniewski](https://australiancybersecuritymagazine.com.au/tag/chester-wisniewski/) - [Principal Researcher](https://australiancybersecuritymagazine.com.au/tag/principal-researcher/) - [John Shier](https://australiancybersecuritymagazine.com.au/tag/john-shier/) - [Senior Security Advisor](https://australiancybersecuritymagazine.com.au/tag/senior-security-advisor/) - [Warbiking](https://australiancybersecuritymagazine.com.au/tag/warbiking/) - [War Biking](https://australiancybersecuritymagazine.com.au/tag/war-biking/) - [Network security](https://australiancybersecuritymagazine.com.au/tag/network-security/) - [NakedSecurity](https://australiancybersecuritymagazine.com.au/tag/nakedsecurity/) - [#AISAWA17](https://australiancybersecuritymagazine.com.au/tag/aisawa17/) - [Cooperative Research Centre](https://australiancybersecuritymagazine.com.au/tag/cooperative-research-centre/) - [ECU](https://australiancybersecuritymagazine.com.au/tag/ecu/) - [Peter Hannay](https://australiancybersecuritymagazine.com.au/tag/peter-hannay/) - [PhD research](https://australiancybersecuritymagazine.com.au/tag/phd-research/) - [Sandra Ragg](https://australiancybersecuritymagazine.com.au/tag/sandra-ragg/) - [Office of the Cyber Security Special Adviser](https://australiancybersecuritymagazine.com.au/tag/office-of-the-cyber-security-special-adviser/) - [Prime Minister and Cabinet](https://australiancybersecuritymagazine.com.au/tag/prime-minister-and-cabinet/) - [Department of Human Services](https://australiancybersecuritymagazine.com.au/tag/department-of-human-services/) - [#WICME](https://australiancybersecuritymagazine.com.au/tag/wicme/) - [Women in Cyber Experience](https://australiancybersecuritymagazine.com.au/tag/women-in-cyber-experience/) - [Narelle Devine](https://australiancybersecuritymagazine.com.au/tag/narelle-devine/) - [Chief Information Security Officer](https://australiancybersecuritymagazine.com.au/tag/chief-information-security-officer/) - [Australian INformation Security Association](https://australiancybersecuritymagazine.com.au/tag/australian-information-security-association/) - [Asterisk](https://australiancybersecuritymagazine.com.au/tag/asterisk/) - [Steve Schupp](https://australiancybersecuritymagazine.com.au/tag/steve-schupp/) - [eSafety Commissioner](https://australiancybersecuritymagazine.com.au/tag/esafety-commissioner/) - [eSafety](https://australiancybersecuritymagazine.com.au/tag/esafety/) - [Julie Inman-Grant](https://australiancybersecuritymagazine.com.au/tag/julie-inman-grant/) - [child safety](https://australiancybersecuritymagazine.com.au/tag/child-safety/) - [child exploitation](https://australiancybersecuritymagazine.com.au/tag/child-exploitation/) - [bullying](https://australiancybersecuritymagazine.com.au/tag/bullying/) - [parenting](https://australiancybersecuritymagazine.com.au/tag/parenting/) - [Andy Battle](https://australiancybersecuritymagazine.com.au/tag/andy-battle/) - [Steve Simpson](https://australiancybersecuritymagazine.com.au/tag/steve-simpson/) - [AISAWA](https://australiancybersecuritymagazine.com.au/tag/aisawa/) - [Human Services](https://australiancybersecuritymagazine.com.au/tag/human-services/) - [CISO](https://australiancybersecuritymagazine.com.au/tag/ciso/) - [skills](https://australiancybersecuritymagazine.com.au/tag/skills/) - [Jason Magic](https://australiancybersecuritymagazine.com.au/tag/jason-magic/) - [Missing Link](https://australiancybersecuritymagazine.com.au/tag/missing-link/) - [Shockwave](https://australiancybersecuritymagazine.com.au/tag/shockwave/) - [Wayne Tufek](https://australiancybersecuritymagazine.com.au/tag/wayne-tufek/) - [Ethereum’s blockchain](https://australiancybersecuritymagazine.com.au/tag/ethereums-blockchain/) - [Annu Singh](https://australiancybersecuritymagazine.com.au/tag/annu-singh/) - [Mandatory Data Breach Notification](https://australiancybersecuritymagazine.com.au/tag/mandatory-data-breach-notification/) - [Elliot Dellys](https://australiancybersecuritymagazine.com.au/tag/elliot-dellys/) - [NotPetya](https://australiancybersecuritymagazine.com.au/tag/notpetya/) - [WannaCry](https://australiancybersecuritymagazine.com.au/tag/wannacry/) - [Meltdown](https://australiancybersecuritymagazine.com.au/tag/meltdown/) - [Spectre](https://australiancybersecuritymagazine.com.au/tag/spectre/) - [bugs](https://australiancybersecuritymagazine.com.au/tag/bugs/) - [Mark Jones](https://australiancybersecuritymagazine.com.au/tag/mark-jones/) - [zero-days](https://australiancybersecuritymagazine.com.au/tag/zero-days/) - [Compliance](https://australiancybersecuritymagazine.com.au/tag/compliance/) - [exploits](https://australiancybersecuritymagazine.com.au/tag/exploits/) - [#WICME17](https://australiancybersecuritymagazine.com.au/tag/wicme17/) - [First Assistant Secretary](https://australiancybersecuritymagazine.com.au/tag/first-assistant-secretary/) - [Department of the Prime Minister and Cabinet](https://australiancybersecuritymagazine.com.au/tag/department-of-the-prime-minister-and-cabinet/) - [Heidi Young](https://australiancybersecuritymagazine.com.au/tag/heidi-young/) - [National Events Manager](https://australiancybersecuritymagazine.com.au/tag/national-events-manager/) - [Australian Women in Security Network](https://australiancybersecuritymagazine.com.au/tag/australian-women-in-security-network/) - [AWSN](https://australiancybersecuritymagazine.com.au/tag/awsn/) - [Principal Consultant](https://australiancybersecuritymagazine.com.au/tag/principal-consultant/) - [Technology Risk](https://australiancybersecuritymagazine.com.au/tag/technology-risk/) - [Titan ICT Consultants](https://australiancybersecuritymagazine.com.au/tag/titan-ict-consultants/) - [Mining](https://australiancybersecuritymagazine.com.au/tag/mining/) - [resources](https://australiancybersecuritymagazine.com.au/tag/resources/) - [crisis communication](https://australiancybersecuritymagazine.com.au/tag/crisis-communication/) - [CARD](https://australiancybersecuritymagazine.com.au/tag/card/) - [Cyber8Lab](https://australiancybersecuritymagazine.com.au/tag/cyber8lab/) - [Cyber attack response drill](https://australiancybersecuritymagazine.com.au/tag/cyber-attack-response-drill/) - [simulation](https://australiancybersecuritymagazine.com.au/tag/simulation/) - [#womeninsecurity](https://australiancybersecuritymagazine.com.au/tag/womeninsecurity/) - [video](https://australiancybersecuritymagazine.com.au/tag/video/) - [#MIPS2018](https://australiancybersecuritymagazine.com.au/tag/mips2018/) - [#milestonecommunitydays](https://australiancybersecuritymagazine.com.au/tag/milestonecommunitydays/) - [facial recognition](https://australiancybersecuritymagazine.com.au/tag/facial-recognition/) - [aggregation](https://australiancybersecuritymagazine.com.au/tag/aggregation/) - [augmentation](https://australiancybersecuritymagazine.com.au/tag/augmentation/) - [Bjorn Eilertsen](https://australiancybersecuritymagazine.com.au/tag/bjorn-eilertsen/) - [Chief Technology Officer](https://australiancybersecuritymagazine.com.au/tag/chief-technology-officer/) - [Benjamin Low](https://australiancybersecuritymagazine.com.au/tag/benjamin-low/) - [Indo-Pacific](https://australiancybersecuritymagazine.com.au/tag/indo-pacific/) - [APAC](https://australiancybersecuritymagazine.com.au/tag/apac/) - [trust](https://australiancybersecuritymagazine.com.au/tag/trust/) - [Hans Skovgaard](https://australiancybersecuritymagazine.com.au/tag/hans-skovgaard/) - [Artificial Intelligence](https://australiancybersecuritymagazine.com.au/tag/artificial-intelligence/) - [Deep Learning](https://australiancybersecuritymagazine.com.au/tag/deep-learning/) - [Neural Networks](https://australiancybersecuritymagazine.com.au/tag/neural-networks/) - [machine learning](https://australiancybersecuritymagazine.com.au/tag/machine-learning/) - [Josep