Powered by MOMENTUM MEDIA
the adviser logo
Lender

What should brokers do following Firstmac hack?

by Annie Kane11 minute read

Following on from the alleged release of Firstmac customer data on the dark web, the non-bank has outlined what steps brokers should take next.

In April, non-bank lender Firstmac said that it had experienced a “cyber incident” in which an unauthorised third party accessed the IT system.

Ransomware gang EMBARGO had taken responsibility for the hack and claimed it had stolen more than 500 gigabytes of data, including “full databases, source codes, [and] sensitive customer data”.

It allegedly held Firstmac to ransom, publishing a ransom demand on its darknet leak site with a ransom deadline of 8 May.

==
==

On 9 May, the group has now uploaded a data package of over 500 gigabytes to its leak site.

Our sister brand Cyber Daily said that EMBARGO had posted several sample documents and files and customer data.

Screenshots loaded to the leak site show customer addresses, details of loan and financing details, balance and account information, and email addresses. The email addresses and phone numbers of several of Firstmac’s C-suite and IT team were also allegedly leaked.

A Firstmac spokesperson said that they were aware an “unauthorised third party has claimed to have published a subset of Firstmac data externally”.

“We are urgently investigating the nature and extent of the data that has been published,” they said on Friday (10 May).

The spokesperson said that the non-bank has already conducted a comprehensive review of impacted files and “[is] notifying impacted individuals directly, in accordance with [its] regulatory obligations”.

“If our customers do not hear from us, that is because our ongoing investigation has not discovered any evidence they are affected by this incident,” the spokesperson said.

“We are also communicating with our partners, to ensure they have the information they need.”

When asked by The Adviser what brokers should be advising their Firstmac clients, they said: “Should brokers receive any inquiries from customers related to this incident, we ask them to direct these queries promptly to Firstmac so we can address their questions promptly.

“If customers have received a letter from Firstmac, we recommend brokers refer these customers back to the instructions in this letter, which clearly outlines the support available, including IDCARE, and steps they can take to protect themselves from scams or phishing attempts.”

Firstmac said that there had been no operational impact on business operations and that its systems were “secure”, with business continuing “as per normal.”

The finance industry has been a prime target for cyber crime in recent years, with high-profile attacks impacting non-banks such as Latitude (and resulting in subsequent court cases from impacted customers) as well as the major banks.

Hackers have also been targeting small businesses, often seen as “low-hanging fruit” as they generally have less stringent defences than larger corporates, making them the easiest to access.

Brokers wishing to brush up on their cyber security protocols can do so in The Adviser’s Hacking the hack attack feature here.

[Related: Hacking the hack attack]

firstmac signage ta oza w

AUTHOR

Annie Kane is the managing editor of Momentum's mortgage broking title, The Adviser.

As well as leading the editorial strategy, Annie writes news and features about the Australian broking industry, the mortgage market, financial regulation, fintechs and the wider lending landscape.

She is also the host of the Elite Broker, New Broker, Mortgage & Finance Leader, Women in Finance and In Focus podcasts and The Adviser Live webcasts. 

Annie regularly emcees industry events and awards, such as the Better Business Summit, the Women in Finance Summit as well as other industry events.

Prior to joining The Adviser in 2016, Annie wrote for The Guardian Australia and had a speciality in sustainability.

She has also had her work published in several leading consumer titles, including Elle (Australia) magazine, BBC Music, BBC History and Homes & Antiques magazines.  

JOIN THE DISCUSSION

You need to be a member to post comments. Become a member for free today!
magazine
Read the latest issue of The Adviser magazine!
The Adviser is the number one magazine for Australia's finance and mortgage brokers. The publications delivers news, analysis, business intelligence, sales and marketing strategies, research and key target reports to an audience of professional mortgage and finance brokers
Read more