Increase in attacks to Australia's critical infrastructure

Share
A new report from the Australian Cyber Security Centre reveals ransomware incidents have increased by 15% as cybercrime losses hit $33bn.

A quarter of cyber incidents reported to Australian security officials over the past year have targeted critical infrastructure and essential services, including health care, food distribution and energy according to the Australian Cyber Security Centre (ACSC) which has disclosed a new report. The ACSC says the report "highlights significant targeting both domestically and globally, of essential services".

The report also showed ransomware attacks disclosed to the ACSC increased 15% in the 2020-21 financial year, when compared with the previous financial year.

The ACSC, which is part of the Australian Signals Directorate, received more than 67,500 reports of cybercrime of all types in 2020-21, or one every eight minutes. That compared with one every 10 minutes the previous year.

The report says businesses, individuals and other entities had incurred more than $33bn in total losses from cyber crime throughout the year.

Cybercriminals sought to exploit the pandemic by encouraging recipients to enter personal credentials to access Covid-related information or services, while unnamed foreign governments targeted the health sector seeking “access to intellectual property or sensitive information about Australia’s response to Covid”. 

The ACSC responded to about 1,630 cybersecurity incidents in 2020-21, or an average of 31 cybersecurity incidents a week.

“Approximately one quarter of reported cybersecurity incidents affected critical infrastructure organisations, including essential services such as education, health, communications, electricity, water and transport,” the report says.

A breakdown of the severity of cyber incidents in 2020-21 shows there were 14 cases in which federal government entities or nationally significant infrastructure suffered the removal or damage of sensitive data or intellectual property.

The report does not name most of the affected entities, although it includes several case studies, including a March 2021 ransomware attack against the Victorian public health service. That attack “affected four hospitals and aged care facilities, and resulted in the postponement of elective surgeries”.

Share

Featured Articles

Cisco Talos: Tracking Ransomware’s 35 Year Evolution

Martin Lee, Technical Lead for Security Research, Cisco Talos highlights how the ransomware landscape has shifted across the last 35 years

Resilience: Firms Fail to Grasp Cyber Financial Impact

Resilience and YouGov survey reveals 74% of mid to large UK businesses face cybercrime, while ransomware understanding lags behind data breach concerns

SonicWall and CrowdStrike Unite for SMB Security Service

SonicWall partners with endpoint protection specialist CrowdStrike to offer managed detection and response capabilities through managed service providers

FS-ISAC CISO Talks Cyber Strategies for Financial Providers

Cyber Security

Darktrace Reports 692% Surge in Black Friday Cyber Scams

Cyber Security

KnowBe4 Launches AI Agents to Counter Phishing Threats

Technology & AI