Viw Magazine

Men's Weekly

.

  • Written by Nicholas Patterson, Lecturer, Deakin University
It's been reported that names, addresses, dates of birth, phone numbers, personal email addresses and emergency contact details, tax file numbers, payroll information, bank account details, passport details and student academic records were accessed. www.shutterstock.com

Today it was revealed the Australian National University (ANU) fell victim to a cyber security attack two weeks ago. Stolen was a substantial amount of data dating back 19 years relating to staff, students and visitors.

We don’t know for sure how long the cyber attackers were inside the ANU systems in this case. However, the university revealed details of other attempted attacks last year.


Read more: Hackers cause most data breaches, but accidents by normal people aren't far behind


The ABC reported that the types of data stolen were “names, addresses, dates of birth, phone numbers, personal email addresses and emergency contact details, tax file numbers, payroll information, bank account details, and passport details. Student academic records were also accessed.”

These are very critical data. Privacy and security are at risk when this sort of information, especially people’s personal and financial details, are hacked.

The question now is what will happen with the stolen data.

There are three likely outcomes:

1. Invitation to pay a ransom

The hackers who stole the data might ask ANU to pay a ransom and they will “erase” the data they stole (or at least say they will). If the ransom is not paid, they will probably release it to the public.

We have seen cases like this before around the world. A recent example involved stolen coding tools.

Another example is an attack on a German IT company, Citycomp, where hackers broke into its systems and stole a lot of critical data. Citycomp was asked to pay a ransom of $5,000 – but did not. The hackers published the data.

2. Free public release of data

The hackers may release the stolen data to the public without asking for any payment. This might happen as a show of strength, to provide evidence of their capabilities, or to cause chaos.

The consequences are still very serious in this case. It could lead to serious breaches of personal privacy, fake identities being created and important intellectual property becoming available to competitors or other hackers.

More broadly, the university may attract fines from the government if it was later found that correct data protection practices were not followed. That said, there is no evidence this is the case here.

3. Sell for profit on the dark web

The hackers may sell the data on the dark web to make a profit. Others could buy the data to create fake identities and as a result fake credit cards.

An example where hackers have stolen data involving up to 150 million users and sold it on the dark web involved Under Armour’s MyFitnessPal app.

The entire stolen data set is reportedly available for an asking price of less than $20,000 in bitcoin – around one year after the breach occurred.

Hackers are hard to stop

What makes this ANU case very interesting is that in 2018 The Guardian reported that ANU had spent many months fighting off a threat to its systems. There were unverified reports this might have come from hackers based in China.

This means the ANU has known it was being targeted for a while now, and was still not able to fend off the data breach revealed today.

You might ask why the university hadn’t bolstered its cyber defences in response. The answer is the ANU probably did, to the best of its abilities.

However, when you are dealing with elite hackers and those using “zero day exploits”, it means your chances of preventing a hack are quite limited. Zero day-based exploits focus on vulnerabilities that are not yet known to anti-malware companies or for which no targeted solutions are available, such as patches or updates.


Read more: From botnet to malware: a guide to decoding cybersecurity buzzwords


This is still a dangerous situation

There are still aspects of this situation that will present concerns to the ANU and its stakeholders.

For example, it’s possible the hackers could still be in the systems, but hidden. They may have user names and passwords for student accounts or hidden backdoors the university has not yet discovered.

It could be worse than we know

Another issue is whether the hackers have stolen even more data than is being reported.

It currently appears data not stolen includes “credit card details, travel information, medical records, police checks, workers’ compensation information, vehicle registration numbers, and some performance records”.

ANU vice-chancellor Brian Schmidt has said: “We have no evidence that research work has been affected. But the university may not yet know for sure. A very concerning aspect for the university will be the potential for intellectual property and unpublished academic works to be accessed. This could be very valuable to sell off online or even to other universities.”

This has happened before: Iranian hackers targeted 76 universities across 14 countries to steal intellectual property from research projects in 2018.

Only time will reveal what happens next. The bad news is that hackers have stolen critical data and it’s in the wind. The outcomes could be minimal or they could be disastrous, depending on the hackers’ intentions.

