San Francisco Chronicle

Australia accuses Russia in data theft

- By Rod McGuirk

CANBERRA, Australia — Moscow must he held to account for Russian cybercrimi­nals accused of hacking Australia’s largest health insurer and dumping customers’ personal medical records on the dark web, Australian officials said Friday.

Australian Federal Police took the unusual step of attributin­g blame for the cybercrime that resulted in the personal data of 9.7 million current and former Medibank customers being stolen.

A group of “loosely affiliated cybercrimi­nals” operating like a business in Russia were likely responsibl­e for the Medibank attack as well as other significan­t security breaches around the world, Australian Federal Police Commission­er Reece Kershaw said.

The extortioni­sts have been linked to high-profile Russian cybercrime gang REvil, short for Ransomware Evil and also known as Sodinokibi.

Cybercrimi­nals dumped personal medical records on the dark web for a third day on Friday, this time focusing on alcohol-related illnesses, as they pressure Medibank to pay a ransom.

The criminals began dumping customer records Wednesday, including those involving treatments for HIV and drug addiction, which they described as a “naughty” list, after Medibank ruled out paying a ransom for the return of the hacked data.

The focus shifted to terminated pregnancie­s in Thursday’s dump and on Friday to conditions related to harmful levels of alcohol consumptio­n, in a file the thieves labeled “boozy.” Medical treatment records of more than 700 customers had been published through Friday in what has been described as Australia’s most invasive cybercrime.

Newspapers in English

Newspapers from United States