Medibank Data Breach

           Medibank Data Breach Australia 

  • Date: October 2022 (ongoing impacts in 2024)

  • Records Stolen: 9.7 million (nearly all Medibank & ahm customers)

  • Data Exposed:
    ✓ Names, birthdates, addresses
    ✓ Medicare/ID numbers (for some)
    ✓ Health claims data (diagnoses, procedures)
    ✓ Credit card details (for international students)

How It Happened

  • Cause: Hackers stole an IT contractor's credentials, then moved through Medibank's network undetected.

  • Ransom Demand: Hackers (linked to Russia) demanded $10M AUD. Medibank refused to pay.

  • Leak: In November 2022, hackers dumped stolen data on the dark web in staged releases.