Tech support scam caused massive data breach at Australian airline Qantas
ID: 67f579e9-834e-550f-8709-997499d749c0
STIX ID: report--67f579e9-834e-550f-8709-997499d749c0
Feed Name: The Register (Security)
A tech-support vishing attack on a Qantas contact-center agent in 2025 enabled attackers to link the airline's CRM to a data-extraction tool and siphon PII for approximately 5.7 million customers. The Australian Privacy Commissioner concluded Qantas had taken reasonable privacy and security measures (audits, training, role-based access) and did not open a formal investigation, though legal action and further scrutiny may continue; attribution remains unconfirmed with reports speculating Scattered Spider involvement.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