Garcia](https://australiancybersecuritymagazine.com.au/tag/josep-garcia/) - [VP](https://australiancybersecuritymagazine.com.au/tag/vp/) - [Partners](https://australiancybersecuritymagazine.com.au/tag/partners/) - [Alliances](https://australiancybersecuritymagazine.com.au/tag/alliances/) - [Red Hat](https://australiancybersecuritymagazine.com.au/tag/red-hat/) - [Miletsone](https://australiancybersecuritymagazine.com.au/tag/miletsone/) - [VMS](https://australiancybersecuritymagazine.com.au/tag/vms/) - [video management](https://australiancybersecuritymagazine.com.au/tag/video-management/) - [analytics](https://australiancybersecuritymagazine.com.au/tag/analytics/) - [South pacific](https://australiancybersecuritymagazine.com.au/tag/south-pacific/) - [Regional Channel Director](https://australiancybersecuritymagazine.com.au/tag/regional-channel-director/) - [Jordan Callis](https://australiancybersecuritymagazine.com.au/tag/jordan-callis/) - [Country Manager](https://australiancybersecuritymagazine.com.au/tag/country-manager/) - [Stephen Bose](https://australiancybersecuritymagazine.com.au/tag/stephen-bose/) - [Head of Business Development](https://australiancybersecuritymagazine.com.au/tag/head-of-business-development/) - [Australasia](https://australiancybersecuritymagazine.com.au/tag/australasia/) - [iCetana](https://australiancybersecuritymagazine.com.au/tag/icetana/) - [pattern](https://australiancybersecuritymagazine.com.au/tag/pattern/) - [algorithm](https://australiancybersecuritymagazine.com.au/tag/algorithm/) - [Bill Rue](https://australiancybersecuritymagazine.com.au/tag/bill-rue/) - [CTO of MailGuard](https://australiancybersecuritymagazine.com.au/tag/cto-of-mailguard/) - [cloud](https://australiancybersecuritymagazine.com.au/tag/cloud/) - [web](https://australiancybersecuritymagazine.com.au/tag/web/) - [email](https://australiancybersecuritymagazine.com.au/tag/email/) - [spyware](https://australiancybersecuritymagazine.com.au/tag/spyware/) - [phishing](https://australiancybersecuritymagazine.com.au/tag/phishing/) - [malicious scams](https://australiancybersecuritymagazine.com.au/tag/malicious-scams/) - [brand jacking](https://australiancybersecuritymagazine.com.au/tag/brand-jacking/) - [ACSM](https://australiancybersecuritymagazine.com.au/tag/acsm/) - [Vegas](https://australiancybersecuritymagazine.com.au/tag/vegas/) - [SOCs](https://australiancybersecuritymagazine.com.au/tag/socs/) - [Blockchain](https://australiancybersecuritymagazine.com.au/tag/blockchain/) - [Incident Response](https://australiancybersecuritymagazine.com.au/tag/incident-response/) - [Marcus Evans](https://australiancybersecuritymagazine.com.au/tag/marcus-evans/) - [Francisco Correa](https://australiancybersecuritymagazine.com.au/tag/francisco-correa/) - [ethical hacker](https://australiancybersecuritymagazine.com.au/tag/ethical-hacker/) - [bugcrowd](https://australiancybersecuritymagazine.com.au/tag/bugcrowd/) - [bug bounty](https://australiancybersecuritymagazine.com.au/tag/bug-bounty/) - [hacking](https://australiancybersecuritymagazine.com.au/tag/hacking/) - [Yahoo](https://australiancybersecuritymagazine.com.au/tag/yahoo/) - [Google](https://australiancybersecuritymagazine.com.au/tag/google/) - [Oracle](https://australiancybersecuritymagazine.com.au/tag/oracle/) - [panchocosil](https://australiancybersecuritymagazine.com.au/tag/panchocosil/) - [Sean Rogers](https://australiancybersecuritymagazine.com.au/tag/sean-rogers/) - [volume](https://australiancybersecuritymagazine.com.au/tag/volume/) - [variety](https://australiancybersecuritymagazine.com.au/tag/variety/) - [velocity](https://australiancybersecuritymagazine.com.au/tag/velocity/) - [data](https://australiancybersecuritymagazine.com.au/tag/data/) - [Yellowfin](https://australiancybersecuritymagazine.com.au/tag/yellowfin/) - [business intellegence](https://australiancybersecuritymagazine.com.au/tag/business-intellegence/) - [intelligence](https://australiancybersecuritymagazine.com.au/tag/intelligence/) - [BI](https://australiancybersecuritymagazine.com.au/tag/bi/) - [Ivan Seow](https://australiancybersecuritymagazine.com.au/tag/ivan-seow/) - [MarkLogic](https://australiancybersecuritymagazine.com.au/tag/marklogic/) - [noSQL](https://australiancybersecuritymagazine.com.au/tag/nosql/) - [database](https://australiancybersecuritymagazine.com.au/tag/database/) - [Tim Macdermid](https://australiancybersecuritymagazine.com.au/tag/tim-macdermid/) - [VP of Sales](https://australiancybersecuritymagazine.com.au/tag/vp-of-sales/) - [APJ](https://australiancybersecuritymagazine.com.au/tag/apj/) - [Jason Hunter](https://australiancybersecuritymagazine.com.au/tag/jason-hunter/) - [CTO](https://australiancybersecuritymagazine.com.au/tag/cto/) - [FSI](https://australiancybersecuritymagazine.com.au/tag/fsi/) - [Financial Services](https://australiancybersecuritymagazine.com.au/tag/financial-services/) - [Luke Schibeci](https://australiancybersecuritymagazine.com.au/tag/luke-schibeci/) - [Crowded Places Safety and Security Conference](https://australiancybersecuritymagazine.com.au/tag/crowded-places-safety-and-security-conference/) - [Hatamoto](https://australiancybersecuritymagazine.com.au/tag/hatamoto/) - [human](https://australiancybersecuritymagazine.com.au/tag/human/) - [behaviour](https://australiancybersecuritymagazine.com.au/tag/behaviour/) - [Adam Spencer](https://australiancybersecuritymagazine.com.au/tag/adam-spencer/) - [#ASEANAUS](https://australiancybersecuritymagazine.com.au/tag/aseanaus/) - [#ASEANinAus](https://australiancybersecuritymagazine.com.au/tag/aseaninaus/) - [#ASEANCodeathon](https://australiancybersecuritymagazine.com.au/tag/aseancodeathon/) - [ASEAN-Australia Codeathon](https://australiancybersecuritymagazine.com.au/tag/asean-australia-codeathon/) - [Codeathon](https://australiancybersecuritymagazine.com.au/tag/codeathon/) - [cybercrime](https://australiancybersecuritymagazine.com.au/tag/cybercrime/) - [money laundering](https://australiancybersecuritymagazine.com.au/tag/money-laundering/) - [AML/CTF](https://australiancybersecuritymagazine.com.au/tag/amlctf/) - [big data](https://australiancybersecuritymagazine.com.au/tag/big-data/) - [David Kemp](https://australiancybersecuritymagazine.com.au/tag/david-kemp/) - [Specialist Business Consultant](https://australiancybersecuritymagazine.com.au/tag/specialist-business-consultant/) - [Matthew Hanmer](https://australiancybersecuritymagazine.com.au/tag/matthew-hanmer/) - [Regional Director Security Software](https://australiancybersecuritymagazine.com.au/tag/regional-director-security-software/) - [European Union](https://australiancybersecuritymagazine.com.au/tag/european-union/) - [Australia’s Mandatory Data Breach Notification scheme](https://australiancybersecuritymagazine.com.au/tag/australias-mandatory-data-breach-notification-scheme/) - [General Data Protection Regulations](https://australiancybersecuritymagazine.com.au/tag/general-data-protection-regulations/) - [fundamentals](https://australiancybersecuritymagazine.com.au/tag/fundamentals/) - [ramifications](https://australiancybersecuritymagazine.com.au/tag/ramifications/) - [opportunities](https://australiancybersecuritymagazine.com.au/tag/opportunities/) - [ASEAN-Australia AUSTRAC Codeathon](https://australiancybersecuritymagazine.com.au/tag/asean-australia-austrac-codeathon/) - [Leanne Fry](https://australiancybersecuritymagazine.com.au/tag/leanne-fry/) - [Chief Innovation Officer](https://australiancybersecuritymagazine.com.au/tag/chief-innovation-officer/) - [Rajesh Walton](https://australiancybersecuritymagazine.com.au/tag/rajesh-walton/) - [Director for Innovation](https://australiancybersecuritymagazine.com.au/tag/director-for-innovation/) - [Information & Transformation](https://australiancybersecuritymagazine.com.au/tag/information-transformation/) - [Åsa Kyrk Gere](https://australiancybersecuritymagazine.com.au/tag/asa-kyrk-gere/) - [ISO/TC 