Modern Australian
Men's Weekly

.

Hackers cause most data breaches, but accidents by normal people aren't far behind

  • Written by Nicholas Patterson, Lecturer, Deakin University
Hackers cause most data breaches, but accidents by normal people aren't far behind

Have you ever had your personal information leaked on the internet? Maybe it was something you purchased online from a website, only to find out that the company was hacked months later? If the answer is “yes”, you probably want to know whether the breach was reported and dealt with.

Australian organisations reported 242 data breaches between April 1 and June 30, 2018. There was a dramatic increase in notifications from February 2018, when eight notifications were made, to June 2018, when 90 notifications were made.

There are obvious reasons for this increase. Since the government’s Notifiable Data Breaches (NDB) scheme was introduced on February 22, organisations are becoming more aware of cyber security, and the rules and regulations around handling data.

Read more: New law will force some (but not all) organisations to reveal data breaches

What does a data breach look like?

To give you an example of a data breach, we can look back to 2017, when almost 50,000 Australians had their sensitive information leaked online.

In this case, a private contractor incorrectly configured an Amazon cloud storage service, inadvertently causing the data to become publicly accessible. A Polish security researcher discovered the data, which included names, passwords, identification details, phone numbers, and credit card numbers.

The NDB scheme aims to prevent breaches like this from being kept under wraps, and to allow all affected parties to learn the extent of the damage.

How many people were affected?

The recent quarterly NDB report suggests that most data breach notifications are coming from small or medium-sized organisations, with relatively few customers affected. There were 55 notifications (23%) of breaches in which 11 to 100 people were affected. In 52 instances (21%), 101-1,000 people were affected. And there was just one notification that affected more than a million people.

This suggests that larger organisations are generally more adept at preventing data breaches.

What kind of data was breached?

The types of information being leaked is broken down into Tax File Number, health information, identity information, financial details, and contact information.

Results show that contact information was the most common type of data leaked, with 216 notifications reported (89%). This was followed by financial information, with 102 notifications (42%); identity information (94 notifications, 39%); and Tax File Numbers (47 notifications, 19%).

It is worrying that financial information was leaked in 42% of cases. Any data breach is problematic, but the leak of financial data can have a dramatic impact on a victim’s life if it results in fraudulent purchases.

What is causing these data breaches?

Three main reasons were cited for data breaches in the last quarter: malicious or criminal attacks (59%), human error (36%), and system fault (5%).

Most notifications were the direct result of cyber incidents, including phishing, malware, ransomware, brute-force attacks, compromised or stolen credentials, and hacking. This was followed by theft of paperwork or data storage devices, and breaches caused by rogue employees and insider threats.

Read more: What could a My Health Record data breach look like?

Human error is often regarded as the main cause of cyber security incidents. But it was only the second most common cause of data breaches during the last quarter.

In 22 cases, data was sent to the wrong recipient. When organisations unintentionally released or published information this accounted for 12 notifications. The report includes clicking on a phishing email as human error, although this action should really be categorised as the result of a malicious attack.

Which industries were most affected?

The report lists five industry sectors: health service providers; finance and legal services; accounting and management services; education and business services; and professional services.

The health care industry was most affected, with 49 notifications (20%), followed closely by the finance sector with 36 notifications (15%).

Why these sectors? Financial information, such as credit cards or bank details, is a key target for hackers because it can translate into real money quickly.

Read more: What should Australian companies be doing right now to protect our privacy

The health services industry is also a lucrative target for hackers who have in the past put confidential patient data up for ransom. For example, in 2016 the Hollywood Presbyterian Medical Center paid a US$17,000 ransom in bitcoin to hackers who had taken control of its computer system.

The education sector reported 19 notifications (8%). This number is likely to grow as hackers become aware of the value of unpublished research and intellectual property.

A recent example of this was the hacking attempts of Australian National University, where it was reported that ANU spent many months fending off attacks on its systems that were traced back to China.

Combating data breaches

The NDB scheme and reporting is an important way to shed light on the cyber security issues facing Australia, now and in the future. Knowing how breaches are occurring, how often and to which sectors will allow cyber security professionals and researchers to tackle these issues head on.

