惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

E
Exploit-DB.com RSS Feed
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
Engineering at Meta
Engineering at Meta
Recent Announcements
Recent Announcements
Forbes - Security
Forbes - Security
有赞技术团队
有赞技术团队
Recent Commits to openclaw:main
Recent Commits to openclaw:main
Webroot Blog
Webroot Blog
U
Unit 42
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
Jina AI
Jina AI
C
CXSECURITY Database RSS Feed - CXSecurity.com
P
Privacy International News Feed
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
C
Cisco Blogs
H
Heimdal Security Blog
AI
AI
Schneier on Security
Schneier on Security
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
博客园 - 司徒正美
WordPress大学
WordPress大学
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
D
Docker
H
Hacker News: Front Page
小众软件
小众软件
B
Blog RSS Feed
Google DeepMind News
Google DeepMind News
博客园 - 聂微东
月光博客
月光博客
Security Latest
Security Latest
云风的 BLOG
云风的 BLOG
N
News and Events Feed by Topic
酷 壳 – CoolShell
酷 壳 – CoolShell
F
Fortinet All Blogs
The Register - Security
The Register - Security
L
LangChain Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - 叶小钗
阮一峰的网络日志
阮一峰的网络日志
C
Check Point Blog
Hacker News - Newest:
Hacker News - Newest: "LLM"
SecWiki News
SecWiki News
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
大猫的无限游戏
大猫的无限游戏
美团技术团队
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
量子位
C
Cyber Attacks, Cyber Crime and Cyber Security
The Cloudflare Blog
S
Schneier on Security

