St Vincent’s Health Australia is currently addressing a cyber incident that has resulted in the theft of an unspecified amount of data. The incident was first detected on December 19, and while no further activity from the threat actor was observed since early Wednesday morning. The organization discovered on Thursday that some data had been exfiltrated.
St Vincent’s is diligently working to identify the extent of the stolen data and determine whether any additional data has been compromised. The organization has engaged expertise from various government agencies and external security experts to assist with the investigation and containment of the incident.
Despite this setback, St Vincent’s remains operational and continues to deliver essential services to its patients and clients. The National Cyber Security Coordinator has confirmed their involvement in the incident response, stating that the National Office of Cyber Security and its team are working closely with St Vincent’s, Services Australia, the Department of Health and Aged Care, and relevant state and territory agencies to coordinate a government response and mitigate any potential fallout. The Australian Cyber Security Centre is also collaborating with St Vincent’s to address the situation effectively.