292](https://australiancybersecuritymagazine.com.au/tag/isotc-292/) - [ISO31000](https://australiancybersecuritymagazine.com.au/tag/iso31000/) - [ISO](https://australiancybersecuritymagazine.com.au/tag/iso/) - [International Organization for Standardization](https://australiancybersecuritymagazine.com.au/tag/international-organization-for-standardization/) - [Patrick Butor](https://australiancybersecuritymagazine.com.au/tag/patrick-butor/) - [Protective Security](https://australiancybersecuritymagazine.com.au/tag/protective-security/) - [ISO 22340 Security and Resilience](https://australiancybersecuritymagazine.com.au/tag/iso-22340-security-and-resilience/) - [22340](https://australiancybersecuritymagazine.com.au/tag/22340/) - [Architecture](https://australiancybersecuritymagazine.com.au/tag/architecture/) - [Framework](https://australiancybersecuritymagazine.com.au/tag/framework/) - [Standards Australia](https://australiancybersecuritymagazine.com.au/tag/standards-australia/) - [#CLMel](https://australiancybersecuritymagazine.com.au/tag/clmel/) - [Vice President](https://australiancybersecuritymagazine.com.au/tag/vice-president/) - [Bret Hartman](https://australiancybersecuritymagazine.com.au/tag/bret-hartman/) - [Security Business Group](https://australiancybersecuritymagazine.com.au/tag/security-business-group/) - [CiscoLive](https://australiancybersecuritymagazine.com.au/tag/ciscolive/) - [networking'](https://australiancybersecuritymagazine.com.au/tag/networking/) - [ETA](https://australiancybersecuritymagazine.com.au/tag/eta/) - [encryption](https://australiancybersecuritymagazine.com.au/tag/encryption/) - [encryption threat analysis](https://australiancybersecuritymagazine.com.au/tag/encryption-threat-analysis/) - [future scenarios](https://australiancybersecuritymagazine.com.au/tag/future-scenarios/) - [nation state actors](https://australiancybersecuritymagazine.com.au/tag/nation-state-actors/) - [Emag - Issue 4](https://australiancybersecuritymagazine.com.au/tag/emag-issue-4/) - [Editor's Desk](https://australiancybersecuritymagazine.com.au/tag/editors-desk/) - [cryptomining](https://australiancybersecuritymagazine.com.au/tag/cryptomining/) - [cryptocurrency gold rush](https://australiancybersecuritymagazine.com.au/tag/cryptocurrency-gold-rush/) - [IoT security](https://australiancybersecuritymagazine.com.au/tag/iot-security/) - [cyberattacks against Internet of Things](https://australiancybersecuritymagazine.com.au/tag/cyberattacks-against-internet-of-things/) - [ASX](https://australiancybersecuritymagazine.com.au/tag/asx/) - [Cyber Health Check](https://australiancybersecuritymagazine.com.au/tag/cyber-health-check/) - [Stephen Dane](https://australiancybersecuritymagazine.com.au/tag/stephen-dane/) - [Managing Director](https://australiancybersecuritymagazine.com.au/tag/managing-director/) - [ASEAN](https://australiancybersecuritymagazine.com.au/tag/asean/) - [Japan](https://australiancybersecuritymagazine.com.au/tag/japan/) - [Vietnam](https://australiancybersecuritymagazine.com.au/tag/vietnam/) - [Alastair MacGibbon](https://australiancybersecuritymagazine.com.au/tag/alastair-macgibbon/) - [Australian National Cyber Security Adviser](https://australiancybersecuritymagazine.com.au/tag/australian-national-cyber-security-adviser/) - [Department of Home Affairs](https://australiancybersecuritymagazine.com.au/tag/department-of-home-affairs/) - [Australian Signals Directorate](https://australiancybersecuritymagazine.com.au/tag/australian-signals-directorate/) - [#2018ACSC](https://australiancybersecuritymagazine.com.au/tag/2018acsc/) - [Mirai DDoS Botnet attack](https://australiancybersecuritymagazine.com.au/tag/mirai-ddos-botnet-attack/) - [David Holmes](https://australiancybersecuritymagazine.com.au/tag/david-holmes/) - [Principal Threat Research Evangelist](https://australiancybersecuritymagazine.com.au/tag/principal-threat-research-evangelist/) - [F5 Labs](https://australiancybersecuritymagazine.com.au/tag/f5-labs/) - [threat modelling](https://australiancybersecuritymagazine.com.au/tag/threat-modelling/) - [IoT](https://australiancybersecuritymagazine.com.au/tag/iot/) - [Internet of Things](https://australiancybersecuritymagazine.com.au/tag/internet-of-things/) - [botnets](https://australiancybersecuritymagazine.com.au/tag/botnets/) - [Thing Bots](https://australiancybersecuritymagazine.com.au/tag/thing-bots/) - [Australian Cyber Security Research Centre](https://australiancybersecuritymagazine.com.au/tag/australian-cyber-security-research-centre/) - [ACSCConference](https://australiancybersecuritymagazine.com.au/tag/acscconference/) - [ribit.net](https://australiancybersecuritymagazine.com.au/tag/ribit-net/) - [austcyber](https://australiancybersecuritymagazine.com.au/tag/austcyber/) - [data61](https://australiancybersecuritymagazine.com.au/tag/data61/) - [jobs](https://australiancybersecuritymagazine.com.au/tag/jobs/) - [Data breach](https://australiancybersecuritymagazine.com.au/tag/data-breach/) - [stolen information](https://australiancybersecuritymagazine.com.au/tag/stolen-information/) - [information security](https://australiancybersecuritymagazine.com.au/tag/information-security/) - [vulnerabilities](https://australiancybersecuritymagazine.com.au/tag/vulnerabilities/) - [high-level technical breakdown](https://australiancybersecuritymagazine.com.au/tag/high-level-technical-breakdown/) - [cyber risk](https://australiancybersecuritymagazine.com.au/tag/cyber-risk/) - [Meltdown attack](https://australiancybersecuritymagazine.com.au/tag/meltdown-attack/) - [meetup](https://australiancybersecuritymagazine.com.au/tag/meetup/) - [sydney](https://australiancybersecuritymagazine.com.au/tag/sydney/) - [singapore](https://australiancybersecuritymagazine.com.au/tag/singapore/) - [shamane tan](https://australiancybersecuritymagazine.com.au/tag/shamane-tan/) - [Donald Maxim](https://australiancybersecuritymagazine.com.au/tag/donald-maxim/) - [David Lord](https://australiancybersecuritymagazine.com.au/tag/david-lord/) - [students](https://australiancybersecuritymagazine.com.au/tag/students/) - [ANU](https://australiancybersecuritymagazine.com.au/tag/anu/) - [Asterisk Information Security](https://australiancybersecuritymagazine.com.au/tag/asterisk-information-security/) - [Security Consultant](https://australiancybersecuritymagazine.com.au/tag/security-consultant/) - [security testing](https://australiancybersecuritymagazine.com.au/tag/security-testing/) - [penetration testing](https://australiancybersecuritymagazine.com.au/tag/penetration-testing/) - [vulnerability assessment services](https://australiancybersecuritymagazine.com.au/tag/vulnerability-assessment-services/) - [Digital Transformation](https://australiancybersecuritymagazine.com.au/tag/digital-transformation/) - [Government technology circles](https://australiancybersecuritymagazine.com.au/tag/government-technology-circles/) - [cloud computing](https://australiancybersecuritymagazine.com.au/tag/cloud-computing/) - [Vault Academy](https://australiancybersecuritymagazine.com.au/tag/vault-academy/) - [data security](https://australiancybersecuritymagazine.com.au/tag/data-security/) - [vault systems](https://australiancybersecuritymagazine.com.au/tag/vault-systems/) - [rupert taylor-price](https://australiancybersecuritymagazine.com.au/tag/rupert-taylor-price/) - [government](https://australiancybersecuritymagazine.com.au/tag/government/) - [accreditation](https://australiancybersecuritymagazine.com.au/tag/accreditation/) - [certification](https://australiancybersecuritymagazine.com.au/tag/certification/) - [the Information Security Registered Assessors Program](https://australiancybersecuritymagazine.com.au/tag/the-information-security-registered-assessors-program/) - [IRAP](https://australiancybersecuritymagazine.com.au/tag/irap/) - [SCEC](https://australiancybersecuritymagazine.com.au/tag/scec/) - [National Cybersecurity Center of Excellence](https://australiancybersecuritymagazine.com.au/tag/national-cybersecurity-center-of-excellence/) - [NCCoE](https://australiancybersecuritymagazine.com.au/tag/nccoe/) - [National