Some breaches can be defended using technology, such as ransomware prevention tools. But breaches that result from human error are more difficult. Education and training for employees can assist them in preventing simple mishaps from occurring.

Bringing these numbers down will require a mix of technological solutions and education. Until we get this right, we’re likely to see more breaches in the near future, rather than less.

Authors: Nicholas Patterson, Lecturer, Deakin University

Read more http://theconversation.com/hackers-cause-most-data-breaches-but-accidents-by-normal-people-arent-far-behind-99684

Electric Automation System: Smarter Control for Modern Electrical Infrastructure

Modern buildings and industrial facilities are increasingly dependent on intelligent control and efficiency. An electric automation system brings t...

The Damp Truth: Why Your Overflowing Gutters Are an Open Invitation for Termites

When it comes to protecting your home, most people think about visible threats — storm damage, cracked tiles, break-ins. But one of the most destruc...

Is Your Inventory a Sitting Duck? 2 Critical Upgrades to Protect Your Business Assets and Your Bottom Line

Imagine this: you finish a long day on the job, lock up your tools, materials, and work vehicle in the garage, and head home. But overnight, someone b...

Electrician in Melbourne: Reliable Electrical Solutions for Homes and Businesses

Finding a dependable electrician Melbourne is essential when safety, efficiency, and long-term performance matter. Electrical systems form the back...

Rims and Tyres for Sale in Sydney: Performance, Safety, and Style Combined

Finding the right rims and tyres for sale Sydney is about far more than appearance. Tyres and rims directly influence how a vehicle handles, brakes...

Why Access to Doctors in Bundoora Is Essential for Ongoing Community Health

Reliable access to healthcare plays a vital role in maintaining physical wellbeing and peace of mind. Having trusted doctors in Bundoora available ...

Pendant Lights: Elevating Interior Spaces With Style and Purpose

Well-chosen pendant lights have the power to transform interiors by combining focused illumination with strong visual impact. More than just a ligh...

What Sets Professional Family Lawyers in Sydney Apart from General Lawyers?

Choosing the right legal support can make a noticeable difference when dealing with family-related matters. This article will explore what separates...

Balancing Teen Academic Expectations and Wellbeing

For many teenagers, school years are shaped by increasing expectations. Academic performance, future pathways, and comparison with peers can create pr...

Why Ceiling Fans Remain One of the Most Effective Solutions for Year-Round Comfort

Creating a comfortable indoor environment without relying heavily on energy-intensive systems is a priority for many households. Installing ceiling ...

Why an Industrial Air Compressor Is Vital for Modern Manufacturing

In many industrial environments, compressed air is as essential as electricity or water. An industrial air compressor provides the power needed to ...

Why Commercial Carpet Cleaning Services Matter for Professional Spaces

Clean carpets play a major role in shaping how a commercial space looks, feels, and functions. Commercial carpet cleaning services are essential fo...

5 Things to Consider Before Choosing a Commercial Painter

Choosing the right painter for a commercial business can be challenging. Regardless of the type and the size of the property, all commercial project...

Why Medical Fitout Melbourne Practices Rely on for Modern Healthcare Spaces

A well-planned medical fitout Melbourne is essential for creating healthcare environments that support patient care, clinical efficiency, and regula...

Luxury Builders Melbourne Crafting Homes Defined by Design and Detail

Building a premium home is about far more than size or appearance. It is about precision, craftsmanship, and a deep understanding of how refined spa...

Electric Sliding Door Solutions for Modern Living and Commercial Spaces

The way people move through spaces has changed dramatically over the years, and the electric sliding door has become a defining feature of that evol...

Australia’s New Fast Track to Advanced Care in Vietnam

For many Australians, the decision to seek medical care abroad often begins with a specific feeling: the quiet frustration of waiting. According to ...

Cardboard Boxes: A Practical Packaging Solution for Modern Businesses

Reliable cardboard boxes play a vital role in how goods are stored, protected, and transported across industries. From small retailers to large-sca...