Medibank Data Breach: Hackers Demand $10 Million for Stolen Australian Health Records

The hackers uploaded a second batch of Medibank files to a dark web forum, with more sensitive details about hundreds of customers on Thursday.

Advertisement
By Agence France-Presse | Updated: 10 November 2022 14:08 IST
Highlights
  • Medibank has repeatedly refused to pay the ransom
  • It could include data on some of Australia's most influential people
  • Medibank is Australia's largest private health insurer

Medibank confirmed this week that hackers accessed the information of 9.7 million current, former clients

Photo Credit: Reuters

Hackers on Thursday demanded US$10 million (roughly Rs. 82 crore) to stop leaking highly sensitive records stolen from a major Australian healthcare company, as they uploaded yet more intimate details about customers.

Medibank, Australia's largest private health insurer, confirmed this week that hackers had accessed the information of 9.7 million current and former clients, including Prime Minister Anthony Albanese.

Advertisement

The hackers on Thursday uploaded a second batch of files to a dark web forum, with more sensitive details about hundreds of Medibank customers.

The first leaks appear to have been selected to cause maximum harm: targeting those who received treatment related to drug abuse, sexually transmitted infections, or pregnancy terminations.

Advertisement

"Added one more file abortions.csv," the anonymous hackers wrote on the forum, before detailing their ransom threat.

"Society ask us about ransom, it's 10 million USD. We can make discount...$1 = 1 customer."

Advertisement

Medibank has repeatedly refused to pay the ransom.

Profit and greed

The Medibank hack — and an earlier data breach impacting nine million customers at telecom company Optus — has raised questions about Australia's ability to repel cyber criminals.

Advertisement

Dennis Desmond, a former FBI agent and US Defense Intelligence Agency officer, said Australia was no worse "than any other high-value target or Western country".

"It's very unfortunate, but I don't think Australia is any more vulnerable than any other Western developed nation," he told AFP.

Desmond said profit-driven hackers were unlikely to single out a specific country — and were typically more interested in targeting companies holding valuable data.

"It's the data types that are of the most interest to these hackers," he said.

"The healthcare data is a huge target and personally identifiable data is high-value."

"Generally, profit and greed are the number one drivers."

Scummy criminals

The Medibank hack is likely to include data on some of the country's most influential and wealthy individuals.

Medibank chief executive David Koczkar condemned the "disgraceful" extortion tactics.

"The weaponisation of people's private information in an effort to extort payment is malicious and it is an attack on the most vulnerable members of our community."

The group behind the attack appears to be pressuring Medibank by hunting for the most potentially damaging personal information within the records.

The first records posted to the dark web forum were separated into "naughty" and "nice" lists.

Some on the "naughty" list had numeric codes that appeared to link them to drug addiction, alcohol abuse and HIV infection.

For example, one record carried an entry that read: "p_diag: F122".

F122 corresponds with "cannabis dependence" under the International Classification of Diseases, published by the World Health Organization.

Names, addresses, passport numbers, and birth dates were also included in the data.

Home Affairs Minister Clare O'Neil has described the hackers as "scummy criminals".


Are the Pixel 7 and 7 Pro the best in their segment? We discuss this on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Medibank, Medibank hack, Hackers, Hack
Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo X300 FE, iQOO 15R and More Discounted During Amazon Mega Deal Days Sale
  2. Samsung Galaxy S27 Pro's Battery May Match the One on the Galaxy S26 Ultra
  3. Vivo X Fold 6 Launch Teased; Will Arrive with 'OriginOS 6 Fold' Skin
  4. WWDC 2026 Keynote Said to Be Tim Cook's Final Appearance as Apple CEO
  5. Vivo V70 Lite 5G Silently Launched in Select Markets With These Features
  6. Infinix Smart 20 Launched in India With a 7.7mm Slim Body, Ultra Link Support
  7. Samsung Galaxy S26 FE Design, Key Charging Detail Surfaces via Database
  8. How to Watch WWDC 2026 Live on YouTube, Apple TV, and More
  1. OnePlus Turbo 6X Series Launch Date Announced Along With Key Specifications, Features
  2. WWDC 2026: Tim Cook’s Final Apple Keynote Marks the End of an Era
  3. Infinix Smart 20 Launched in India With MediaTek Helio G81 Ultimate SoC, Slim 7.7mm Profile: Price, Features
  4. Infinix Hot 70 Pro India Launch Timeline Leaked; Could Feature Dimensity 7100 Chip, 6,000mAh Battery
  5. Bitcoin Rebounds Above $62,000 as Buyers Return at Lower Prices Despite ETF Outflow Concerns
  6. Samsung Galaxy S26 FE WPC Database Listing Reveals Design, Qi2 Wireless Charging Support
  7. Apple's Foldable iPhone Seen in New Images of Dummy Units That Reveal Design
  8. Samsung Galaxy S27 Pro Leak Hints at Display Size, Tipped to Launch With 5,000mAh Battery
  9. Samsung Galaxy A27 Leaked in New Mint Colour Option Ahead of Anticipated Launch
  10. Vivo X Fold 6 Confirmed to Launch in China Soon With OriginOS 6 Fold Skin, New AI Features
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.