Institute of Standards and Technology](https://australiancybersecuritymagazine.com.au/tag/national-institute-of-standards-and-technology/) - [NIST](https://australiancybersecuritymagazine.com.au/tag/nist/) - [Mobile Application](https://australiancybersecuritymagazine.com.au/tag/mobile-application/) - [multifactor authentication](https://australiancybersecuritymagazine.com.au/tag/multifactor-authentication/) - [Check Point](https://australiancybersecuritymagazine.com.au/tag/check-point/) - [North Korea](https://australiancybersecuritymagazine.com.au/tag/north-korea/) - [home-grown anti-virus software](https://australiancybersecuritymagazine.com.au/tag/home-grown-anti-virus-software/) - [SiliVaccine](https://australiancybersecuritymagazine.com.au/tag/silivaccine/) - [Chris Gatford](https://australiancybersecuritymagazine.com.au/tag/chris-gatford/) - [Hacklabs](https://australiancybersecuritymagazine.com.au/tag/hacklabs/) - [pentesting](https://australiancybersecuritymagazine.com.au/tag/pentesting/) - [Mossack Fonseca](https://australiancybersecuritymagazine.com.au/tag/mossack-fonseca/) - [Panama Papers](https://australiancybersecuritymagazine.com.au/tag/panama-papers/) - [Cylance](https://australiancybersecuritymagazine.com.au/tag/cylance/) - [2017 Cylance Threat Report](https://australiancybersecuritymagazine.com.au/tag/2017-cylance-threat-report/) - [major cyberthreats](https://australiancybersecuritymagazine.com.au/tag/major-cyberthreats/) - [ransomware grew three-fold in 2017](https://australiancybersecuritymagazine.com.au/tag/ransomware-grew-three-fold-in-2017/) - [cyberattacks](https://australiancybersecuritymagazine.com.au/tag/cyberattacks/) - [Flash player](https://australiancybersecuritymagazine.com.au/tag/flash-player/) - [XSSposing bugs](https://australiancybersecuritymagazine.com.au/tag/xssposing-bugs/) - [Shockwave Flash](https://australiancybersecuritymagazine.com.au/tag/shockwave-flash/) - [SWF analysis](https://australiancybersecuritymagazine.com.au/tag/swf-analysis/) - [Australia’s tech businesses](https://australiancybersecuritymagazine.com.au/tag/australias-tech-businesses/) - [BankVault](https://australiancybersecuritymagazine.com.au/tag/bankvault/) - [digital business](https://australiancybersecuritymagazine.com.au/tag/digital-business/) - [Automate](https://australiancybersecuritymagazine.com.au/tag/automate/) - [Mike Bareja](https://australiancybersecuritymagazine.com.au/tag/mike-bareja/) - [Program Manager](https://australiancybersecuritymagazine.com.au/tag/program-manager/) - [National Network](https://australiancybersecuritymagazine.com.au/tag/national-network/) - [DARPA](https://australiancybersecuritymagazine.com.au/tag/darpa/) - [Knowledge Priorities](https://australiancybersecuritymagazine.com.au/tag/knowledge-priorities/) - [funding](https://australiancybersecuritymagazine.com.au/tag/funding/) - [#CIVSEC @CIVSEC2018](https://australiancybersecuritymagazine.com.au/tag/civsec-civsec2018/) - [Cyber Security Sector Competitiveness Plan](https://australiancybersecuritymagazine.com.au/tag/cyber-security-sector-competitiveness-plan/) - [SCP](https://australiancybersecuritymagazine.com.au/tag/scp/) - [WhiteHawk](https://australiancybersecuritymagazine.com.au/tag/whitehawk/) - [360 Cyber Risk Framework](https://australiancybersecuritymagazine.com.au/tag/360-cyber-risk-framework/) - [comprehensive analysis of the business](https://australiancybersecuritymagazine.com.au/tag/comprehensive-analysis-of-the-business/) - [cyber risks](https://australiancybersecuritymagazine.com.au/tag/cyber-risks/) - [Amy Roberts](https://australiancybersecuritymagazine.com.au/tag/amy-roberts/) - [Professor Elanor Huntington](https://australiancybersecuritymagazine.com.au/tag/professor-elanor-huntington/) - [Dr Maria Milosavljevic](https://australiancybersecuritymagazine.com.au/tag/dr-maria-milosavljevic/) - [NSW CISO](https://australiancybersecuritymagazine.com.au/tag/nsw-ciso/) - [Debbie Platz AC](https://australiancybersecuritymagazine.com.au/tag/debbie-platz-ac/) - [Stephanie Robertson](https://australiancybersecuritymagazine.com.au/tag/stephanie-robertson/) - [US National Security Agency](https://australiancybersecuritymagazine.com.au/tag/us-national-security-agency/) - [Mike Burgess](https://australiancybersecuritymagazine.com.au/tag/mike-burgess/) - [WiS](https://australiancybersecuritymagazine.com.au/tag/wis/) - [Australian Cyber Security Centre Conference](https://australiancybersecuritymagazine.com.au/tag/australian-cyber-security-centre-conference/) - [AFP International Deployment Group Gender Strategy](https://australiancybersecuritymagazine.com.au/tag/afp-international-deployment-group-gender-strategy/) - [Federal Register Notice](https://australiancybersecuritymagazine.com.au/tag/federal-register-notice/) - [Risk Management Framework](https://australiancybersecuritymagazine.com.au/tag/risk-management-framework/) - [Information Systems and Organizations](https://australiancybersecuritymagazine.com.au/tag/information-systems-and-organizations/) - [Security and Privacy](https://australiancybersecuritymagazine.com.au/tag/security-and-privacy/) - [Defense Science Board](https://australiancybersecuritymagazine.com.au/tag/defense-science-board/) - [Populating Mobile Test Devices](https://australiancybersecuritymagazine.com.au/tag/populating-mobile-test-devices/) - [Computer Forensics Tool Testing](https://australiancybersecuritymagazine.com.au/tag/computer-forensics-tool-testing/) - [digital forensics investigators](https://australiancybersecuritymagazine.com.au/tag/digital-forensics-investigators/) - [Hybrid Forensics](https://australiancybersecuritymagazine.com.au/tag/hybrid-forensics/) - [massive data volumes](https://australiancybersecuritymagazine.com.au/tag/massive-data-volumes/) - [large networks](https://australiancybersecuritymagazine.com.au/tag/large-networks/) - [Richards Adams](https://australiancybersecuritymagazine.com.au/tag/richards-adams/) - [Logical and analytical thought patterns](https://australiancybersecuritymagazine.com.au/tag/logical-and-analytical-thought-patterns/) - [OAIC](https://australiancybersecuritymagazine.com.au/tag/oaic/) - [eligible data breach](https://australiancybersecuritymagazine.com.au/tag/eligible-data-breach/) - [Privacy Policy](https://australiancybersecuritymagazine.com.au/tag/privacy-policy/) - [secure organisation](https://australiancybersecuritymagazine.com.au/tag/secure-organisation/) - [David Stafford-Gaffney](https://australiancybersecuritymagazine.com.au/tag/david-stafford-gaffney/) - [RDOT](https://australiancybersecuritymagazine.com.au/tag/rdot/) - [Privacy By Design](https://australiancybersecuritymagazine.com.au/tag/privacy-by-design/) - [Web Proxy Auto-Discovery](https://australiancybersecuritymagazine.com.au/tag/web-proxy-auto-discovery/) - [WPAD](https://australiancybersecuritymagazine.com.au/tag/wpad/) - [enterprise](https://australiancybersecuritymagazine.com.au/tag/enterprise/) - [Fernando Serto](https://australiancybersecuritymagazine.com.au/tag/fernando-serto/) - [Head](https://australiancybersecuritymagazine.com.au/tag/head/) - [Security Technology & Strategy](https://australiancybersecuritymagazine.com.au/tag/security-technology-strategy/) - [James Tin](https://australiancybersecuritymagazine.com.au/tag/james-tin/) - [Principal](https://australiancybersecuritymagazine.com.au/tag/principal/) - [Enterprise Security Architect](https://australiancybersecuritymagazine.com.au/tag/enterprise-security-architect/) - [Man-in-the-Middle attack](https://australiancybersecuritymagazine.com.au/tag/man-in-the-middle-attack/) - [2018 State of the Internet-Security Report](https://australiancybersecuritymagazine.com.au/tag/2018-state-of-the-internet-security-report/) - [Cyber Threat Intelligence Summit 