Security

Alert! Experts concerned over perfect 10 Ivanti Sentry vulnerability, and hackers are already all over it Exclusive: Ochre Health confirms patient data from its Tuggeranong clinic potentially compromised CrowdStrike joins OpenID Foundation and IDPro to push real-time AI-era access security Op-Ed: Criminal AI doesn’t need super hackers Services Australia privacy incident saw pensioner concession cards sent to the wrong recipients Student data compromised in second University of Western Australia data breach in 6 months 2 Mackay sugar mills shut down following cyber incident Privacy Commissioner reveals findings in Optus privacy investigation Parents warned after “cyber security breach” at South Australia’s Reynella East College Op-Ed: Microsoft June Patch Tuesday reveals 200 vulnerabilities Exclusive: Aussie educational publisher R.I.C Publications investigating breach after customer data published online Exclusive: 2019 claims breach of Australian lingerie retailer Exclusive: Qilin targets Qld healthcare provider, but gets a bit confused Report: Chinese activity on the rise as technology becomes the sector most targeted by cyber attacks Exclusive: Napoleon Perdis allegedly breached following threat actor claims Unfair cop: AFP warns Aussies after scam script uncovered in Cambodian fraud compound Alert! Critical Check Point zero-day exploited in the wild, Qilin ransomware already at work Exclusive: Hacker claims breach of Aussie travel agency FirstClass, 53k customers potentially impacted Exclusive: Centrelink denies hacker claims of cyber attack Australia’s data centre boom could be dire, unless we bank on renewables Over 60k GTA V players allegedly exposed in cyber attack on game cheat service US Scam Center Strike Force touts positive results of ‘Disruption Week’ Kick off! Cyber criminals are exploiting FIFA World Cup 2026 fever The AI incident response plan most organisations still don’t have Criminal VPN used by hackers taken down in international law enforcement operation Australia luxury lifestyle brand Camilla confirms cyber incident Exclusive: MMJ Real Estate allegedly hacked, 17.3k customer records potentially compromised Five billion-dollar companies in two months... the past and the future Q&A: Huntress’ Justin Allen and Reece Appleton discuss ransomware evolutions and financial threats Rapid7 appoints Wael Mohamed as CEO as company doubles down on AI-SOC strategy Exclusive: Hacker claims breach of the Australian Centre for the Moving Image, PII allegedly compromised Legal intelligence: Senior judges turning to AI for support Op-Ed: The transaction was legitimate; the crime was hidden in the system Australia is the largest target of paid ad scams, new research finds HBF Health Insurance deploys its first AI agent to members Scammer targets $900k WA land sale in overseas fraud attempt Alert! Hackers are actively exploiting a vulnerability in Palo Alto Networks' PAN-OS Australia, Japan team up on cyber talks Exclusive: Aussie workplace catering firm Hampr suffers alleged 360k record data breach Dragos expands OT reach with Phosphorus acquisition Westpac finds AI subscriptions have skyrocketed Hacked! Melbourne International Film Festival responding to cyber incidents Exclusive: VSP Solutions responding to Stormous ransomware attack ASIC posts tips on using AI for financial purposes Exclusive: Dashlane suspends multiple accounts after “brute force” cyber attack ShinyHunters allegedly behind Carnival Cruise Line cyber attack Exclusive: Accounting firm Kennedy McLaughlin confirms “cyber incident” following Qilin ransomware attack Rapid7 warns of unpatched critical-severity zero-day flaw in popular Gogs self-hosted Git service Op-Ed: Why organised crime is adapting faster than AI governance CrowdStrike expands Project QuiltWorks into cyber insurance and financial risk protection Unprepared: Australia is not ready for looming quantum cyber threat Exclusive: Victorian retail logistics firm allegedly breached by DragonForce Carnival Cruise Line confirms cyber incident that compromised personal data Proofpoint launches exploit protection platform to counter AI-driven cyber attacks In the flesh: US authorities warn of in-person cyber extortion activity FBI warns of Kali365 phishing-as-a-service targeting Microsoft 365 access tokens Exclusive: New Zealand’s Alpha Group Holdings allegedly hacked Trump Mobile confirms reports of customer data exposure, unsure whether to notify those impacted Op-Ed: Why CISOs are drowning in alerts but missing the real threat Exclusive: Marketing and merchandise firm Branded Products listed by Qilin ransomware Bank on it: AI-driven cyber crime is reshaping financial sector threats Alert! National Anti-Scam Centre and ASIC warns Aussies of fake crypto trading platforms Report: AI-driven exploitation beats phishing as most popular initial access strategy Exclusive: Victorian regional newspaper allegedly hacked by ransomware group Exclusive: Victorian regional newspaper allegedly hacked by ransomware group Over 50% of API banking attacks happen in Asia-Pacific, report finds State Library of NSW responding to April cyber intrusion Microsoft patches pair of Microsoft Defender zero-days following active exploitation EU wins global cyber security competition following digital partnership with Australia Report: Rapid7 warns AI-driven attacks are accelerating vulnerability exploitation Warning! Hackers spotted exploiting poorly patched SonicWall SSL VPN appliances 7-Eleven confirms cyber attack following ShinyHunters claims Busted! Vulnerability remediation is broken, a new report says Exclusive: US fintech firm OpenAI is using for linking bank accounts to ChatGPT discloses years-long cyber incident Thales and Google Cloud launch sovereign cloud operation in Germany Australian Signals Directorate warns of device code phishing activity targeting Microsoft 365 users US banking regulators pause cyber exams to allow Mythos patching Barracuda partners with CyberCert to simplify SMB1001 compliance for Australian SMEs Op-Ed: The reality of data-centric security and attribute-based access control Cyber fraud attacks up 17%, new findings reveal Exclusive: INC Ransom claims cyber attack on Australian engineering service company Op-Ed: To pay, or not to pay… That is the existential ransomware question Cyber Insurance for Small Business: When Getting Hacked Stops Everything Operation Ramz: INTERPOL arrests 201 in MENA region cybercrime operation Exclusive: Australian College of Business Intelligence investigating Qilin ransomware claims Exclusive: Major cleaning and facility services firm confirms third-party cyber incident Sentenced: 35-year-old Melbourne man jailed over phone porting scam Exclusive: Bluize confirms cyber incident, launches investigation US cyber agency warns of active exploitation of Microsoft Exchange Server spoofing vulnerability Three scammers charged following gold bullion purchase using scam profits Exclusive: Qilin ransomware group claims responsibility for Generation Life hack Exclusive: Hospitality IT provider allegedly breached by Qilin Exclusive: Tassie hospitality group confirms CMD Organization ransomware attack 80% of Aussies organisations face identity attacks, survey finds British Airways allegedly breached as hackers claim to have stolen pilot data Q&A with Adam Meyers: “It's going to be an absolute bloodbath.” Act now! Cisco patches ‘perfect 10’ Cisco Catalyst SD-WAN Controller vulnerability AI revolution? CVE disclosures jump by up to 500% for some vendors Report: Business email compromise attacks surged dangerously in April Kick-off! 2026 FIFA World Cup to be a prime target for scammers, cyber criminals
Exclusive: NSW government pours cold water on ransomware claims
David Hollingworth · 2026-06-17 · via Security

