Tech Talks With Kinsoft

Tech Talks With Kinsoft

di Steven Kinnas

Seagrass Hospitality – Kairos Ransomware Hits Aussie Restaurants

IA
On 12 February 2026, Seagrass Boutique Hospitality Group (Rhodes, NSW — operator of The Meat & Wine Co, Hunter & Barrel and other brands) identified unauthorised access to part of its IT network, with the Kairos ransomware gang claiming the attack and alleging it stole about 50 GB of data. Seagrass declined further comment. We discuss why hospitality groups — with payment systems and large customer and staff datasets — are attractive ransomware targets, and sensible defences. Worried about protecting venues or a hospitality group? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Cyber Daily.

Last Week in Tech – OpenAI Retires GPT-4o, China-Linked Telco Espionage, and an Ivanti Zero-Day Hits Brussels

IA
Your Monday catch-up, with a security lens. This week: OpenAI pulls GPT-4o and a swag of older models out of ChatGPT, pushing everyone to GPT-5.2. On the security desk it's a heavy one — the EU Commission and Dutch government are breached through Ivanti zero-days, China-linked espionage hits all four of Singapore's telcos, Dutch telco Odido loses data on 6.2 million customers, and a malicious Outlook add-in slips onto the Microsoft Store to steal thousands of accounts. Worried about edge-device and email-add-in risk in your own environment? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: TechCrunch; OpenAI; The Record; BleepingComputer.

Victorian Department of Education – January 2026 data breach

In January 2026, a major cyberattack targeted the Victorian Department of Education, compromising the personal data of over 665,000 current and former students. Unauthorized parties accessed a central database containing student names, email addresses, and encrypted passwords across more than 1,500 government schools. Experts attribute the scale of the breach to a "flat network" architecture that lacked internal barriers, allowing intruders to move easily between systems. In response, authorities deactivated affected accounts, reset passwords, and launched a formal investigation via the Office of the Victorian Information Commissioner. While sensitive details like home addresses were not stolen, the incident serves as a critical warning for organizations to adopt "Zero Trust" security models and improve data segmentation. This overview is presented by Tech Talks with Kinsoft; for expert assistance with your security and IT needs, please visit www.kinsoft.com.au.

Scotch College Data breach August 25

Welcome to Tech Talks with Kinsoft. In this episode, we examine the escalating cyber threats facing Australian education, highlighting the significant August 2025 breach at Melbourne’s prestigious Scotch College which exposed sensitive family and alumni records. We also discuss the massive January 2026 attack on the Victorian Department of Education, impacting over 665,000 students across 1,700 schools. We analyze the critical privacy obligations schools face under the Privacy Act and the urgent need for robust data breach response plans. To discuss your security and IT needs, please go to www.kinsoft.com.au.

Unpacking the January 2026 Prosura Data Breach

Welcome to Tech Talks with Kinsoft! In this episode, we unpack the massive January 2026 cyberattack on Prosura, an Australian car rental insurer. Hackers breached their internal IT systems, exposing the sensitive personal data of roughly 300,000 customers, including driver's licenses, travel destinations, and policy details. We discuss the aggressive tactics used by the threat actors, who shockingly contacted customers directly before putting the stolen data up for sale on a public leak forum. Join us as we explore the security gaps that led to this incident and the crucial lessons businesses must learn regarding incident response and access control. For your security and IT needs, visit www.kinsoft.com.au

Lessons from the Regis Resources Ransomware Incident

Welcome to Tech Talks with Kinsoft. In this episode, we explore the recent cyber incident targeting major Australian gold producer Regis Resources. We discuss how their layered security controls successfully thwarted the Lynx ransomware group, preventing data exfiltration and operational downtime. Beyond this high-profile case, we examine a growing national trend: why Australia's most damaging cyber breaches are increasingly stemming from simple access failures—such as exposed credentials and forgotten passwords—rather than sophisticated hacks. Finally, we highlight why ransomware is no longer just a "big company" problem, but a critical risk for organizations of all sizes. To discuss your security and IT needs, visit www.kinsoft.com.au.

Inside the Australian Defence Supply Chain Cyberattacks

In this episode of Tech Talks with Kinsoft, we explore the alarming cyberattacks hitting Australia's defence supply chain. We unpack the massive 800GB data breach at IKAD Engineering by the J Group ransomware gang, who lurked undetected in the company's network for five months. We also examine the Cyber Toufan group's leak of sensitive technical details regarding the ADF's $7 billion Redback infantry fighting vehicle program. Join us as we discuss how these critical supply chain vulnerabilities threaten national security and what it means for your business. To discuss your security and IT needs, visit www.kinsoft.com.au today

Non-Production Does Not Mean Non-Critical: The Uni Sydney Hack

In this episode of Tech Talks with Kinsoft, we examine two significant Australian cyber incidents: the University of Sydney data breach and the iiNet customer exposure. We discuss how attackers exploited a development code library to access the personal data of over 27,000 staff and students, and how stolen credentials led to the compromise of 280,000 iiNet customer records. We break down the critical lesson that non-production environments are not non-critical and offer actionable advice to reduce your risk. Visit www.kinsoft.com.au to discuss your security and IT needs.

447GB Exposed: The Kelly Legal Breach and Emerging November Threats

In this episode of Tech Talks with Kinsoft, we examine the critical cyber security incidents impacting Australian businesses in November 2025. We discuss the massive data breach at Queensland firm Kelly Legal, where the INC Ransom group claims to have exfiltrated over 447GB of sensitive client and HR data. We also analyse the serious supply chain compromise affecting the Redback infantry fighting vehicle program, which exposed confidential technical blueprints. Join us for this essential update on the evolving threat landscape. Visit www.kinsoft.com.au to discuss your security and IT needs.

Diagnosis Compromised: The Human Cost of Medical Data Leaks and the Privacy Fix

This episode investigates the systemic vulnerabilities plaguing Australian healthcare, anchored by a critical analysis of the Medibank breach that exposed 9.7 million records. We explore a proposed "entropy-aware" Differential Privacy framework designed to mask sensitive attributes like diagnosis codes through noise injection while maintaining analytical utility. The discussion extends to the recent Point Lonsdale Medical Group phishing incident and a Reddit user’s account of familial privacy violation, illustrating the human cost of data leaks. Finally, we assess why the healthcare sector struggles with low cybersecurity maturity and how technical innovation can ensure regulatory compliance.
11 di 14