2018](https://australiancybersecuritymagazine.com.au/tag/cyber-threat-intelligence-summit-2018/) - [#CTI18](https://australiancybersecuritymagazine.com.au/tag/cti18/) - [NSW Police](https://australiancybersecuritymagazine.com.au/tag/nsw-police/) - [Deputy Commissioner](https://australiancybersecuritymagazine.com.au/tag/deputy-commissioner/) - [Nick Kaldas](https://australiancybersecuritymagazine.com.au/tag/nick-kaldas/) - [Safety](https://australiancybersecuritymagazine.com.au/tag/safety/) - [Lone Wolf](https://australiancybersecuritymagazine.com.au/tag/lone-wolf/) - [Lone wolves](https://australiancybersecuritymagazine.com.au/tag/lone-wolves/) - [technology](https://australiancybersecuritymagazine.com.au/tag/technology/) - [Director of Internal Oversight](https://australiancybersecuritymagazine.com.au/tag/director-of-internal-oversight/) - [United Nations](https://australiancybersecuritymagazine.com.au/tag/united-nations/) - [UNRWA](https://australiancybersecuritymagazine.com.au/tag/unrwa/) - [Relief and Works Agency](https://australiancybersecuritymagazine.com.au/tag/relief-and-works-agency/) - [Lebanon](https://australiancybersecuritymagazine.com.au/tag/lebanon/) - [Syria](https://australiancybersecuritymagazine.com.au/tag/syria/) - [Jordan](https://australiancybersecuritymagazine.com.au/tag/jordan/) - [Gaza](https://australiancybersecuritymagazine.com.au/tag/gaza/) - [West Bank](https://australiancybersecuritymagazine.com.au/tag/west-bank/) - [ResponSight](https://australiancybersecuritymagazine.com.au/tag/responsight/) - [data science](https://australiancybersecuritymagazine.com.au/tag/data-science/) - [risk insights and intelligence](https://australiancybersecuritymagazine.com.au/tag/risk-insights-and-intelligence/) - [Webroot](https://australiancybersecuritymagazine.com.au/tag/webroot/) - [European GDPR](https://australiancybersecuritymagazine.com.au/tag/european-gdpr/) - [Australian organisations](https://australiancybersecuritymagazine.com.au/tag/australian-organisations/) - [Citizens’ Data](https://australiancybersecuritymagazine.com.au/tag/citizens-data/) - [Data Protection Policies](https://australiancybersecuritymagazine.com.au/tag/data-protection-policies/) - [cyber security research](https://australiancybersecuritymagazine.com.au/tag/cyber-security-research/) - [CSRC](https://australiancybersecuritymagazine.com.au/tag/csrc/) - [respond to cyber threats and cybercrime](https://australiancybersecuritymagazine.com.au/tag/respond-to-cyber-threats-and-cybercrime/) - [GDPR compliance deadline](https://australiancybersecuritymagazine.com.au/tag/gdpr-compliance-deadline/) - [ISACA](https://australiancybersecuritymagazine.com.au/tag/isaca/) - [GDPR Readiness Survey](https://australiancybersecuritymagazine.com.au/tag/gdpr-readiness-survey/) - [employee education](https://australiancybersecuritymagazine.com.au/tag/employee-education/) - [Clive Williams](https://australiancybersecuritymagazine.com.au/tag/clive-williams/) - [Skeeve Stevens](https://australiancybersecuritymagazine.com.au/tag/skeeve-stevens/) - [Futurist](https://australiancybersecuritymagazine.com.au/tag/futurist/) - [2nd Annual Security](https://australiancybersecuritymagazine.com.au/tag/2nd-annual-security/) - [Safety & Counter Terrorism Forum](https://australiancybersecuritymagazine.com.au/tag/safety-counter-terrorism-forum/) - [Clariden Group](https://australiancybersecuritymagazine.com.au/tag/clariden-group/) - [Breach notification](https://australiancybersecuritymagazine.com.au/tag/breach-notification/) - [identity theft](https://australiancybersecuritymagazine.com.au/tag/identity-theft/) - [user credentials](https://australiancybersecuritymagazine.com.au/tag/user-credentials/) - [deception technologies](https://australiancybersecuritymagazine.com.au/tag/deception-technologies/) - [end-to-end smart interconnect solutions](https://australiancybersecuritymagazine.com.au/tag/end-to-end-smart-interconnect-solutions/) - [web-scale networks](https://australiancybersecuritymagazine.com.au/tag/web-scale-networks/) - [cloud service provider](https://australiancybersecuritymagazine.com.au/tag/cloud-service-provider/) - [Mellanox Technologies](https://australiancybersecuritymagazine.com.au/tag/mellanox-technologies/) - [Cumulus Networks](https://australiancybersecuritymagazine.com.au/tag/cumulus-networks/) - [network resilience](https://australiancybersecuritymagazine.com.au/tag/network-resilience/) - [stability and scalability](https://australiancybersecuritymagazine.com.au/tag/stability-and-scalability/) - [Jeff Paine](https://australiancybersecuritymagazine.com.au/tag/jeff-paine/) - [ResponSight Collector](https://australiancybersecuritymagazine.com.au/tag/responsight-collector/) - [ResponSight Aggregator](https://australiancybersecuritymagazine.com.au/tag/responsight-aggregator/) - [ResponSight Cloud Service](https://australiancybersecuritymagazine.com.au/tag/responsight-cloud-service/) - [telemetry](https://australiancybersecuritymagazine.com.au/tag/telemetry/) - [end point device](https://australiancybersecuritymagazine.com.au/tag/end-point-device/) - [startup](https://australiancybersecuritymagazine.com.au/tag/startup/) - [Proofpoint](https://australiancybersecuritymagazine.com.au/tag/proofpoint/) - [Cryptocurrency](https://australiancybersecuritymagazine.com.au/tag/cryptocurrency/) - [cryptocurrency giveaway scams](https://australiancybersecuritymagazine.com.au/tag/cryptocurrency-giveaway-scams/) - [breach notifications](https://australiancybersecuritymagazine.com.au/tag/breach-notifications/) - [Guillaume Noe](https://australiancybersecuritymagazine.com.au/tag/guillaume-noe/) - [Mt. Gox](https://australiancybersecuritymagazine.com.au/tag/mt-gox/) - [bitcoin](https://australiancybersecuritymagazine.com.au/tag/bitcoin/) - [Cryptocurrency security risks](https://australiancybersecuritymagazine.com.au/tag/cryptocurrency-security-risks/) - [virtual assets](https://australiancybersecuritymagazine.com.au/tag/virtual-assets/) - [Cryptocurrencies security thoughts](https://australiancybersecuritymagazine.com.au/tag/cryptocurrencies-security-thoughts/) - [protecting access to the network](https://australiancybersecuritymagazine.com.au/tag/protecting-access-to-the-network/) - [How India is coping with cyberthreats?](https://australiancybersecuritymagazine.com.au/tag/how-india-is-coping-with-cyberthreats/) - [Sarosh Bana](https://australiancybersecuritymagazine.com.au/tag/sarosh-bana/) - [VPNFilter](https://australiancybersecuritymagazine.com.au/tag/vpnfilter/) - [Cisco Talos](https://australiancybersecuritymagazine.com.au/tag/cisco-talos/) - [VPNFilter malware](https://australiancybersecuritymagazine.com.au/tag/vpnfilter-malware/) - [networking devices](https://australiancybersecuritymagazine.com.au/tag/networking-devices/) - [Liesl Yearsley](https://australiancybersecuritymagazine.com.au/tag/liesl-yearsley/) - [Akin.com](https://australiancybersecuritymagazine.com.au/tag/akin-com/) - [Singularity](https://australiancybersecuritymagazine.com.au/tag/singularity/) - [Eurpol](https://australiancybersecuritymagazine.com.au/tag/eurpol/) - [Europol](https://australiancybersecuritymagazine.com.au/tag/europol/) - [Ron Wainwright](https://australiancybersecuritymagazine.com.au/tag/ron-wainwright/) - [Executive Director](https://australiancybersecuritymagazine.com.au/tag/executive-director/) - [society](https://australiancybersecuritymagazine.com.au/tag/society/) - [SMART ID](https://australiancybersecuritymagazine.com.au/tag/smart-id/) - [Financial Technology](https://australiancybersecuritymagazine.com.au/tag/financial-technology/) - [FINTECH](https://australiancybersecuritymagazine.com.au/tag/fintech/) - [Regulatory Technology](https://australiancybersecuritymagazine.com.au/tag/regulatory-technology/) - [Smart Identity](https://australiancybersecuritymagazine.com.au/tag/smart-identity/) - [Digital identity](https://australiancybersecuritymagazine.com.au/tag/digital-identity/) - [unauthorised