World News

Australian police seek to protect customers after Optus hack | Cybersecurity

Australian police seek to protect customers after Optus hack | Cybersecurity

Authorities say perpetrator of one of country’s biggest cyberattacks used ‘obfuscation techniques’ to hide identity.

Australian police have announced an operation to safeguard the personal information of thousands of telecom customers following one of the biggest cyberattacks and data breaches in the country’s history.

Australian Federal Police (AFP) assistant commissioner for cyber command Justine Gough said authorities were working to identify and protect the affected customers after an unidentified person online claimed to have released personal data belonging to 10,000 Optus users.

Optus, Australia’s second-largest telecom, announced last week that the personal data of up to 9.8 million Australians had been compromised in a massive cyberattack, but authorities are particularly concerned about 10,000 customers whose details appear to have been offered for sale on the dark web.

A self-identified hacker earlier this week withdrew a $1m ransom demand while apologising for the crime and claiming that the stolen data had been destroyed.

“You can be assured that our very clever and dedicated cyber investigators are focused on delivering justice for those whose personal information has been compromised,” Gough said on Friday.

Gough said that police were concerned that fraudsters could use customers’ leaked details, which included passport and driver’s licence information, to carry out sensitive transactions.

“Customers affected by the breach will receive multijurisdictional and multilayered protection from identity crime and financial fraud,” she said.

While Gough did not comment on the ransom post, she said authorities around the world, including United States law enforcement, were pursuing multiple leads.

“Whoever is behind this attack has used obfuscation techniques,” she said.

Troy Hunt, a cybersecurity expert and Microsoft Regional Director in Australia, said authorities would be limited in their ability to protect affected customers despite their best efforts.

“They’re pretty much limited to rotating identity numbers and supporting identity theft services, there’s really not much more they can do on a per-individual basis,” Hunt told Al Jazeera.

“These actions do provide some protection, but to a limited extent. It’s not through lack of trying on the AFP’s behalf, rather a reflection of it just being very difficult to protect people in any absolute sense of the word. Even after identity numbers are rotated,…

Click Here to Read the Full Original Article at Al Jazeera – Breaking News, World News and Video from Al Jazeera…