Tech Talks With Kinsoft

Tech Talks With Kinsoft

by Steven Kinnas

Gregory Jewellers Data Breach – Kairos Ransomware Claims 574GB

AI
In April 2026, the Kairos ransomware group claimed responsibility for breaching Gregory Jewellers, an Australian family-owned luxury jewellery retailer, alleging it stole roughly 574GB of data and listing the company on its dark web leak site. In this episode of Tech Talks with Kinsoft, we cover what the attackers say they took — client personal information, internal corporate records and customer details — how Kairos has been targeting Australian organisations, and the company's response as it works with specialists and notifies authorities and affected customers. Concerned about ransomware and data theft in your business? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Cyber Daily.

Last Week in Tech – Meta's 8,000 Job Cuts, Medtronic's Breach, and a $290M Crypto Heist

AI
Your Monday catch-up, with a security lens. This week: Meta cuts around 8,000 jobs to fund its AI build-out. On the breach desk it's a heavy week — Medtronic confirms a breach via an SEC filing, the Everest gang leaks two US banks through a shared vendor, North Korea-linked attackers pull off a $290M crypto heist, and ADT confirms customer data was stolen. Is a shared third-party vendor a hole in your defences? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Quartz; Axios; HIPAA Journal; TechCrunch; CM-Alliance.

ADT – ShinyHunters Vishing Breach Hits 5.5M

AI
Home-security firm ADT detected unauthorized access around 20 April 2026; the breach became public when extortion group ShinyHunters listed ADT on its leak site on 24 April with a pay-or-leak deadline. The confirmed breach affected about 5.5 million people — emails, names, phone numbers and addresses, and in a small percentage of cases dates of birth and the last four digits of SSN/Tax IDs. The attack reportedly began with a vishing call impersonating IT support to capture Okta single-sign-on credentials, then reached the company's Salesforce data. We cover the human-layer vishing risk and SSO exposure. Concerned your help desk could be social-engineered? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: BleepingComputer; BankInfoSecurity.

NSW Treasury Insider Breach – 5,600 Sensitive Documents Exfiltrated

AI
In April 2026, NSW Treasury disclosed a significant insider data breach: a staffer on its commercial team allegedly exfiltrated more than 5,600 sensitive government documents to an external server. In this episode of Tech Talks with Kinsoft, we cover how internal security monitoring flagged the suspicious transfer, the involvement of NSW Police, the arrest and charges, the confidential commercial and financial information involved, and the government's coordinated response — including that the data was recovered and public services were not disrupted. Worried about insider risk and data loss in your own organisation? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: iTnews; Cyber Daily.

Last Week in Tech – Patch Tuesday's Two Zero-Days, Rockstar's Vendor Breach, and Amazon's $11.6B Satellite Bet

AI
Your Monday catch-up, with a security lens. This week: Microsoft's Patch Tuesday fixes 167 flaws including two zero-days, Rockstar Games is breached through a third-party vendor, Amazon bids $11.6B for a satellite operator to take on Starlink, and Snap cuts a sixth of its staff citing AI. Are you patching the flaws attackers are already using? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: BleepingComputer; Krebs on Security; Tom's Hardware; TechCrunch; CNBC; Reuters.

Booking.com – Hotel-Partner Breach Fuels Travel Scams

AI
Around 13 April 2026 Booking.com began notifying customers that unauthorized third parties had accessed guest reservation data — not by breaching Booking.com directly, but by compromising hotel partner accounts (researchers point to ClickFix phishing of hotel staff, attributed to a group tracked as Storm-1865). Exposed data included booking details, names, email and physical addresses and phone numbers; financial information was not accessed. Criminals quickly used the details in convincing WhatsApp and SMS phishing referencing guests' real hotel, dates and booking references. We cover third-party and supply-chain risk and how to spot these scams. Worried about partner and supply-chain access to your data? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: TechCrunch; Help Net Security.

3P Corporation – Space Bears Claims a Melbourne Finance Firm

AI
The Space Bears ransomware group listed Melbourne financial-services firm 3P Corporation in early April 2026 (post dated 10 April; incident said to be 7 April), claiming 200 GB+ including a database, financial documents and personal information of employees and clients. 3P disputes this — it told Cyber Daily its systems stopped the attack before data was compromised. We present both sides and how to weigh contested leak-site claims. Hold sensitive client data in a small firm? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Cyber Daily; Accountants Daily.

Last Week in Tech – Anthropic's Exploit-Writing Model, Meta Goes Closed-Source, and a Critical Notebook RCE

AI
Your Monday catch-up, with a security lens. This week: Anthropic gives security partners early access to a frontier model so capable it wrote 181 working exploits on its own, Meta breaks from open-source with its first proprietary model, and Amazon and OpenAI flash eye-watering AI numbers. On security: a critical flaw in a popular Python notebook tool is exploited within hours. Patching open-source tools fast enough? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Fortune; Axios; TechCrunch; CNBC; SecurityWeek; The Hacker News; Reuters.

Foster City, California – Ransomware Halts a City

AI
On 19 March 2026, IT staff in Foster City, California identified ransomware on the city's networks. The city declared a local state of emergency and suspended most non-emergency services while 911 and police dispatch stayed functional; phone, email and online access were disrupted and government meetings moved in-person, with phone and email restored around 29 March. Officials warned that public information may have been accessed and urged anyone who had done business with the city to change passwords. We look at why small, budget-constrained municipalities are attractive ransomware targets and what resilience steps matter. Run a small council or local-government IT shop? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: GovTech; The Record (Recorded Future News).

Qilin's WA Spree – Esperance Metaland

AI
Part of the same early-2026 Qilin spree: Esperance Metaland, a Western Australian regional business, was added to Qilin's leak site on 21 February 2026. With little evidence published, the episode uses it to discuss the concentrated targeting of regional WA businesses and how to assess unverified leak-site claims calmly, plus practical defences. Worried a leak-site listing might name you next? Visit www.kinsoft.com.au to talk through your security and IT needs. Sources: Cyber Daily.
8 of 14