UPDATE: Medibank confirms – Hacker is real, they have your data

Following this mornings word from Medibank that they are now dealing with a ransom demand, the company has issued a statement to the ASX which confirms the criminal does have legitimate client records of medibank customers.

Having placed their shares in a trading halt this morning, Medibank’s update to the market is also a precursor to a likely outreach to customers in line with their previous communications which have been consistent and transparent.

Unfortunately, Medibank (and AHM) had been almost clear with customers that their data was not affected. Turns out, it likely is.

To what scale or extent is still unknown, but the hacker claims to have 200GB of data, which would amount to a massive amount of customer information.

Medibank has shared the following:

  • Medibank has been contacted by a criminal claiming to have stolen 200GB of data.
  • The criminal has provided a sample of records for 100 policies which we believe has come from our
    ahm and international student systems.
  • That data includes first names and surnames, addresses, dates of birth, Medicare numbers, policy
    numbers, phone numbers and some claims data.
  • This claims data includes the location of where a customer received medical services, and codes
    relating to their diagnosis and procedures
  • The criminal claims to have stolen other information, including data related to credit card security,
    which has not yet been verified by our investigations.

Medibank CEO David Koczkar says “I unreservedly apologise for this crime which has been perpetrated against our customers, our people, and
the broader community.

“I know that many will be disappointed with Medibank and I acknowledge that disappointment. This cybercrime is now the subject of an investigation by the Australian Federal Police.

“We will learn from this incident and will share our learnings with others”.

“Medibank will remain open and transparent and will continue to provide comprehensive updates as often as we can and need to.”

Unfortunately for customers, at this time, there isn’t much you can do.

Key to your actions going forward is vigilance, keep an eye out for any suspicious emails, especially ones claiming to know about your personal health, medication or treatment.

That includes emails from your doctor or clinics, as scammers will use whatever info they have to try and trick you.

If it looks legit, call the company, or visit their website directly without clinking any email links.

Recent Posts

  • Lifestyle

John Travolta’s donated Qantas 707 begins it’s journey home to the HARS Museum in Albion Park

Getting close to a decade since John Travolta announced he was donating his stunning classic…

1 hour ago
  • Lifestyle

Russell Crowe sent an exclusive limited edition watch to this TikToker! Amazing story!

I've been watching along as I doomscroll for a few weeks now the story of…

2 hours ago
  • Lifestyle

Gozney Dome 2 Review. The Centrepiece of Outdoor Entertaining

First, I need to give a shoutout to my sister. She told Trevor no to…

1 day ago
  • Tech

AAWireless Two+ Review — wireless Android Auto and Apple CarPlay in a single, compact device

Last year, we reviewed the AAWireless Two and were impressed with how compact it was…

2 days ago
  • Product News

Destination Moon! LEGO Unveils 1,283-Piece Tintin Rocket Model

Fans of Belgian cartoonist Hergé’s creation, the intrepid reporter Tinitin, will be pleased to see…

2 days ago
  • Lifestyle

Tineco are hosting a pop-up store at Chadstone this weekend to try before you buy — also on sale now!

The world's leader in wet and dry floor cleaners, Tineco has announced its own March…

2 days ago