A big concern will be if the hackers still have access to the university systems, via an established backdoor, and are siphoning off critical data as it emerges.

Nicholas Patterson does not work for, consult, own shares in or receive funding from any company or organisation that would benefit from this article, and has disclosed no relevant affiliations beyond their academic appointment.

Authors: Nicholas Patterson, Lecturer, Deakin University

Read more http://theconversation.com/19-years-of-personal-data-was-stolen-from-anu-it-could-show-up-on-the-dark-web-118265

Your Go-To Electrical Wholesaler in Sydney for Quality Sparkie Supplies

Let's be fair dinkum, when you're a electrical technision in Sydney, the last thing you want is to be running around like a headless chook l...

Why Doctors Recommend Earplugs for Flying with Sinus Issues

Air travel is convenient, but for people with sinus issues, it can be anything but comfortable. The pressure changes that occur during takeo...

Tradies Make Great Money - So Why Aren't Kids Becoming Apprentices?

Jack loved building, fixing, and improving, and always assumed he would become a tradie like his dad. However, his dreams hit the skids when...

Breastfeeding for Working Mothers: How to Make It Work at Work

Being a breastfeeding working mothers can at times be quite a challenge. Mothers oftentimes wonder if they are capable of expressing milk, s...

Quietly Productive: How Smart Design and Flexible Furniture are Transforming Australian Offices in 2026

For decades, Australian workplaces have been shaped by the open-plan office. Once celebrated as the ultimate collaboration hub, it is now ...

Can’t Afford a First Home in Brisbane? Buy an Investment Property in Regional Queensland

You’re not the only one that is struggling to afford a home. First homes in Brisbane cost an arm and a leg and possibly a few organs too! ...

Understanding Airflow Requirements for Efficient Evaporative Cooling

Evaporative cooling works on a simple principle: drawing warm air through water-saturated pads and circulating the cooled air throughout a...

Garage Door Torsion Springs: What They Are and Why They Matter

Garage doors might seem simple, but they rely on a system of components that work together to provide smooth and balanced movement. One of...

Why a Retractable Hose Reel Is a Must-Have for Every Australian Property

When managing outdoor spaces, whether residential, commercial, or industrial, water management tools are essential. Among the most practic...

7 Signs Your Lorry Needs a Diesel Mechanic, Stat!

Your lorry is the backbone of your business. When it's running smoothly, everything else tends to fall into place. But what happens when t...

Mean Mother Air Compressor and Autostrada Cruise Control: Enhancing the Journey

Modern 4WD accessories like the Mean Mother air compressor and Autostrada cruise control systems transform both capability and comfort for...

Why Real Estate Is a Smart Long-Term Investment

When it comes to building wealth and securing financial stability, few opportunities stand as tall as real estate. Unlike short-term venture...

The Ultimate Guide to Building a Home Gym on a Budget

For many people, the idea of building a home gym feels expensive and overwhelming, but it doesn’t have to be. The truth is, you don’t ne...

Red Flags to Look Out for When Buying an Investment Property

When you're looking to buy a property to rent out, it is a great way to build wealth. But not every property is a good deal. To make a smart...

The Complete Guide to Navigating the Home Buying Process

Buying a home in Australia is a wild ride. There’s the pressure, the excitement, and the endless scrolling of properties on apps like youâ...

The Ultimate Guide to Building a Capsule Wardrobe

There is nothing more infuriating than seeing getting dressed in the morning as a frustrating chore. If you spend mornings standing in front...

Simple Daily Habits That Improve Balance and Flexibility

Have you ever noticed how easily children can twist, stretch, and balance without a second thought? As adults, we often lose that natural ag...

Modern Luxury on a Budget: Interior Design Hacks That Work

Luxury doesn’t always mean expensive, although that’s what we go for when we try to add it to our home. In design, luxury can be a lot o...

Common Mistakes Sellers Make and How to Avoid Them

Selling a property, an item, or even a service is deceptively simple. Everyone thinks it’s straightforward, where you just list it, wait, ...

A Beginner’s Guide to Investing in Rental Properties

Investing in rental properties sounds so great when people talk about building a portfolio over brunch. The truth is, it’s a craft. It’s...