Breach, Channel partners, Content

Second Singtel Business Unit Discloses Cyberattack

Search Hacked warning on laptop Concept of privacy data being hacked and breached from internet technology threat. 3d renderring.

Two Singtel business units have disclosed cyberattacks, though the two attacks appear unrelated. Also, it's unclear if Trustwave – an MSSP unit owned by Singtel – is assisting with the cleanup.

The latest disclosure involves Dialog Group, an Australia-based IT services firm that Singtel's NCS acquired in March 2022.

Here are key takeaways from Dialog's statement regarding the incident:

  • Dialog experienced a cybersecurity incident on September 20, 2022 in which a third party illegally accessed its servers. The company shut down the servers as a preventative measure and restored them within two business days.
  • On October 7, Dialog found out that a small sample of its data, including some employee personal information, was published on the dark web.
  • Dialog has notified relevant authorities about the incident.
  • The incident may affect up to 20 clients and 1,000 current Dialog employees and former employees, and Dialog is supporting those who may be impacted to protect them against fraudulent activity.

Dialog is "actively engaging with potentially impacted stakeholders to share information, support and advice" to address the incident, the company said.

Optus Discloses Cyberattack

Dialog's cybersecurity incident comes after Optus notified its customers about a cyberattack in September 2022. One report indicated up to nine million Optus customers may have been affected by the attack.

Optus noted the following customer information may have been compromised during the attack:

  • Names
  • Dates of birth
  • Phone numbers
  • Email addresses
  • Addresses
  • ID document numbers such as driver's license and passport numbers

Optus Stops Attack

Optus has "shut down the attack," the company indicated. It has notified the Australian Federal Police, the Office of the Australian Information Commissioner and other Australian regulators about the attack. It also is working with the Australian Cyber Security Centre to mitigate any risks to customers and hired Deloitte to conduct an independent external review of the attack.

To date, there is no evidence of any link between the Dialog and Optus cyberattacks. Investigations may be completed to provide additional insights into the cyberattacks and why they occurred.

Dan Kobialka

Dan Kobialka is senior contributing editor, MSSP Alert and ChannelE2E. He covers IT security, IT service provider business strategies and partner programs. Dan holds a M.A. in Print and Multimedia Journalism from Emerson College and a B.A. in English from Bridgewater State University. In his free time, Dan enjoys jogging, traveling, playing sports, touring breweries and watching football.