iTnews
  • Home
  • News
  • Technology
  • Security

AAPT confirms data breach

By James Hutchinson
Juha Saarinen
Jul 26 2012 1:21PM
Follow google news

Anonymous' victim ISP revealed.

AAPT has confirmed a breach of systems held at an external service provider that saw some of the telco's "business customer data" compromised.

AAPT confirms data breach

The telco told iTnews this morning that it was investigating if a potential data breach, after hacking group Anonymous threatened to release 40 GB of data from an Australian internet service provider.

Some 3.5 GB of data is alleged to be from AAPT.

"It was brought to our attention by our service provider, Melbourne IT, at approximately 9.30pm last night that there had been a security incident and unauthorised access to some AAPT business customer data stored on servers at Melbourne IT," the telco said in a statement.

"AAPT immediately instructed Melbourne IT to shut down the servers when we were notified of the incident."

Anonymous had threatened earlier this week to release the data but was reportedly working to minimise potential harm to individual customers.

The compromised data is suspected to be a 40 GB backup of an Adobe Cold Fusion database, accessed through a well-known vulnerability.

AAPT, which primarily serves business customers after selling its residential base to iiNet for $60 million in 2010, said that preliminary investigation indicated two "historic" data files with "limited personal customer information" had been compromised.

"Further, the servers on which the files were stored have not been used or connected to AAPT for at least 12 months," the company said.

iTnews has since confirmed an older version of AAPT's business website ran on Cold Fusion. Newer pages do not appear to be based on the same systems.

iiNet chief regulatory officer Steve Dalby said the company had found no link between the residential customer information acquired from AAPT and that compromised by the breach this week.

"iiNet understands the possible breach by Anonymous group of Melbourne IT systems and access to AAPT business customer data does not relate to the residential customers we acquired from AAPT in 2010," he said in a statement.

Material from the breach has been uploaded to the web, according to online chat logs from the group. However, this could not be independently confirmed by iTnews at the time of publication.

The threatened release of data appears to be in protest against Australia's proposed data retention regime, which would mandate ISPs to collect and hold transmission data from its users for up to two years.

One hacker told iTnews' sister publication SC Magazine that the data was stolen "to prove a lack of security at ISPs and telcos to properly protect the information" that would be stored under the Federal Government's data retention draft policies.

"We are undertaking a thorough investigation into the incident with Melbourne IT and the relevant authorities to establish exactly the type and extent of data that has been compromised, how the security incident happene dand what further measures are required to prevent any future incidents," AAPT said.

"AAPT will be contacting any impacted customers as soon as possible."

Anonymous earlier hinted that AAPT was the provider in question on Twitter: "Apparently rumors are spreading much already. Let us point the attention to this link: en.wikipedia.org/wiki/AAPT #OpAustralia" it tweeted.

More to come...

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:
aaptanonymousispsecuritytelco

Related Articles

  • Apple bumps up security in fresh operating system releases Apple bumps up security in fresh operating system releases
  • Meta accuses NSO Group of violating court order by WhatsApp spear phishing Meta accuses NSO Group of violating court order by WhatsApp spear phishing
  • Researchers build self-replicating AI worm with BYO LLM Researchers build self-replicating AI worm with BYO LLM
  • Anthropic opens Claude Mythos Preview AI program to Australia Anthropic opens Claude Mythos Preview AI program to Australia
Join our WhatsApp Channel

Partner Content

Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment
Promoted Content Onel Consulting Strengthens Its White-Glove Services With Strategic COO Appointment
AI is delivering business value today
Partner Content AI is delivering business value today
Agile isn’t the problem: why projects still fail, and what’s missing
Partner Content Agile isn’t the problem: why projects still fail, and what’s missing
Scalable AI solutions: secure delivery
Scalable AI solutions: secure delivery

Sponsored Whitepapers

Agile in the AI Era: why projects still fail
Agile in the AI Era: why projects still fail
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
When Technology Becomes the Blocker: Unlocking Real Outcomes from AI and Cloud
High-volume data sources for AI-driven security analytics
High-volume data sources for AI-driven security analytics
How healthcare organisations can get more value from cloud
How healthcare organisations can get more value from cloud
1 in 3 companies lose SaaS data. Here’s how to prevent it
1 in 3 companies lose SaaS data. Here’s how to prevent it

Events

  • iTnews State of Security Breakfast iTnews State of Security Breakfast
  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
  • Security Exhibition & Conference Security Exhibition & Conference
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Anthropic opens Claude Mythos Preview AI program to Australia

Anthropic opens Claude Mythos Preview AI program to Australia

Defence says Palantir is "sandboxed" in its environment

Defence says Palantir is "sandboxed" in its environment

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Microsoft backs down on legal threats against 0day disclosing researchers

Microsoft backs down on legal threats against 0day disclosing researchers

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.