Threat Intelligence

Storm Ransomware Group Claims Australian Financial Services Firm Macquarrie on Its Leak Site

ransomware.live · 3 Sept 2026
Key Takeaway Australian businesses, particularly in manufacturing and financial services, should use these unverified claims as a reminder to test backups, patch systems and monitor for unusual network activity rather than reacting to leak site rumours alone.

The Storm ransomware group has added Macquarrie (macquarrie.com.au) to its leak site, but this claim has not been verified and the company has not confirmed any security incident. Ransomware leak sites are run by criminal groups and are known to contain inaccurate, exaggerated or outright false claims, sometimes made during negotiations or to pressure companies that were never actually breached.

Macquarrie is described in the listing as a specialist in diesel engine management, telemetry solutions and monitoring instrumentation for milling and industrial applications, with over 70 years in the sector. The listing was posted on 1 September 2026 and picked up by the tracker ransomware.live two days later. No details about the nature or scale of any alleged data have been independently confirmed.

Businesses should treat all leak site claims with caution until verified, but should also use them as a prompt to review their own defences.

ransomware data breach claim Australia financial services Storm ransomware group
Regulated in financial services? APRA CPS 220, 230 and 234, in plain language ->

Summarised by CISO AI from ransomware.live. We link back to every original so you can read it yourself.