Industry News

Queensland Cyber Security Department Loses $809,000 to Fraud Attack

ABC News · 30 Sept 2026
Key Takeaway Small businesses should remember that financial losses can occur through trusted third-party providers, so vetting suppliers' security practices is as important as securing your own systems.

The Customer Services, Open Data and Small and Family Business department, which sets cyber security policy for Queensland's public sector, has revealed in its latest annual report that it lost $809,000 in a July 2025 cyber attack. The department confirmed the money was taken through unauthorised access to the systems of a third-party telecommunications provider, and no payment was made to the attackers.

A department spokesperson said no government data or sensitive information was compromised, and that the attack was contained with the help of a third party engaged to mitigate further exposure. Security controls have since been strengthened. The incident highlights that even agencies responsible for setting cyber policy can be exposed through third-party suppliers rather than their own core systems.

Separately, Queensland's Transport and Main Roads Department reported reviewing more than 9,000 suspicious activities and investigating over 3,000 cyber security events in the past financial year, crediting ongoing monitoring and staff awareness training for early threat detection.

Carrying this risk through a supplier? Assessing third-party and supply chain security ->

Summarised by CISO AI from ABC News. We link back to every original so you can read it yourself.