Personal details of over half a million Red Cross blood donors has been leaked online in a mass security breach in Australia.
The Dear Utol: Week 1 Highlights Episode 7breach meant 550,000 citizens (out of 1.3 million available records) had private information such as their address, contact details, blood type and details of previous donations posted online by an "unauthorised person."
The information compromised also includes whether or not the individual had taken drugs or engaged in "at-risk sexual behaviour" such as sex work and gay male sex.
The now-removed donor file included information as far back as 2010 and the incident has been blamed on "human error."
SEE ALSO: If you use any Yahoo services, here's what to do following the massive breachThe organisation explained that the compromised file was a back-up of the enquiry form available on the Australian Red Cross Blood Service website, with chief executive Shelly Park telling reporters on Friday "we learned that a file, containing donor information, which was located on a development website, was left unsecured by a contracted third party who develops and maintains our website."
She explained the file was taken offline and the incident is now subject to a forensic investigation.
This Tweet is currently unavailable. It might be loading or has been removed.
"I wish to stress that this file does not contain the deep personal records of people’s medical history or of their test results. We are notifying donors as early as we believe we can, and we are notifying donors today," Park said.
The Red Cross has also released a statement online explaining that they are working with cyber security organisation AusCERT to delete "all known copies" of the archive online. However, finding out exactly who was able to copy the data before it was take offline seems more challenging.
However, finding out exactly who was able to copy the data before it was taken offline seems more challenging.
"We are deeply disappointed this could happen. We take full responsibility for this mistake and apologise unreservedly," said Parks.
The data was reportedly available online from Sept. 5, 2016, until this Wednesday, when it was discovered and removed.
Security expert Troy Hunt, who runs the website Have I Been Pwned, was highly critical of the data breach online, calling it the country’s "largest ever leak of personal data."
After being "tipped off," it was Hunt who originally discovered the "1.76GB worth of data from donateblood.com.au," saying it would have been all too easy for somebody to access.
"The database backup was published to a publicly facing website. This is really the heart of the problem because no way, no how should that ever happen," Hunt said.
"There is no good reason to place database backups on a website, let alone a publicly facing one. There are many bad reasons (usually related to convenience), but no good ones."
Hunt has also used his blog to explain that the incident shouldn't mean the public stops donating precious blood to people in need. "[I] want to make it abundantly clear up front that this should notdiscourage anyone from giving blood in the future because as important as this incident is, it pales in comparison to making a donation that could save lives," he said.
If you believe your personal details may have been compromised by the Australia Red Cross data breach, you can contact them here.
Topics Cybersecurity
Macklemore's gonna piss off intolerant rugby fans with this song, and he doesn't careCongress unites in an allNow you'll know exactly why your Uber driver rated you one starGoogle Maps adds EV route planning feature that’ll be familiar to Tesla driversDating app maps where people love and hate the 'take a knee' protests the mostAmazon has a new iOS app icon designTech terms you need to know in 2021Apple warns MagSafe users with medical implants to keep a safe distanceGoogle Maps adds EV route planning feature that’ll be familiar to Tesla driversDiscord bans r/WallStreetBets server for 'hateful and discriminatory content'Stop with the 'sleeping selfie' Instagram pose. We know you're not actually asleep.Facebook claims it won't recommend political groups globallyFormer ADT employee admits he watched customers have sex for years through their camerasTerrifying 'It' nail art is popping up all over Instagram12 ways we can get Trump to focus his attention on Puerto RicoNintendo settles decadesDiscord bans r/WallStreetBets server for 'hateful and discriminatory content'Trump repeatedly called the prime minister of Spain 'president,' and everyone is confusedEverything is garbage but at least Prince Harry and Meghan Markle held hands in publicHere's a really terrible dad joke that could be your key to Tinder success The Morning News Roundup for April 21, 2014 Before You Watch Mad Men Tonight Wildlife, or Nor Woman Neither Happy Birthday, Honoré de Balzac! The Morning News Roundup for April 28, 2014 Subscribe Now, Get a Vintage Issue from 1959 Mickey Easterling and the Practice of “Extreme Embalming” Happy Birthday, Thomas Pynchon The Morning News Roundup for May 8, 2014 On Talking in One’s Sleep On Epitaphic Fictions: Ben Franklin, W. B. Yeats What We’re Loving: Archives, Architects, the Arctic Sky One Week Left to Apply for Our Writer Three Angry Women Recapping Dante: Canto 27 or Let’s Make a Deal with the Pope David Lynch on Alan Splet The Morning News Roundup for April 22, 2014 My Rayannes by Emma Straub NASA's stance on astronaut romance is complicated The Morning News Roundup for April 23, 2014
2.2922s , 8225.8984375 kb
Copyright © 2025 Powered by 【Dear Utol: Week 1 Highlights Episode 7】,Steady Information Network