Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Data Breaches

Australia’s TPG Telecom Investigating iiNet Hack

TPG Telecom has disclosed a cybersecurity incident after discovering unauthorized access to an iiNet order management system.

TPG Telecom's iiNet hacked

TPG Telecom, one of Australia’s largest mobile voice and data solutions providers, is investigating a cybersecurity incident impacting its iiNet brand.

The company revealed on Tuesday that it had detected unauthorized access to a management system designed for creating and tracking orders for iiNet services, including broadband. 

The compromised system stores names, email addresses, phone numbers, and residential addresses. More sensitive data such as payment card information, banking information, or identity document copies are not stored on the hacked system.

“At this time, the unauthorised access appears to have been contained to the iiNet order management system,” TPG Telecom said. “Early investigations suggest the unauthorised access was gained using stolen account credentials from one employee.”

The investigation is ongoing, but the company has determined that the hackers have exfiltrated email addresses, phone numbers and other types of data from the compromised system. 

The analysis conducted to date found that roughly 280,000 active iiNet email addresses and 20,000 active iiNet landline phone numbers, as well as inactive phone numbers and email addresses have been stolen. 

Advertisement. Scroll to continue reading.

The hackers also accessed approximately 10,000 iiNet usernames, physical addresses and phone numbers, as well as 1,700 modem setup passwords. 

“We do not currently have any evidence to suggest an impact to our broader systems or other customers,” TPG said. 

Related: 230k Individuals Impacted by Data Breach at Australian Telco Tangerine

Related: Connex Credit Union Data Breach Impacts 172,000 People

Related: Manpower Says Data Breach Stemming From Ransomware Attack Impacts 140,000

Related: Workday Data Breach Bears Signs of Widespread Salesforce Hack

Written By

Eduard Kovacs (@EduardKovacs) is senior managing editor at SecurityWeek. He worked as a high school IT teacher before starting a career in journalism in 2011. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join as speakers examine the various components of ASM strategy, the push to mandate continuous asset visibility and inventory tools, and the use of red-teaming, bug bounties and pen-tests in modern security programs.

Register

Explore what it takes to operationalize continuous authorization at scale, including the technical, organizational, and cultural changes required.

Register

People on the Move

Zero Networks has named Yossi Dagan as Chief Financial Officer.

Manifold has appointed Joe Sullivan to its Board of Directors.

Patrick McKinney has joined Turing as Chief Information Security Officer.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.