AP

Extortionist threatens to publish Australian customer data

Nov 7, 2022, 8:20 PM | Updated: 8:31 pm

CANBERRA, Australia (AP) — An extortionist has threatened to make Medibank customer data public within 24 hours after Australia’s largest health insurer refused to pay a ransom for the personal records of almost 10 million current and former customers.

Medibank on Monday ruled out paying ransom for the stolen data. The theft was reported to police Oct. 19 when trade in the company’s shares was halted for a week.

The thieves had reportedly threatened to expose the diagnoses and treatments of high-profile customers unless a ransom of an undisclosed sum was paid.

“Based on the extensive advice we have received from cybercrime experts, we believe there is only a limited chance paying a ransom would ensure the return of our customers’ data and prevent it from being published,” Medibank CEO David Koczkar said in a statement.

“In fact, paying could have the opposite effect and encourage the criminal to directly extort our customers and there is a strong chance that paying puts more people in harm’s way by making Australia a bigger target,” Koczkar added.

A blogger using the name “Extortion Gang” posted Monday night on the dark web that “data will be publish (sic) in 24 hours.”

“P.S. I recommend to sell medibank (sic) stocks,” the blog added.

The post did not include data samples that could prove the author held the data. But Medibank on Tuesday took the threat seriously.

“We knew the publication of data online by the criminal could be a possibility, but the criminal’s threat is still a distressing development for our customers,” Koczkar said.

Koczkar urged customers to remain vigilant and warned that the criminal could contact them directly.

Medibank this week updated its estimate of the number of people whose personal information had been stolen from 4 million two weeks ago to 9.7 million. The stolen data included health claims of almost 500,000 people including diagnoses and treatments, the company said.

“The weaponization of their private information is malicious and it is an attack on the most vulnerable members of our society,” Koczkar said.

Cybersecurity Minister Clare O’Neil welcomed Medibank’s stance, saying its refusal to pay a ransom was in line with her government’s advice.

Medibank revealed this week that a hacker stole a company employee’s username and password to access the customer database.

At least two legal firms say they are investigating a potential class-action lawsuit against Medibank for failing to protect customer data.

The price of Medibank shares fell almost 3% in early trade Tuesday on the Australian Security Exchange following threats of data publication and lawsuits.

Copyright © The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.

AP

TikTok is suing the U.S. government to block potential app ban...

Associated Press

TikTok sues US to block law that could ban the social media platform

TikTok is suing the U.S. government. It and its parent company, ByteDance, say a new law could force it to shut down operations.

18 hours ago

antisemitism on college campuses Holocaust remembrance...

Associated Press

Biden condemns antisemitism at college protests of Gaza war at Holocaust remembrance event

President Joe Biden on Tuesday decried a “ferocious surge” in antisemitism on college campuses and around the globe in a Tuesday speech.

19 hours ago

Stormy Daniels testified in Donald Trump's hush money trial...

Associated Press

Here is what Stormy Daniels testified happened between her and Donald Trump

Porn actress Stormy Daniels testified on Monday and refuted accusations that she tried to extort money from former President Donald Trump.

20 hours ago

Pro-Palestinian protesters break through barriers at MIT...

Associated Press

Pro-Palestinian protesters break through barricades to retake MIT encampment

Pro-Palestinian protesters broke through barricades to retake their encampment at MIT. Here are updates from Columbia and other universities.

2 days ago

American soldier arrested in Russia, accused of stealing...

Associated Press

Married American soldier arrested in Russia, accused of stealing from girlfriend, US officials say

An American soldier who is married has been arrested in Russia's port city of Vladivostok and accused of stealing from a Russian girlfriend.

2 days ago

Donald Trump attends his trial for allegedly covering up hush money payments at Manhattan Criminal ...

Associated Press

Trump fined $1,000 for gag order violation in hush money case as ex-employee recounts reimbursements

The judge in Donald Trump's hush money trial fined him $1,000 for violating his gag order and warned the defendant that additional violation could result in jail time.

2 days ago

Sponsored Articles

...

Condor Airlines

Condor Airlines can get you smoothly from Phoenix to Frankfurt on new A330-900neo airplane

Adventure Awaits! And there's no better way to experience the vacation of your dreams than traveling with Condor Airlines.

...

COLLINS COMFORT MASTERS

Here are 5 things Arizona residents need to know about their HVAC system

It's warming back up in the Valley, which means it's time to think about your air conditioning system's preparedness for summer.

...

Fiesta Bowl Foundation

The 51st annual Vrbo Fiesta Bowl Parade is excitingly upon us

The 51st annual Vrbo Fiesta Bowl Parade presented by Lerner & Rowe is upon us! The attraction honors Arizona and the history of the game.

Extortionist threatens to publish Australian customer data