access](https://australiancybersecuritymagazine.com.au/tag/unauthorised-access/) - [human error](https://australiancybersecuritymagazine.com.au/tag/human-error/) - [intentional malicious third-party](https://australiancybersecuritymagazine.com.au/tag/intentional-malicious-third-party/) - [Business Interruption](https://australiancybersecuritymagazine.com.au/tag/business-interruption/) - [Block Matrix Data Structure](https://australiancybersecuritymagazine.com.au/tag/block-matrix-data-structure/) - [Integrity Protection](https://australiancybersecuritymagazine.com.au/tag/integrity-protection/) - [Erasure Capability](https://australiancybersecuritymagazine.com.au/tag/erasure-capability/) - [public comment](https://australiancybersecuritymagazine.com.au/tag/public-comment/) - [Ionize](https://australiancybersecuritymagazine.com.au/tag/ionize/) - [Cynterra](https://australiancybersecuritymagazine.com.au/tag/cynterra/) - [• Fujitsu Protected Cloud SaaS solution](https://australiancybersecuritymagazine.com.au/tag/•-fujitsu-protected-cloud-saas-solution/) - [aimed at government agencies to enable digital transformation](https://australiancybersecuritymagazine.com.au/tag/aimed-at-government-agencies-to-enable-digital-transformation/) - [cloud technology environment](https://australiancybersecuritymagazine.com.au/tag/cloud-technology-environment/) - [Software-as-a-Service](https://australiancybersecuritymagazine.com.au/tag/software-as-a-service/) - [Infrastructure-as-a-service](https://australiancybersecuritymagazine.com.au/tag/infrastructure-as-a-service/) - [Backup-as-a-Service](https://australiancybersecuritymagazine.com.au/tag/backup-as-a-service/) - [Government Desktop-as-a-Service](https://australiancybersecuritymagazine.com.au/tag/government-desktop-as-a-service/) - [Department of Commerce](https://australiancybersecuritymagazine.com.au/tag/department-of-commerce/) - [Department of Homeland Security Secretaries](https://australiancybersecuritymagazine.com.au/tag/department-of-homeland-security-secretaries/) - [Cybersecurity Workforce](https://australiancybersecuritymagazine.com.au/tag/cybersecurity-workforce/) - [NICE](https://australiancybersecuritymagazine.com.au/tag/nice/) - [Pageup](https://australiancybersecuritymagazine.com.au/tag/pageup/) - [Karen Cariss](https://australiancybersecuritymagazine.com.au/tag/karen-cariss/) - [CEO and Co-Founder](https://australiancybersecuritymagazine.com.au/tag/ceo-and-co-founder/) - [PageUp People Limited](https://australiancybersecuritymagazine.com.au/tag/pageup-people-limited/) - [Security Recommendations for Server-based Hypervisor Platforms](https://australiancybersecuritymagazine.com.au/tag/security-recommendations-for-server-based-hypervisor-platforms/) - [security recommendations](https://australiancybersecuritymagazine.com.au/tag/security-recommendations/) - [device passthrough](https://australiancybersecuritymagazine.com.au/tag/device-passthrough/) - [self-virtualizing devices](https://australiancybersecuritymagazine.com.au/tag/self-virtualizing-devices/) - [Reinventing and Scaling the SOC with AI](https://australiancybersecuritymagazine.com.au/tag/reinventing-and-scaling-the-soc-with-ai/) - [Alan Zeichick](https://australiancybersecuritymagazine.com.au/tag/alan-zeichick/) - [artificial intelligence techniques](https://australiancybersecuritymagazine.com.au/tag/artificial-intelligence-techniques/) - [Applied AI can work better than any rule-based system in the SOC](https://australiancybersecuritymagazine.com.au/tag/applied-ai-can-work-better-than-any-rule-based-system-in-the-soc/) - [The SOC Problem is a People Problem](https://australiancybersecuritymagazine.com.au/tag/the-soc-problem-is-a-people-problem/) - [malware TRITON](https://australiancybersecuritymagazine.com.au/tag/malware-triton/) - [manipulate industrial safety systems](https://australiancybersecuritymagazine.com.au/tag/manipulate-industrial-safety-systems/) - [targets Industrial Control Systems (ICS)](https://australiancybersecuritymagazine.com.au/tag/targets-industrial-control-systems-ics/) - [EU budget](https://australiancybersecuritymagazine.com.au/tag/eu-budget/) - [Digital Europe programme](https://australiancybersecuritymagazine.com.au/tag/digital-europe-programme/) - [The European Commission](https://australiancybersecuritymagazine.com.au/tag/the-european-commission/) - [increasing digital challenges](https://australiancybersecuritymagazine.com.au/tag/increasing-digital-challenges/) - [Digital Single Market strategy](https://australiancybersecuritymagazine.com.au/tag/digital-single-market-strategy/) - [Cyber Europe 2018](https://australiancybersecuritymagazine.com.au/tag/cyber-europe-2018/) - [next cyber crisis](https://australiancybersecuritymagazine.com.au/tag/next-cyber-crisis/) - [ENISA](https://australiancybersecuritymagazine.com.au/tag/enisa/) - [international cybersecurity exercise](https://australiancybersecuritymagazine.com.au/tag/international-cybersecurity-exercise/) - [helping organisations to test their internal business continuity and crisis management plans](https://australiancybersecuritymagazine.com.au/tag/helping-organisations-to-test-their-internal-business-continuity-and-crisis-management-plans/) - [media crisis communication](https://australiancybersecuritymagazine.com.au/tag/media-crisis-communication/) - [cryptocurrencies](https://australiancybersecuritymagazine.com.au/tag/cryptocurrencies/) - [Centre for Quantum Technologies](https://australiancybersecuritymagazine.com.au/tag/centre-for-quantum-technologies/) - [elliptic curve](https://australiancybersecuritymagazine.com.au/tag/elliptic-curve/) - [Shor's algorithm](https://australiancybersecuritymagazine.com.au/tag/shors-algorithm/) - [qubits](https://australiancybersecuritymagazine.com.au/tag/qubits/) - [quantum security](https://australiancybersecuritymagazine.com.au/tag/quantum-security/) - [quantum satellites](https://australiancybersecuritymagazine.com.au/tag/quantum-satellites/) - [CQT](https://australiancybersecuritymagazine.com.au/tag/cqt/) - [Artur Ekert](https://australiancybersecuritymagazine.com.au/tag/artur-ekert/) - [SpooQy Sat](https://australiancybersecuritymagazine.com.au/tag/spooqy-sat/) - [Cubesats](https://australiancybersecuritymagazine.com.au/tag/cubesats/) - [cryptography](https://australiancybersecuritymagazine.com.au/tag/cryptography/) - [QKD](https://australiancybersecuritymagazine.com.au/tag/qkd/) - [Public Key Infrastructure](https://australiancybersecuritymagazine.com.au/tag/public-key-infrastructure/) - [quantum-safe cryptographic systems](https://australiancybersecuritymagazine.com.au/tag/quantum-safe-cryptographic-systems/) - [US National Institute of Standards and Technology](https://australiancybersecuritymagazine.com.au/tag/us-national-institute-of-standards-and-technology/) - [UPMC University of Paris](https://australiancybersecuritymagazine.com.au/tag/upmc-university-of-paris/) - [Networked Quantum Information Technologies](https://australiancybersecuritymagazine.com.au/tag/networked-quantum-information-technologies/) - [NQIT](https://australiancybersecuritymagazine.com.au/tag/nqit/) - [Single-photon technology BB84](https://australiancybersecuritymagazine.com.au/tag/single-photon-technology-bb84/) - [Micius](https://australiancybersecuritymagazine.com.au/tag/micius/) - [NUS-Singtel Cyber Security R&D Lab](https://australiancybersecuritymagazine.com.au/tag/nus-singtel-cyber-security-rd-lab/) - [SPEQS](https://australiancybersecuritymagazine.com.au/tag/speqs/) - [Small Photon-Entangling Quantum System](https://australiancybersecuritymagazine.com.au/tag/small-photon-entangling-quantum-system/) - [2U CubeSat Galassia](https://australiancybersecuritymagazine.com.au/tag/2u-cubesat-galassia/) - [Stuart Coggins](https://australiancybersecuritymagazine.com.au/tag/stuart-coggins/) - [Sales Consulting Director](https://australiancybersecuritymagazine.com.au/tag/sales-consulting-director/) - [IoT