Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.
Please note this sub-forum does not provide professional finance advice. You should seek advice from a licensed financial advisor.

To post in this sub-forum you must have made 100 posts or have Trust status or have completed our ID Verification.

If investing please consider our affiliate link for new accounts: Sharesies.



View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 
rugrat
3108 posts

Uber Geek

Lifetime subscriber

  #2633797 11-Jan-2021 18:17
Send private message

Batman: Not mega?

 

It's Accellion.

 

Was just on 3News.




andrewNZ
2487 posts

Uber Geek
Inactive user


  #2633810 11-Jan-2021 18:50
Send private message

Accellion
Prevent breaches and compliance violations with total visibility and control over IP, PII, PHI and all sensitive content exchanged with third parties.

Hmmm...

Batman
Mad Scientist
29769 posts

Uber Geek

Trusted
Lifetime subscriber

  #2633817 11-Jan-2021 19:09
Send private message

andrewNZ:
Accellion
Prevent breaches and compliance violations with total visibility and control over IP, PII, PHI and all sensitive content exchanged with third parties.

Hmmm...

 

to me when someone claims something that's usually the opposite

 

- budget insert service = not cheap

 

- supercheap insert product = not cheap

 

- wire that never breaks = will break

 

- vacuum that sucks up bowling ball = will not

 

- we're not for profit, we're for you = we're not

 

etc

 

sorry i've walked the planet too long




BlinkyBill
1443 posts

Uber Geek
Inactive user


  #2634147 12-Jan-2021 11:47
Send private message

Ubiquiti similarly affected.


gehenna
8520 posts

Uber Geek

Moderator
Trusted
Lifetime subscriber

  #2634150 12-Jan-2021 11:51
Send private message

Apparently notified of the risk in mid-Dec and a patch was available. Unacceptable.

mgeek
122 posts

Master Geek


  #2634164 12-Jan-2021 12:05
Send private message

Accellion were notified and patched it. I don't think it's clear yet if Accellion notified users (but good grief you'd hope so!) - RBNZ statement says other users were also compromised..!


So presumably the patch wasn't applied. Unless this actually happened before the patch?


 
 
 

Move to New Zealand's best fibre broadband service (affiliate link). Free setup code: R587125ERQ6VE. Note that to use Quic Broadband you must be comfortable with configuring your own router.
freitasm
BDFL - Memuneh
79309 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2636137 15-Jan-2021 15:27
Send private message

Press release issued today:

 

 

The Governor of the Reserve Bank of New Zealand, Adrian Orr, says the recent malicious and illegal breach of a file sharing application used by the Bank is significant, and has our full attention.

 

Mr Orr says New Zealand’s financial system and institutions remain sound, and Te Pūtea Matua is open for business. The standalone File Transfer Application system that was breached has been secured and closed.

 

“We apologise unreservedly to all of those impacted by the breach. Personally, I own this issue and I am disappointed and sorry,” Mr Orr says.

 

“Our investigation makes it clear we are dealing with a significant data breach. While a malicious third party has committed the crime, and we believe service provisions have fallen short of our agreement, the Bank has also fallen short of the standards expected by our stakeholders.”

 

A detailed forensic cyber investigation is underway and the Bank is working directly with affected stakeholders whose information may have been breached.

 

“We recognise the public interest in this incident and we acknowledge there are serious questions that need to be answered about how this incident occurred and how to strengthen our systems and processes,” says Mr Orr.

 

“In addition to the forensic cyber investigation currently underway, we have appointed an independent third party to undertake a comprehensive general review of this incident. We will be as transparent and clear as possible as this progresses, and will release the review’s terms of reference shortly.”

 

“Our immediate focus is on working directly with system users and those who may have had their information compromised. It is a complex process and accuracy and security are important. As our investigations progress, we are prioritising direct engagement with institutions and individuals affected. We thank stakeholders for their patience and understanding.

 

“Be assured, we are taking action. We are working closely with public authorities and utilising international experts as we respond. We are doing so in a whole of Government framework, utilising the National Security System.”

 

“We are not in a position to provide further details on the investigation at this time as it could adversely affect the investigation and the steps being taken to mitigate the breach,” says Mr Orr.

 

Ongoing updates on the investigation process will be provided via the Reserve Bank Data Breach Response page, and email service.

 





Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 


freitasm
BDFL - Memuneh
79309 posts

Uber Geek

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2778942 15-Sep-2021 18:01
Send private message

From Privacy Commission:

 

 

The Privacy Commissioner has today issued a compliance notice to the Reserve Bank of New Zealand, triggered by a cyber-attack in December 2020. 
 
This is the first time the Privacy Commissioner has issued a compliance notice since receiving these new powers in the Privacy Act 2020. 

 

Privacy Commissioner John Edwards says, “The cyber-attack was a significant breach of one of the Bank’s security systems and raised the possibility of systemic weakness in the Bank’s systems and processes for protecting personal information.”

 

As part of the investigation into the breach the Bank engaged KPMG to undertake an independent review of its systems and processes. The review revealed multiple areas of non-compliance with Privacy Principle 5.

 

Mr Edwards says, “We are heartened by the speed and thoroughness of the Bank’s response. We were notified as soon as the cyber-attack was identified, and they have been constructive and open throughout the compliance investigation process. We are pleased to see the positive way they’ve dealt with the aftermath of the attack.” 

 

The compliance notice issued today provides a template for the Bank to report on to the Privacy Commissioner, confirming the improvements to their policies and procedures aimed to make the systems more secure. 

 

Reserve Bank Governor Adrian Orr says, “OPC’s findings are consistent with the findings and recommendations in the KPMG review. We accept these findings and take full responsibility for the shortfalls identified in our systems and processes.”

 

“We have a detailed programme of work underway to address these. This work started shortly after the data breach incident through our business services improvement programme (BSIP) which continues to be a key priority for us here at Te Pūtea Matua.

 

I would like to again thank the OPC for their support throughout this incident and the collaborative approach they have taken during their investigation.”

 

Mr Edwards says, “Our role as a regulator is to deliver better privacy outcomes for all New Zealanders, using the powers at our disposal. Where we identify issues that compromise the security of personal information, we will use our compliance powers to make sure that these risks are addressed. This compliance notice also provides a learning opportunity for the Bank, and for other agencies. We appreciate the maturity and openness the Bank have shown throughout this process, and hope that others, too, can learn from this situation.”

 

Mr Edwards says that the Privacy Act allows for the publication of compliance notices on a case-by-case basis if the Commissioner believes it is desirable to do so in the public interest.  

 

“Publishing the full details of the compliance notice might compromise some of the ongoing efforts to fully rectify the matters that have been identified. However, I have decided it is necessary to publicly acknowledge the steps being taken by the Bank, to provide assurance to the public that these issues are being addressed.”

 





Please support Geekzone by subscribing, or using one of our referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies | Hatch | GoodSync 


1 | 2 
View this topic in a long page with up to 500 replies per page Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.