惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Martin Fowler
Martin Fowler
博客园 - 三生石上(FineUI控件)
WordPress大学
WordPress大学
博客园_首页
宝玉的分享
宝玉的分享
S
SegmentFault 最新的问题
Jina AI
Jina AI
Hugging Face - Blog
Hugging Face - Blog
V
Visual Studio Blog
美团技术团队
IT之家
IT之家
罗磊的独立博客
Blog — PlanetScale
Blog — PlanetScale
Google DeepMind News
Google DeepMind News
月光博客
月光博客
Microsoft Azure Blog
Microsoft Azure Blog
H
Help Net Security
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Last Week in AI
Last Week in AI
博客园 - 叶小钗
M
MIT News - Artificial intelligence
B
Blog RSS Feed
有赞技术团队
有赞技术团队
Y
Y Combinator Blog

Security

Scope Systems confirms cyber incident, says no data loss occurred Instructure breach: ShinyHunters says ‘matter has been resolved’ Rapid7 launches Cyber GRC program to connect compliance with live risk data Australian federal budget 2026: The industry perspective Op-Ed: Microsoft May Patch Tuesday reveals 137 vulnerabilities Federal Budget 2026: The state of cyber security spending for the coming year OpenAI offers EU early access to its cyber security model Exclusive: Aussie firm Earth Systems listed by INC Ransom hacking group Op-Ed: Why Middle East tensions demand immediate action on OT security Aussie schools breach: Instructure boss “reaches agreement” with ShinyHunters to not release data Institute of Public Accountants members hit by data breach Union demands answers on Qantas AI plans 1 in 3 small businesses don't think they're a cyber target, new research finds Exclusive: Aussie toy distributor listed by M3rx ransomware Exclusive: Australian Computer Society investigating possible breach after ShinyHunters hack claims The industry speaks – part 2: World Password Day 2026 Aussie schools breach: The Instructure hack “transcends an isolated IT incident” Exclusive: Aussie car part importer Strategic Imports allegedly breached by threat actors New South Wales, other states, investigating Instructure/Canvas data breach Australian Cyber Security Centre warns of ClickFix campaign leveraging Australian infrastructure Queensland Department of Education confirms students & staff impacted by ShinyHunters data breach ACMA takes action against SpinTel & Yomojo over mobile number fraud violations The Industry Speaks, Part 1: World Password Day 2026 Qualys and Converge tie cyber insurance pricing to real-time security posture Fakeout: Iranian APT caught hiding behind Chaos ransomware activity Exclusive: Australian energy management firm allegedly breached by SafePay Real estate giant Cushman & Wakefield confirms cyber incident, Qilin and ShinyHunters claim attack CrowdStrike expands Project QuiltWorks as more partners join AI security coalition Hacked: ALS discloses cyber incident, unauthorised access to IT systems Microsoft the main target of AI phishing attacks, report uncovers
Exclusive: Data belonging to Aussie testing firm ALS Glob...
David Hollingworth · 2026-06-24 · via Security

The Aur0ra ransomware group publishes employee data, passwords, banking details, and testing records from Australian company with massive global footprint.

Exclusive: Data belonging to Aussie testing firm ALS Global makes its way to the darkweb following May incident disclosure

A newly emerged ransomware group has claimed responsibility for a cyber security incident impacting Australian testing firm ALS Global, which revealed earlier this month it was responding to “malicious cyber activity” on its network.

The Aur0ra group, which was first observed in April 2026, shared details of the incident in a June 19 leak post, which included details of the compromised data and several sets of sample files.

You’re out of free articles for this month

To continue reading the rest of this article, please log in.

According to the hackers, the complete dataset includes the home directories of up to 500 employees (which include cached credentials and personal data), hundreds of plaintext password files, scans of passports, bank account details, payroll data, and workplace injury records.

In addition, client laboratory results, analytical data, and internal research are also allegedly impacted.

The sample data includes several administrator passwords, bank account data, and the details of a salary negotiation process.

Aur0ra is threatening to publish the full data set within three days.

ALS Global has said it is aware of the hackers’ post.

“ALS is aware that a threat actor has published information online claiming it was obtained from ALS systems during the cyber incident identified in May 2026, and previously disclosed to the market,” an ALS spokesperson told Cyber Daily.

“On identifying the incident, we engaged cyber security experts to contain and investigate and have taken steps to further strengthen security controls and enhance monitoring across our environment.

“ALS has notified the Australian Cyber Security Centre (ACSC) and relevant regulators across applicable jurisdictions, and we will continue to meet all regulatory obligations.”

Who is Aur0ra?

The Aur0ra group was first observed in April 2026 and has claimed attacks against at least 19 organisations since then, with victims located in the United States, Canada, Australia, Belgium, the Maldives, France, Qatar, the United Arab Emirates, and Pakistan.

Little else is known about the group; however, it is believed that the group makes use of a Go-based malware that has been used by several threat actors since 2022, and that the group is active on several underground hacking forums.

Who is ALS Global?

The company dates back to 1863, when it began life as a small Australian chemical firm, but now operates in more than 70 countries around the world, including in Europe, North & South America, Asia, and Africa.

The company had previously revealed it was responding to a cyber incident in a June 11 filing to the Australian Stock Exchange, which had caused “temporary disruption to parts of the group’s operations”.

ALS Global provides testing solutions to a wide range of industries with a focus on sustainability. It is headquartered in Brisbane and employs more than 22,000 staff.

Cyber DailyWant to see more stories from trusted news sources?
Make Cyber Daily a preferred news source on Google.

David Hollingworth

David Hollingworth has been writing about technology for over 20 years, and has worked for a range of print and online titles in his career. He is enjoying getting to grips with cyber security, especially when it lets him talk about Lego.