Festival](https://australiancybersecuritymagazine.com.au/tag/iot-festival/) - [data collection](https://australiancybersecuritymagazine.com.au/tag/data-collection/) - [Rasberry Pi](https://australiancybersecuritymagazine.com.au/tag/rasberry-pi/) - [Privasec](https://australiancybersecuritymagazine.com.au/tag/privasec/) - [red team](https://australiancybersecuritymagazine.com.au/tag/red-team/) - [physical security](https://australiancybersecuritymagazine.com.au/tag/physical-security/) - [Cyber Risk Meetup](https://australiancybersecuritymagazine.com.au/tag/cyber-risk-meetup/) - [round-table](https://australiancybersecuritymagazine.com.au/tag/round-table/) - [Karan Khosla](https://australiancybersecuritymagazine.com.au/tag/karan-khosla/) - [code execution vulnerability](https://australiancybersecuritymagazine.com.au/tag/code-execution-vulnerability/) - [Microsoft’s Cortana](https://australiancybersecuritymagazine.com.au/tag/microsofts-cortana/) - [Windows 10 and the “Cortana” voice assistant](https://australiancybersecuritymagazine.com.au/tag/windows-10-and-the-cortana-voice-assistant/) - [three attack vectors](https://australiancybersecuritymagazine.com.au/tag/three-attack-vectors/) - [festival](https://australiancybersecuritymagazine.com.au/tag/festival/) - [Thomas Alomes](https://australiancybersecuritymagazine.com.au/tag/thomas-alomes/) - [Controlled Unclassified Information](https://australiancybersecuritymagazine.com.au/tag/controlled-unclassified-information/) - [CUI](https://australiancybersecuritymagazine.com.au/tag/cui/) - [develop assessment plans](https://australiancybersecuritymagazine.com.au/tag/develop-assessment-plans/) - [conduct efficient](https://australiancybersecuritymagazine.com.au/tag/conduct-efficient/) - [effective](https://australiancybersecuritymagazine.com.au/tag/effective/) - [and cost-effective assessments](https://australiancybersecuritymagazine.com.au/tag/and-cost-effective-assessments/) - [Vault](https://australiancybersecuritymagazine.com.au/tag/vault/) - [Anthony Simkins](https://australiancybersecuritymagazine.com.au/tag/anthony-simkins/) - [ASD certified trusted cloud provider](https://australiancybersecuritymagazine.com.au/tag/asd-certified-trusted-cloud-provider/) - [expand Vault’s portfolio of services in Australia](https://australiancybersecuritymagazine.com.au/tag/expand-vaults-portfolio-of-services-in-australia/) - [Protected Cloud software-as-a-service (SaaS) solution](https://australiancybersecuritymagazine.com.au/tag/protected-cloud-software-as-a-service-saas-solution/) - [Zacinlo](https://australiancybersecuritymagazine.com.au/tag/zacinlo/) - [ad fraud](https://australiancybersecuritymagazine.com.au/tag/ad-fraud/) - [Patersons Securities](https://australiancybersecuritymagazine.com.au/tag/patersons-securities/) - [Dynamics](https://australiancybersecuritymagazine.com.au/tag/dynamics/) - [Nigel Thompson](https://australiancybersecuritymagazine.com.au/tag/nigel-thompson/) - [Darren Michael](https://australiancybersecuritymagazine.com.au/tag/darren-michael/) - [CIO](https://australiancybersecuritymagazine.com.au/tag/cio/) - [paperless](https://australiancybersecuritymagazine.com.au/tag/paperless/) - [digital workplace](https://australiancybersecuritymagazine.com.au/tag/digital-workplace/) - [Blackberry Secure World Tour](https://australiancybersecuritymagazine.com.au/tag/blackberry-secure-world-tour/) - [Barracuda Networks](https://australiancybersecuritymagazine.com.au/tag/barracuda-networks/) - [Andrew Huntley](https://australiancybersecuritymagazine.com.au/tag/andrew-huntley/) - [Cloud Security](https://australiancybersecuritymagazine.com.au/tag/cloud-security/) - [cloud computing is becoming the clear way forward](https://australiancybersecuritymagazine.com.au/tag/cloud-computing-is-becoming-the-clear-way-forward/) - [the best possible way to empower them to have advanced protection without impacting their day-to-day operations](https://australiancybersecuritymagazine.com.au/tag/the-best-possible-way-to-empower-them-to-have-advanced-protection-without-impacting-their-day-to-day-operations/) - [Evolution of Malware to Exploit Cryptocurrencies](https://australiancybersecuritymagazine.com.au/tag/evolution-of-malware-to-exploit-cryptocurrencies/) - [Prevalence of Cryptomining Malware Jumped to 28%](https://australiancybersecuritymagazine.com.au/tag/prevalence-of-cryptomining-malware-jumped-to-28/) - [cybercriminals are evolving their attack methods to increase their success rates and to accelerate infections](https://australiancybersecuritymagazine.com.au/tag/cybercriminals-are-evolving-their-attack-methods-to-increase-their-success-rates-and-to-accelerate-infections/) - [Cyber Hygiene - More Than Just Patching](https://australiancybersecuritymagazine.com.au/tag/cyber-hygiene-more-than-just-patching/) - [JASK](https://australiancybersecuritymagazine.com.au/tag/jask/) - [ASOC](https://australiancybersecuritymagazine.com.au/tag/asoc/) - [Demisto](https://australiancybersecuritymagazine.com.au/tag/demisto/) - [Carbon Black](https://australiancybersecuritymagazine.com.au/tag/carbon-black/) - [Microsoft Active Directory](https://australiancybersecuritymagazine.com.au/tag/microsoft-active-directory/) - [Splunk](https://australiancybersecuritymagazine.com.au/tag/splunk/) - [ArcSight](https://australiancybersecuritymagazine.com.au/tag/arcsight/) - [Autonomous Security Operations Centre](https://australiancybersecuritymagazine.com.au/tag/autonomous-security-operations-centre/) - [analyst](https://australiancybersecuritymagazine.com.au/tag/analyst/) - [workflow](https://australiancybersecuritymagazine.com.au/tag/workflow/) - [navigator](https://australiancybersecuritymagazine.com.au/tag/navigator/) - [insight](https://australiancybersecuritymagazine.com.au/tag/insight/) - [MEF](https://australiancybersecuritymagazine.com.au/tag/mef/) - [First Operator-Grade SDN/NFV Professional Certification](https://australiancybersecuritymagazine.com.au/tag/first-operator-grade-sdn-nfv-professional-certification/) - [software-defined networking](https://australiancybersecuritymagazine.com.au/tag/software-defined-networking/) - [network functions virtualization](https://australiancybersecuritymagazine.com.au/tag/network-functions-virtualization/) - [MEF Accredited Training Provider](https://australiancybersecuritymagazine.com.au/tag/mef-accredited-training-provider/) - [software-centric networking technologies](https://australiancybersecuritymagazine.com.au/tag/software-centric-networking-technologies/) - [Carrier Ethernet Certified Professional (MEF-CECP) credential](https://australiancybersecuritymagazine.com.au/tag/carrier-ethernet-certified-professional-mef-cecp-credential/) - [MEF SDN/NFV](https://australiancybersecuritymagazine.com.au/tag/mef-sdn-nfv/) - [MEF-CECP](https://australiancybersecuritymagazine.com.au/tag/mef-cecp/) - [MEF-NF](https://australiancybersecuritymagazine.com.au/tag/mef-nf/) - [SDN](https://australiancybersecuritymagazine.com.au/tag/sdn/) - [NFV](https://australiancybersecuritymagazine.com.au/tag/nfv/) - [Design](https://australiancybersecuritymagazine.com.au/tag/design/) - [Deploy](https://australiancybersecuritymagazine.com.au/tag/deploy/) - [Manage](https://australiancybersecuritymagazine.com.au/tag/manage/) - [Carrier Ethernet](https://australiancybersecuritymagazine.com.au/tag/carrier-ethernet/) - [MEF 3.0](https://australiancybersecuritymagazine.com.au/tag/mef-3-0/) - [#NetEvents18](https://australiancybersecuritymagazine.com.au/tag/netevents18/) - [Metro Ethernet Forum](https://australiancybersecuritymagazine.com.au/tag/metro-ethernet-forum/) - [Dan Pitt](https://australiancybersecuritymagazine.com.au/tag/dan-pitt/) - [Senior Vice President](https://australiancybersecuritymagazine.com.au/tag/senior-vice-president/) - [Swinburne University](https://australiancybersecuritymagazine.com.au/tag/swinburne-university/) - [bridge Australia’s cybersecurity