AP

Hacker releases Australian health insurer’s customer data

Nov 8, 2022, 5:53 PM | Updated: Nov 10, 2022, 7:02 pm

CANBERRA, Australia (AP) — Client data from Medibank, Australia’s largest health insurer, was released by an extortionist on Wednesday, including details of HIV diagnoses and drug abuse treatments, after the company refused to pay a ransom for the personal records of almost 10 million current and former customers.

The material released on the dark web appeared to be a sample of the data that Medibank has determined was stolen last month, the company said. Medibank expects the thief will continue releasing data.

“This is a criminal act designed to harm our customers and cause distress,” Medibank CEO David Koczkar said in a statement that reiterated a previous apology to customers.

“We take seriously our responsibility to safeguard our customers and we stand ready to support them,” he added.

The data included what the thief called a “naughty list” of more than 100 names. Among them were patients who had contracted HIV and others who were treated for addictions to drugs and alcohol and for mental health problems.

One of the exposed customers contacted by Nine News television responded with anger toward Medibank.

“Letting customers discover their most sensitive information imaginable has been published and hearing it on the news, Medibank’s response has been pathetic,” the unidentified man, whose image was not broadcast, told Nine.

Cybersecurity Minister Clare O’Neil, who is a Medibank customer and has had personal data stolen, urged social and traditional media companies to prevent their platforms from being used to share people’s stolen medical histories.

“If you do so, you will be aiding and abetting the scumbags who are at the heart of these criminal acts and I know that you would not do that to your own country and your own citizens,” O’Neil told Parliament.

She said the number of people whose medical information has been released was “small at this stage.”

“But I want the Australian people to understand that that is likely to change, and we are going through a difficult period now that may last for weeks, possibly months, not days and hours,” O’Neil added.

Prime Minister Anthony Albanese, who is also a Medibank customer, welcomed the company’s refusal to pay the hacker to have the records returned.

“This is really tough for people. I’m a Medibank Private customer as well and it will be of concern that some of this information has been put out there,” Albanese told reporters, referring to a Medibank brand.

“The company has followed the guidelines effectively, the advice, which is to not engage in a ransom payment. If you go down this road, then you end up with more difficulties potentially across a wider range,” Albanese said.

The thieves had reportedly threatened to expose the diagnoses and treatments of high-profile customers unless a ransom of an undisclosed amount was paid, but Medibank decided there was “only a limited chance” that a payment would prevent the data from being published.

A blogger using the name “Extortion Gang” posted Monday night on the dark web that “data will be publish in 24 hours.”

Medibank this week updated its estimate of the number of people whose personal information was stolen from 4 million two weeks ago to 9.7 million. The stolen data includes health claims of almost 500,000 people including diagnoses and treatments, the company said.

The theft of the personal records of 9.8 million customers of Optus, Australia’s second-largest wireless telecommunications carrier, that was discovered on Sept. 21 prompted the government to promise heftier penalties for corporations that fail to protect private data.

The House of Representatives on Wednesday passed an urgent bill that would increase penalties for serious breaches of the Privacy Act from 2.2 million Australian dollars ($1.4 million) to AU$50 million ($32 million) or more.

The government hopes the bill will be passed by the Senate and become law this month.

Copyright © The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.

AP

A demonstrator in Tel Aviv holds a sign calling for a cease-fire in the Hamas-Israel war on Nov. 21...

Associated Press

Hamas releases a third group of hostages as part of truce, and says it will seek to extend the deal

The fragile cease-fire between Israel and Hamas was back on track Sunday as the first American was released under a four-day truce.

3 days ago

Men look over the site of a deadly explosion at Al-Ahli Hospital in Gaza City, Wednesday, Oct. 18, ...

Associated Press

New AP analysis of last month’s deadly Gaza hospital explosion rules out widely cited video

The Associated Press is publishing an updated visual analysis of the deadly Oct. 17 explosion at Gaza's Al-Ahli Hospital.

7 days ago

Peggy Simpson holds a photograph of law enforcement carrying Lee Harvey Oswald's gun through a hall...

Associated Press

JFK assassination remembered 60 years later by surviving witnesses to history, including AP reporter

Peggy Simpson is among the last surviving witnesses who are sharing their stories as the nation marks the 60th anniversary.

7 days ago

Israeli Prime Minister Benjamin Netanyahu, chairs the weekly cabinet meeting in Jerusalem, Sunday, ...

Associated Press

Israeli Cabinet approves cease-fire with Hamas; deal includes release of 50 hostages

Israel’s Cabinet on Wednesday approved a cease-fire deal with the Hamas militant group that would bring a temporary halt to a devastating war.

8 days ago

Republican presidential candidate and former President Donald Trump helps serve food to Texas Natio...

Associated Press

Trump receives endorsement from Texas Gov. Greg Abbott during a visit to a US-Mexico border town

Donald Trump picked up the Texas governor’s endorsement Sunday during a visit to a U.S.-Mexico border town.

10 days ago

Eric Trump, executive vice president of Trump Organization Inc., speaks to the media as he leaves f...

Associated Press

Lawyers in Trump’s civil fraud trial are ordered to clam up about judge’s communications with staff

Eric Trump testified Friday that he was relying on accountants to ensure the accuracy of financial statements.

26 days ago

Sponsored Articles

(KTAR News Graphic)...

KTAR launches online holiday auction benefitting Boys & Girls Clubs of the Valley

KTAR is teaming up with The Boys & Girls Clubs of the Valley for a holiday auction benefitting thousands of Valley kids.

Follow @KTAR923...

Valley residents should be mindful of plumbing ahead of holidays

With Halloween in the rear-view and more holidays coming up, Day & Night recommends that Valley residents prepare accordingly.

...

Midwestern University

Midwestern University: innovating Arizona health care education

Midwestern University’s Glendale Campus near Loop 101 and 59th Avenue is an established leader in health care education and one of Arizona’s largest and most valuable health care resources.

Hacker releases Australian health insurer’s customer data