Parliament targeted by 24-hour brute-force attack

You may remember in late March that not only Channel Nine, but also Federal Parliament, were making headlines for being targetted by significant cyber attacks.

You may remember in late March that not only Channel Nine, but also Federal Parliament, were making headlines for being targetted by significant cyber attacks.

While there was ample coverage and information available regarding Channel Nine, we're only now receiving further information regarding the attack against the Department of Parliamentary Services (DPS).

Over a 24 hour period, the federal parliament network was targeted by a brute force attack; an attack method that aims to guess or 'crack' passwords and login information through sheer volume of attempts.

Senator Scott Ryan reported that while the brute force attempt was not successful, it did lead to a significant disruption of service as many user accounts were locked down between March 27th and April 5th.

Thankfully, the attack was contained and mitigated before systems and data could actually be compromised, however, this isn't the first time that Parliamentary services have been disrupted as a result of cybercrime.

2019 saw a malware injection - reportedly launched by state actors - against Parliamentary systems, which also led to services being shutdown during required security measures.

And only recently, yet another state-actor suspected cyber attack was launched on Western Australia's Parliament, notably during a state election.

While there is a world of difference between government cybersecurity and business cybersecurity, there's also plenty of common-ground learning that can be taken away from this recurrent slew of attacks:

Not sure about the next steps to take for your cybersecurity? Visit cyberaware.com for key safety tips and takeaways.

Ready to deploy

Same playbook.
Your brand.

Cyber Aware's Human Risk Score works the same way for every MSP partner - under your brand, on your cadence.