Nova ransomware actor claims hack of a state government, but the only evidence provided is “publicly available and historical”, the executive director of Cyber Security NSW has said.

Exclusive: NSW government pours cold water on ransomware claims

The Nova ransomware gang recently listed the state government of NSW as a victim on its darknet leak site, claiming to have exfiltrated “sensitive data from network”. The government’s top cyber security officer, however, is not having a bar of it.

“Cyber Security NSW is aware of a query, which is being looked into by public sector agencies,” Marie Patane, NSW chief cyber security officer and executive director Cyber Security NSW, told Cyber Daily regarding the hacking claims.

You’re out of free articles for this month

To continue reading the rest of this article, please log in.

“At this stage, there is no evidence of any sensitive information being accessed.

“The only sample files provided are publicly available and historical information.”

Indeed, Nova did share several files by way of evidence of a network compromise. The files are PDFs of regional topographic maps featuring NSW government letterhead and a set of maps outlining emergency response programs across the state.

The latter dates back to 2013, and the full dataset is apparently 200 gigabytes.

Since its initial 15 June leak post, Nova is now claiming to have had some interest from an unnamed third party who wished to purchase the data.

“Got offre [sic] to sell the data with 704k USD, we are not ready to sell the data yet, we looking for negotiation with the company,” Nova said more recently.

Who is Nova?

First emerging in April 2025, Nova is responsible for 140 leak posts in total, with 25 alone in May 2026.

The group styles itself as a ransomware-as-a-service group, splitting any ransom payments with affiliates based on their performance. The lowest split is 75/25, with the bulk going to affiliates, while better performers can take advantage of a 95/5 split.

On its leak site, the group outlines its affiliate program in Russian, Chinese, and English.

“Nova will provide Guide, CVEs exploits in news section, Logs Checker service, Tools (customised and Paid tools for free), and Lot of things that help to up your skills and make success attacks,” the group said.

Nova’s leak site also features a “blacklist” of banned affiliates, which is largely in Russian, suggesting that language is the hackers’ first.

This is the first time the group has claimed an Australian victim. Most of Nova’s victims hail from the United States, France, Brazil, Spain, and Indonesia.

It is hardly unknown for ransomware actors to either mistake their victims or make grander claims about their activity than the data can back up.

Most recently, the ThreeAM ransomware group claimed to have compromised the Australian Medical Council (AMC), which the AMC strenuously denied, while the data that has been published appears to belong to a single Victorian healthcare provider.

Cyber DailyWant to see more stories from trusted news sources?
Make Cyber Daily a preferred news source on Google.

David Hollingworth

David Hollingworth has been writing about technology for over 20 years, and has worked for a range of print and online titles in his career. He is enjoying getting to grips with cyber security, especially when it lets him talk about Lego.