-
Son Heung-min to lead South Korea squad at his fourth World Cup
-
Pretty in pink: Dallas World Cup venue chasing perfect pitch
-
Wordle heads to primetime as media seek puzzle reinvention
-
Eurovision: the grand final running order
-
McIlroy, back in PGA hunt, blames bad setup for lead logjam
-
Kubo vows to lead Japan at World Cup with Mitoma out
-
McNealy and Smalley share PGA lead at difficult Aronimink
-
Drake drops three albums at once
-
Boeing confirms China commitment to buy 200 aircraft
-
Knicks forward Anunoby trains as NBA Eastern Conference finals loom
-
American McNealy grabs PGA lead at difficult Aronimink
-
Substitute 'keeper sends Saint-Etienne into promotion play-off
-
Sinner's bid to reach Italian Open final held up by Roman rain
-
Aston Villa humble Liverpool to secure Champions League qualification
-
US says Iran-backed militia commander planned Jewish site attacks
-
Bolivia unrest continues despite government deal with miners
-
Scheffler slams 'absurd' PGA pin locations
-
New deadly Ebola outbreak hits DR Congo, 1 dead in Uganda
-
Democrats accuse Trump of stock trade corruption
-
'Beyond the Oscar': Travolta gets surprise Cannes prize
-
Israel, Lebanon say extending ceasefire despite new strikes
-
Potgieter grabs early PGA lead at difficult Aronimink
-
Prosecutors seek death penalty for US man charged with killing Israeli embassy staffers
-
Judge declares mistrial in Weinstein sex assault case
-
Canada takes key step towards new oil pipeline
-
Iranian filmmaker Farhadi condemns Middle East war, protest massacres
-
'Better than the Oscar': John Travolta gets surprise Cannes prize
-
Marsh muscle motors Lucknow to victory over Chennai
-
Judge declares mistrial in Weinstein case as jury fails to reach verdict
-
Eurovision finalists tune up as boycotting Spain digs in
-
Indonesia's first giant panda is set to charm the public
-
Cheer and tears as African refugee rap film 'Congo Boy' charms Cannes
-
Norwegian Ruud rolls into Italian Open final, Sinner set for Medvedev clash
-
Bolivia government says deal reached with protesting miners
-
Showdowns and spycraft on Trump-Xi summit sidelines
-
Smalley seizes PGA lead with Matsuyama making a charge
-
Acosta quickest in practice for Catalan MotoGP
-
Nuno wants VAR 'consistency' as West Ham fight to avoid relegation
-
Vingegaard powers to maiden Giro stage victory
-
Iran to hold pre-World Cup training camp in Turkey: media
-
US scraps deployment of 4,000 troops to Poland
-
Ukraine vows more strikes on Russia after attack on Kyiv kills 24
-
Bayern veteran Neuer signs one-year contract extension
-
Ukraine can down Russian drones en masse. But missiles are a problem
-
Israeli strikes wound dozens in Lebanon as talks in US enter second day
-
'Everybody wants Hearts to win', says Celtic's O'Neill ahead of title decider
-
Scheffler stumbles from share of lead at windy PGA
-
New deadly Ebola outbreak hits DR Congo
-
Farke calls for Leeds owners to match his ambition
-
Zverev pulls out of home event in Hamburg with back injury
Repeat hacks highlight Australia's cyber flaws
Inadequate privacy safeguards and the stockpiling of sensitive customer information have made Australia a lucrative target in the eyes of foreign hackers, cybersecurity experts told AFP following a series of major data breaches.
Medibank, Australia's largest private health insurer, recently confirmed that hackers had accessed the data of 9.7 million current and former customers, including medical records related to drug abuse and pregnancy terminations.
Telecom company Optus fell prey to a data breach of similar scale in late September, during which the personal details of up to 9.8 million people were accessed.
Both incidents sit comfortably among the largest data breaches in Australian history.
Australian National University cybersecurity expert Thomas Haines said many companies had been hoarding personal data that they should not have been hanging on to.
"There was a famous line for a while: Data is the new oil," he told AFP.
"If data is the new oil, then we're living the era of the weekly oil spill."
Haines contrasted Australia's approach with that of the European Union, which in 2018 adopted sweeping privacy reforms limiting how organisations collect, use and store personal data.
"There have got to be incentives in place to stop companies hoarding data they don't need, or to penalise those companies for big leaks. Europe has done this," he said.
"At the moment the business incentives are basically along the lines of: Let's just keep a whole bunch of data."
Haines said Medibank appeared to be an exception, in that most of the sensitive information within its databases had been stored for good reason.
- Hacking 'for profit' -
Australia's comparatively weak safeguards against identity theft meant it was also easier to exploit stolen personal information, Haines said.
"All they need to know is your passport, your driver's licence and some other things -- and then I can start taking out loans in your name."
Haines said European countries such as Norway had much more stringent requirements involving face-to-face contact.
Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said most hackers were searching for particular types of data.
"For-profit hackers are going after healthcare data, they're going after identity data and credentials to access systems," he told AFP.
"There is a profit motivation there, otherwise they wouldn't be risking jail and prosecution."
The Medibank hackers this week started leaking stolen data to a dark web forum, after the company refused to pay a US$9.7 million (Aus$15 million) ransom.
The Optus breach led to the theft of customers' names, birth dates, and passport numbers.
- Russia blamed -
Australian Federal Police Commissioner Reece Kershaw on Friday blamed the Medibank cyberattack on a team of hackers based in Russia.
"We believe those responsible for the breach are in Russia," he told reporters.
"Our intelligence points to a group of loosely affiliated cyber criminals who are likely responsible for past significant breaches in countries across the world."
Medibank data leaked to the dark web so far has included hundreds of potentially-compromising medical records related to drug addiction, alcohol abuse and sexually-transmitted infections.
Home Affairs Minister Clare O'Neil conceded on Friday the country's cyber defences had not always been up to scratch.
University of Sydney data researcher Jane Andrew said one major flaw was that Australian companies were not always obliged to report data breaches.
"There are heaps of data breaches happening all the time that we don't hear anything about," she told AFP.
"Companies have been gathering data because it's seen to be valuable, without fully understanding the potential risks."
H.Seidel--BTB