Data Breach at St Andrew's Hospital Exposes Sensitive Patient Information
Article Content
- •St Andrew's Hospital confirmed a data breach affecting sensitive patient information.
- •Unauthorized access included personal details such as Medicare card numbers and healthcare identifiers.
- •The hospital is cooperating with federal agencies and has begun notifying affected individuals.
St Andrew's Hospital in Adelaide has confirmed a significant data breach affecting sensitive patient information. The breach involved unauthorized access to personal and medical data, including full names, addresses, email accounts, dates of birth, Medicare card numbers, and healthcare identifiers. The hospital has notified affected individuals and is working with federal privacy and cybersecurity agencies, including the Office of the Australian Information Commissioner and the Australian Cyber Security Centre. CEO Angela McCabe stated that the investigation has progressed to a point where direct communication with affected patients is necessary. South Australian Premier Peter Malinauskas has demanded transparency regarding the incident and is expecting updates on potential criminal implications. The exact number of individuals affected remains unclear, and forensic investigations are ongoing to determine the breach's full scope.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track Australian Cyber Security Centre in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What type of data was compromised?
How many individuals were affected?
What actions is the hospital taking?
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…