🇦🇺 again
25,000 ACMI customers just had their names, emails & birth dates stolen, not because #ACMI was hacked, but because the ticketing provider Ferve was.
Your data is only as safe as your vendor's weakest link.
Ask the hard questions.
#DataBreach https://t.co/wrqLDInyJc
Another Australian accounting firm, Kennedy McLaughlin, hit by Qilin ransomware. Client financial/banking data on dark web.
Qilin has claimed 1,882 victims globally.17 Australian victims in 2026 alone.
Did you ask your accountant about their security? https://t.co/K0KP7ZgL44
🚨 Your PC will restart multiple times next week. That's 15 years of security debt coming due.
Ignore it, and your system security permanently degrades.
Are you ready? Or do you need help ensuring your endpoints are compliant?
#SecureBoot#WindowsUpdate https://t.co/pyeZA52en5
Attackers don't need your users anymore.
Vulnerability exploitation is now #1 (38%).
Patch window: 5 days.
When did you last VERIFY your patch cadence?
Assumptions don't count.
#GRC#RiskManagement
https://t.co/4TtABo9MlY
👩🏿💻🚨 That "Approve" button just became a backdoor.
CVE-2026-41615: Attackers steal your session token when you tap "Approve".
Then they own your tenant.
Check your Authenticator version. NOW.
Android: 6.2605.2973
iOS: 6.8.47
#MFA#TokenTheft
More 👇 https://t.co/00FTXLxdMP
🤖🚨 ASD warning:
Device code phishing bypasses #MFA using legit @Microsoft feature.
No passwords stolen.
No vulnerability exploited.
Just unknown misconfiguration.
Check your Conditional Access policies.
Now ⏰
@CyberGovAu@NIST#M365#CyberSecurity
https://t.co/9taaEtiTSj
"A supplier's cyber security is your cyber security."
Stephanie Crowe, Head of the ACSC
Canvas breach proved it. 275M records gone.
Audit your vendors. Not their promises. Their controls.
@CyberGovAu#SupplyChainSecurity
https://t.co/0FajhjYSae
🤖 Insurance firm ii-A lost 20% revenue. Not because they were hacked. Because their IT provider of 10+ years was breached.
Trust is not a control.
When did you last audit YOUR partners?
#SME#SupplyChainRisk
https://t.co/aV4t4pI46X
⚠️ New scam alert:
Scammers impersonate the ATO using fake myGov login pages.
▪️Stop, don't click any links.
▪️Delete the message.
▪️Log in directly via the ATO app or website.
Spread the word.
#ScamAlert#ATO#CyberSecurity https://t.co/XeJvZL2R6d
The @IMFNews just warned: AI‑powered cyber attacks could trigger a global financial crisis.
Frontier #AI models can now find vulnerabilities at machine speed, even in non‑expert hands.
If a global bank can fall, who is auditing the resilience of yours?
https://t.co/2VZ1WsRSty
Cybersecurity isn't IT with a different label. It's a distinct discipline. AI‑powered threats won't wait for voluntary compliance.
Advisories aren't enough.
Australian Government must mandate assurance.
Full story👇
#CyberSecurity#Governance https://t.co/SjwkpGrtuH
ShinyHunters hits Canvas.
Now Australia's peak tech body, the ACS, is investigating whether its own data was caught in the blast radius.
We keep trusting. We keep assuming.
Where is the independent assurance?
@ACSnewsfeed#CyberSecurity#ShinyHunters
❗ 1 in 3 Aussie small businesses have been hacked.
60% have no plan.
79% of sole traders are unprepared.
Avg. 2 hours/month on prevention.
"Low hanging fruit" for AI-powered attacks.
Time to act is now.
Full Story 👇
#CyberSecurity#SmallBiz https://t.co/htb6LyyQCj
🤖😊 AI humour:
Who are we - CEOs.
What problem are we solving - we'll figure that out later!
What do we want - AI
Al to do what - We don't know
When do we want it - Right now!
Is your organisation going through a similar situation?
Canvas LMS breach disrupts Australian schools. Again, a "trusted" vendor fails.
No audits.
No accountability.
Just disruption.
When'll orgs stop assuming resilience & start verifying?
Who is next?
Tax Accountants
Real Estate
Travel Agencies
#CyberResilience#ThirdPartyRisk
Iranian APT MuddyWater is hiding as a ransomware gang to phish credentials through @Microsoft Teams.
They use screen-sharing and MFA device enrollment to completely bypass security.
Misconfigured Collaboration tools are the new attack surface.
https://t.co/26UdYWv3dO
🚨 Breaking: Every QLD student & teacher since 2020 – names, emails, school locations – stolen.
ShinyHunters hit the Canvas platform.
9,000 institutions. 200M+ people.
Your third‑party vendor is your security perimeter.
#CyberSecurity#DataBreach
https://t.co/KpYXVWYrVC
🏠 Aussie home builder under attack.
Champion Homes confirms 44GB of customer & payroll data stolen by DragonForce #ransomware.
The data is already on the dark web.
Is your data secure?
Read story 👇
#CyberSecurity https://t.co/fEjLyBaSsD