Data breach reports soar, 34,000 affected

An IT expert says workplaces should think about all the ways data can be exposed after a report showed the rate of data breach reports has increased five-fold.

A number of local companies, including health care providers, have lost private client data.

A number of local companies, including health care providers, have lost private client data. Source: AAP

A dozen organisations each week are coming forward to admit they've exposed customers' personal information, official statistics show.

At least 34,000 Australians were affected by 63 data breaches since it became mandatory in late February for most organisations to inform the privacy watchdog about breaches that could likely result in serious harm.

The Office of the Australian Information Commissioner said health service providers made up a quarter of all admissions while a significant proportion came from companies in legal, accounting, management and financial services.

Most of the exposed information related to contact information, such as names, addresses and phone numbers.

Three-in-ten cases involved financial details such as credit card or bank account numbers, while a quarter of cases involved data used to confirm identities such as driver licence and passport numbers.

Human error was to blame in half of all cases while malicious or criminal attacks were the cause 28 times.

University of Sydney IT network and security lecturer Ralph Holz said organisations need to think about who has access to information and whether they understood basic ways scammers try to get them to reveal customers' information.

Playing on people's desire not to be unhelpful or clueless, social engineering attacks can trick staff into handing information to the wrong person.

"Organisations should first have a very clear understanding of which staff should be able to access information and then ensure those people receive extra training," Dr Holz said.

"In the same way people know they shouldn't exchange money in a dark alleyway behind some building, they should also know that certain ways exist to get information out of them."

Most data breaches reported to the OAIC affected fewer than ten people but three incidents each affected between 10,000 and 99,999 people, the office said.

The latest report relates to notifications received between February 22 and March 31.

Under the old, voluntary scheme, just 114 breaches were reported in the year to June 2017.


Share
2 min read

Published

Source: AAP

Share this with family and friends


Get SBS News daily and direct to your Inbox

Sign up now for the latest news from Australia and around the world direct to your inbox.

By subscribing, you agree to SBS’s terms of service and privacy policy including receiving email updates from SBS.

Download our apps
SBS News
SBS Audio
SBS On Demand

Listen to our podcasts
An overview of the day's top stories from SBS News
Interviews and feature reports from SBS News
Your daily ten minute finance and business news wrap with SBS Finance Editor Ricardo Gonçalves.
A daily five minute news wrap for English learners and people with disability
Get the latest with our News podcasts on your favourite podcast apps.

Watch on SBS
SBS World News

SBS World News

Take a global view with Australia's most comprehensive world news service
Watch the latest news videos from Australia and across the world