Qantas Airways Cyberattack Update: Customer Data Released, Security Measures Enhanced

Qantas Airways has confirmed that data stolen during a major cyber incident in July has been released by cybercriminals, marking another blow to the Australian consumers as the country continues efforts to contain the data breach impact. The airline said the Qantas Airways cyberattack stemmed from unauthorized access to a third-party customer service platform used by one of its contact centers.

While flight operations and safety systems were unaffected, personal data belonging to millions of customers was compromised.

Stolen Data Under Court Protection

Qantas Airways obtained a court order from the New South Wales Supreme Court to stop anyone from viewing, sharing, or publishing the stolen data. The injunction applies to all parties, including third-party platforms, and aims to prevent any further spread of the information.

“With the help of specialist cybersecurity experts, we are investigating what data was part of the release,” Qantas said in a statement. The company added that it continues to work closely with the Australian Cyber Security Centre (ACSC) and the Australian Federal Police (AFP) as investigations progress.

The Qantas Airways airline has strengthened its internal systems by implementing additional security measures, expanding team training, and enhancing network monitoring and threat detection capabilities.

5.7 Mn Customers Impacted During Qantas Airways Cyberattack

The cyberattack exposed personal data belonging to an estimated 5.7 million Qantas customers. In response, the airline promptly notified all affected individuals about the nature of the compromised information. According to Qantas, there have been no further changes to the scope of impacted data since the initial disclosure, which involved some personal information but did not include credit card details, personal financial information or passport details.

To support affected customers, Qantas has established a 24/7 support line and continues to offer access to identity protection services. Customers can reach the dedicated helpline via 1800 971 541 or +61 2 8028 0534 and find updates on qantas.com.

Leadership Pay Cut Reflects Accountability

In its annual report released in September, Qantas announced a 15-percentage-point reduction in short-term bonuses for its Group CEO Vanessa Hudson and senior executives. The board said the decision was made to acknowledge the impact of the cyberattack on customers and to reinforce accountability at the highest level.

“Despite the strong performance, the Board decided to reduce annual bonuses by 15 percentage points as a result of the impact the cyber incident had on our customers,” said Qantas Group Chairman John Mullen. “This reflects their shared accountability, while acknowledging the ongoing efforts to support customers and put in place additional protections.”

For Hudson, the cut translates to a reduction of approximately AUD $250,000 in her overall pay package.

Advisory for Customers

Qantas Airways has urged customers to remain cautious of potential scams or phishing attempts. The airline advised travelers to:

  • Stay alert to suspicious emails, messages, or calls claiming to be from Qantas.
  • Use two-factor authentication wherever possible.
  • Keep updated with the latest online threats through the Australian Cyber Security Centre and Scamwatch.
  • Never share passwords, financial details, or booking references with unsolicited contacts.

Customers who believe they have been targeted by scammers are encouraged to report incidents to Scamwatch or seek guidance through IDCARE and the Office of the Australian Information Commissioner.

Samiksha Jain

Samiksha Jain is a seasoned journalist with 9 years of experience, passionately unraveling the intricate world of cybersecurity for The Cyber Express. Her expertise shines through in her compelling articles on data breaches and cyberattacks. When she's not writing, you can find Samiksha exploring new destinations or enjoying playful moments with her 2-year-old. Balancing the demands of journalism and motherhood, she embodies a dynamic blend of curiosity and care.

Recent Posts

Indian Agency Arrests Key SIM Card Supplier of a Broader Cyber Fraud Network

India’s top intelligence agency arrested a suspected key conspirator accused of supplying fraudulently obtained SIM cards to cybercriminal networks, as…

2 hours ago

UAE Cyber Security Council Warns 1 in 4 Public Files Contain Sensitive Personal Data

Simple steps such as enabling encryption, managing access, and reviewing shared content can significantly reduce the risk of data exposure.

5 hours ago

Vercel Incident Linked to AI Tool Hack, Internal Access Gained

The Vercel security incident highlights the importance of securing third-party integrations and enforcing strict controls on access and data classification.

7 hours ago

Cisco Patches Critical ISE Vulnerabilities Allowing Remote Code Execution Attacks

Despite the lack of active attacks, the severity of the Cisco ISE vulnerabilities and the Webex flaw places them in…

7 hours ago

The Cyber Express Weekly Roundup: Crypto Breaches, State-Linked Schemes, and Platform Exploits

The Cyber Express weekly roundup highlights crypto hacks, fraud schemes, dark web exploits, and latest cyberattacks.

3 days ago

75,000 DDoS-for-Hire Users Reprimanded as Authorities Seize Dozens of Domains

Law enforcement agencies across Europe, the United States, and other partner nations cracked down on the commercial DDoS-for-hire ecosystem, targeting…

3 days ago

This website uses cookies. By continuing to use this website you are giving consent to cookies being used.

Read More