Queensland Cyber Security Department Loses $809,000 to Fraud Attack
The Customer Services, Open Data and Small and Family Business department, which sets cyber security policy for Queensland's public sector, has revealed in its latest annual report that it lost $809,000 in a July 2025 cyber attack. The department confirmed the money was taken through unauthorised access to the systems of a third-party telecommunications provider, and no payment was made to the attackers.
A department spokesperson said no government data or sensitive information was compromised, and that the attack was contained with the help of a third party engaged to mitigate further exposure. Security controls have since been strengthened. The incident highlights that even agencies responsible for setting cyber policy can be exposed through third-party suppliers rather than their own core systems.
Separately, Queensland's Transport and Main Roads Department reported reviewing more than 9,000 suspicious activities and investigating over 3,000 cyber security events in the past financial year, crediting ongoing monitoring and staff awareness training for early threat detection.