Stonnington Council cyberattack exposes ratepayer information

A recent cyberattack against Stonnington Council has exposed private ratepayer information across some of Australia's most expensive suburbs. In a Channel 7

A recent cyberattack against Stonnington Council has exposed private ratepayer information across some of Australia's most expensive suburbs. In a Channel 7 Report on the incident, Stonnington Council CEO Jacquie Weatherill has stated that an "international agent" has infiltrated their systems.

The attack has resulted in in the council shutting down payments and planning applications on their website.

The Stonnington Council services some of Australia's most expensive suburbs, including Toorak, Malvern and South Yarra. With approximately 110,000 Stonnington residents, it's no surprise that international actors could find value in targeting the council for the attack.

This is far from the first time that an Australian council has been targeted in a cyber attack. In July of 2018, both Cairns and Townsville experienced a data breach within the same month.

The public sector is often at an increased risk of cyber-attack, both by individual criminals looking to install ransomware or sell data on the dark web for a profit, as well as by international actors with more political motivations.

Just this year, China was suspected of a cyber attack against Western Australian Parliament during a state election, and similar suspicions were raised in 2019 for an attack against Federal Parliament.

Experts are increasingly warning public sector organisations to take increased cybersecurity measures, especially given that cybersecurity damages in Australia have increased exponentially year after year.

In a statement on the Stonnington Council website, Weatherill quotes:

"Our priority is to ensure our customer’s data is kept secure, our workforce can be as productive as possible, and our customers remain connected.”

While a cause and method of attack is yet to be identified or released in a public statement, it's often the case that human error is the underlying cause of a breach, with over 90% of data breaches being attributable to human error.

Given the widespread adoption of work-from-home, the risk of human error and consequential security incidents is higher than ever before for all organisations. To ensure your cyber-safety for the remainder of 2021, we recommend the following security practices:

Not sure about the next steps to take for your cybersecurity? Visit cyberaware.com for more key safety tips and takeaways.

Ready to deploy

Same playbook.
Your brand.

Cyber Aware's Human Risk Score works the same way for every MSP partner - under your brand, on your cadence.