shortage](https://australiancybersecuritymagazine.com.au/tag/bridge-australias-cybersecurity-shortage/) - [Memorandum of Understanding](https://australiancybersecuritymagazine.com.au/tag/memorandum-of-understanding/) - [MoU](https://australiancybersecuritymagazine.com.au/tag/mou/) - [cybersecurity education](https://australiancybersecuritymagazine.com.au/tag/cybersecurity-education/) - [increase in DDoS](https://australiancybersecuritymagazine.com.au/tag/increase-in-ddos/) - [Internet / Security Web Attack report](https://australiancybersecuritymagazine.com.au/tag/internet-security-web-attack-report/) - [Once attacked - it is extremely likely an organisation will be attacked again](https://australiancybersecuritymagazine.com.au/tag/once-attacked-it-is-extremely-likely-an-organisation-will-be-attacked-again/) - [The gaming industry has continued to be the single largest target of DDoS attacks](https://australiancybersecuritymagazine.com.au/tag/the-gaming-industry-has-continued-to-be-the-single-largest-target-of-ddos-attacks/) - [Web application attacks](https://australiancybersecuritymagazine.com.au/tag/web-application-attacks/) - [Commvault](https://australiancybersecuritymagazine.com.au/tag/commvault/) - [IBM](https://australiancybersecuritymagazine.com.au/tag/ibm/) - [Commvault Data Management and Protection](https://australiancybersecuritymagazine.com.au/tag/commvault-data-management-and-protection/) - [IBM Business Resiliency Services Customers](https://australiancybersecuritymagazine.com.au/tag/ibm-business-resiliency-services-customers/) - [Commvault Data Platform](https://australiancybersecuritymagazine.com.au/tag/commvault-data-platform/) - [hybrid cloud environments](https://australiancybersecuritymagazine.com.au/tag/hybrid-cloud-environments/) - [Kleiner Perkins](https://australiancybersecuritymagazine.com.au/tag/kleiner-perkins/) - [Series B financing](https://australiancybersecuritymagazine.com.au/tag/series-b-financing/) - [create the linkages and ‘insights’ of what incidents need human attention](https://australiancybersecuritymagazine.com.au/tag/create-the-linkages-and-insights-of-what-incidents-need-human-attention/) - [helping the human analyst decide](https://australiancybersecuritymagazine.com.au/tag/helping-the-human-analyst-decide/) - [SIEM market](https://australiancybersecuritymagazine.com.au/tag/siem-market/) - [JASK ASOC platform](https://australiancybersecuritymagazine.com.au/tag/jask-asoc-platform/) - [PIV](https://australiancybersecuritymagazine.com.au/tag/piv/) - [Personal Identity Verification](https://australiancybersecuritymagazine.com.au/tag/personal-identity-verification/) - [Facility Access](https://australiancybersecuritymagazine.com.au/tag/facility-access/) - [physical access control systems](https://australiancybersecuritymagazine.com.au/tag/physical-access-control-systems/) - [authenticate cardholders in federal facilities](https://australiancybersecuritymagazine.com.au/tag/authenticate-cardholders-in-federal-facilities/) - [IoT Cybersecurity](https://australiancybersecuritymagazine.com.au/tag/iot-cybersecurity/) - [Privacy Risks](https://australiancybersecuritymagazine.com.au/tag/privacy-risks/) - [Considerations for Managing IoT Cybersecurity and Privacy Risks Workshop](https://australiancybersecuritymagazine.com.au/tag/considerations-for-managing-iot-cybersecurity-and-privacy-risks-workshop/) - [privacy risk for IoT devices](https://australiancybersecuritymagazine.com.au/tag/privacy-risk-for-iot-devices/) - [Symmetric Block Ciphers](https://australiancybersecuritymagazine.com.au/tag/symmetric-block-ciphers/) - [symmetric cryptography](https://australiancybersecuritymagazine.com.au/tag/symmetric-cryptography/) - [key distribution](https://australiancybersecuritymagazine.com.au/tag/key-distribution/) - [the fourth industrial revolution](https://australiancybersecuritymagazine.com.au/tag/the-fourth-industrial-revolution/) - [OpenText](https://australiancybersecuritymagazine.com.au/tag/opentext/) - [the majority of Australians remain cautious or unaware of the opportunities provided by AI in their daily lives](https://australiancybersecuritymagazine.com.au/tag/the-majority-of-australians-remain-cautious-or-unaware-of-the-opportunities-provided-by-ai-in-their-daily-lives/) - [AI in government – a short-term reality?](https://australiancybersecuritymagazine.com.au/tag/ai-in-government-a-short-term-reality/) - [AI in healthcare – more precise and faster diagnosis](https://australiancybersecuritymagazine.com.au/tag/ai-in-healthcare-more-precise-and-faster-diagnosis/) - [AI and automotive – self driving a way off](https://australiancybersecuritymagazine.com.au/tag/ai-and-automotive-self-driving-a-way-off/) - [Charles Crouspeyre](https://australiancybersecuritymagazine.com.au/tag/charles-crouspeyre/) - [RSA APJ](https://australiancybersecuritymagazine.com.au/tag/rsa-apj/) - [JustCo](https://australiancybersecuritymagazine.com.au/tag/justco/) - [Prashant Haldankar](https://australiancybersecuritymagazine.com.au/tag/prashant-haldankar/) - [Ricardo Gonçalves](https://australiancybersecuritymagazine.com.au/tag/ricardo-goncalves/) - [Ian Yip](https://australiancybersecuritymagazine.com.au/tag/ian-yip/) - [Mohamed Noordin](https://australiancybersecuritymagazine.com.au/tag/mohamed-noordin/) - [NTUC Link](https://australiancybersecuritymagazine.com.au/tag/ntuc-link/) - [Vishing](https://australiancybersecuritymagazine.com.au/tag/vishing/) - [The Office of the eSafety Commissioner](https://australiancybersecuritymagazine.com.au/tag/the-office-of-the-esafety-commissioner/) - [The Lost Summer](https://australiancybersecuritymagazine.com.au/tag/the-lost-summer/) - [students to play in the classroom to help encourage digital intelligence and online safety skills](https://australiancybersecuritymagazine.com.au/tag/students-to-play-in-the-classroom-to-help-encourage-digital-intelligence-and-online-safety-skills/) - [navigate the online world safely](https://australiancybersecuritymagazine.com.au/tag/navigate-the-online-world-safely/) - [Perth Joint Cyber Security Centre](https://australiancybersecuritymagazine.com.au/tag/perth-joint-cyber-security-centre/) - [JCSC](https://australiancybersecuritymagazine.com.au/tag/jcsc/) - [keeping Australians safe from cyber-attacks](https://australiancybersecuritymagazine.com.au/tag/keeping-australians-safe-from-cyber-attacks/) - [the Attorney-General](https://australiancybersecuritymagazine.com.au/tag/the-attorney-general/) - [improve cyber security practices and share information in a trusted and secure environment](https://australiancybersecuritymagazine.com.au/tag/improve-cyber-security-practices-and-share-information-in-a-trusted-and-secure-environment/) - [Cyber security threats are always evolving](https://australiancybersecuritymagazine.com.au/tag/cyber-security-threats-are-always-evolving/) - [Joint Cyber Security Centre](https://australiancybersecuritymagazine.com.au/tag/joint-cyber-security-centre/) - [Hon Christian Porter MP](https://australiancybersecuritymagazine.com.au/tag/hon-christian-porter-mp/) - [Australia’s Federal Attorney-General](https://australiancybersecuritymagazine.com.au/tag/australias-federal-attorney-general/) - [legislation](https://australiancybersecuritymagazine.com.au/tag/legislation/) - [Christian Porter](https://australiancybersecuritymagazine.com.au/tag/christian-porter/) - [Recommendation for Pair-Wise Key-Establishment Using Integer Factorization Cryptography](https://australiancybersecuritymagazine.com.au/tag/recommendation-for-pair-wise-key-establishment-using-integer-factorization-cryptography/) - [cisco start](https://australiancybersecuritymagazine.com.au/tag/cisco-start/) - [BCA](https://australiancybersecuritymagazine.com.au/tag/bca/) - [COSBOA](https://australiancybersecuritymagazine.com.au/tag/cosboa/) - [small business](https://australiancybersecuritymagazine.com.au/tag/small-business/) - [SMB](https://australiancybersecuritymagazine.com.au/tag/smb/)