Australian Prime Minister Scott Morrison announced that organisations across the country were being targeted by a ‘sophisticated state-based cyber actor’. The Australian Cyber Security Centre published an advisory setting out the tactics used and how to defend against them.
What happened
- Morrison said the activity targeted all levels of government, industry, political organisations, education, health, and essential service providers.
- He said the scale, nature, and tradecraft of the activity showed it was state-based, but did not name the country responsible.
- Media reports citing government sources said China was believed to be behind the campaign; China denied involvement.
- The advisory described attackers exploiting known vulnerabilities in public-facing software and using spear-phishing.
Why it mattered
The unusually public warning reflected growing concern about state-sponsored cyber activity against Australia and prompted new government investment in cyber security. It also signalled a shift towards governments speaking publicly about state-backed cyber campaigns rather than handling them quietly.
Lessons for organisations
Patch internet-facing applications quickly, enforce multi-factor authentication on remote access, and follow national guidance such as Australia’s Essential Eight or the UK’s Cyber Essentials. Share threat intelligence with national agencies and sector peers, and act promptly on published advisories.
Source: ABC News
Part of our Top stories archive of headline-making events in information security, privacy, and AI. If you would like help applying the lessons to your organisation, contact us.