Share this @internewscast.com

Personal data of over five million Qantas customers has been leaked on the dark web after hackers followed through on their ransom threat over the weekend.
The airline was among 40 global firms linked to the cloud software giant Salesforce that had their data stolen in July.
The details that were stolen included full names, email addresses and frequent flyer details, as well as business and home addresses, dates of birth, phone numbers, gender and, in fewer cases, meal preferences. It did not contain financial information, passport details, PINs or passwords.

“With the help of specialist cyber security experts, we are investigating what data was part of the release,” Qantas said in a statement on Sunday.

The hacker collective, Scattered LAPSUS$ Hunters, threatened to release the data at 3pm on Saturday AEDT unless Salesforce paid an undisclosed ransom, which it refused to do.

The group said the data was “leaked” on Saturday, stating: “Don’t be the next headline, should have paid the ransom.”

How do you know if your data was exposed?

Qantas said it contacted all impacted customers in July and advised them on what types of personal data may have been stolen.
The airline said on Sunday it would continue to share updates on its website and through a 24/7 support line on 1800 971 541 or +61 2 8028 0534, “where customers have ongoing access to a specialist identity protection service”.

Arash Shaghaghi, a senior cybersecurity lecturer at the University of New South Wales, told SBS News customers should ensure any email communications they receive are legitimate and come from a legitimate @qantas.com address.

Breach notification services, such as Have I Been Pwned, are also evaluating the leak. Once the event is listed, people can safely check if their email was part of the breach, Shaghaghi said.
He stressed people should not attempt to search the dark web dumps themselves.
“Aside from legal risk, they’re often bait for malware and further scams,” he said.

Receiving spear-phishing attacks is another sign of exposure that people can look out for. These types of attacks use personal information to deliver “highly-targeted” fraudulent electronic communications, such as emails and texts, to trick targets into divulging sensitive information.

What action should you take?

According to Shaghaghi, there are three steps you can take to protect yourself.
Lock down your accounts. Enable multi-factor authentication on your email, banking and key online accounts immediately.

“It’s the single most effective defence against stolen data being used for account takeover,” he said.

Also, change your Qantas password and any account where that password may have been reused, ensuring each account has a strong, unique password, Shaghaghi suggested.
Another approach is to be vigilant for scams.
“Expect personalised attacks. Be wary of unsolicited emails, texts or calls claiming to be from Qantas, insurers or ‘compensation teams’,” Shaghaghi said, noting that criminals could use leaked details of the affected customers, such as date of birth or frequent flyer number, to make scams look legitimate.
He advised people to avoid clicking links in unexpected messages and instead visit the official Qantas site or app to verify account details.
Shaghaghi emphasised the importance of regularly monitoring and reporting any unusual activity, such as discrepancies in bank and credit card statements. Obtain credit reports from Equifax, Experian, and illion to check for unauthorised credit applications, he said.
If you see evidence of identity theft or fraud, report it to your financial institution and via the Australian Cyber Security Centre’s (ACSC) government portal immediately.

Follow updates from Qantas and ACSC for verified information.

What can happen to data posted on dark web?

Matthew Warren, director at RMIT University’s Centre for Cyber Security, said the data leak would potentially lead to a “second wave of scams”.

“Other criminals are going to use that information, pretending to be from Qantas, trying to elicit additional personal information or trying to say ‘We are offering compensation, please share your credit card details so we can transfer’,” Warren told AAP.
“Most Qantas customers are Australians. You’re talking about a quarter of the population.”
Shaghaghi warned people can expect “highly convincing” phishing or “Qantas refund” scams that use their real details.
“Criminals will exploit the trust that comes with accurate personal data to trick victims into revealing credit cards or login credentials,” he said.
In terms of “long game,” he said, criminals could combine data from previous breaches to build detailed identity profiles that enable loan fraud, tax-refund and other scams.

“For example, scammers used data from the [2022] Optus breach months later to file fake credit applications and contact victims pretending to be banks or government agencies,” he said.

Will victims receive any compensation?

Compensation claims were made against Optus and Medibank following major data breaches in 2022.

A complaint over the Qantas data breach has already been lodged by Maurice Blackburn with the Office of the Australian Information Commissioner, an independent national regulator for privacy and freedom of information.
The law firm has alleged Qantas breached privacy laws by failing to adequately protect customer information.
Affected customers are eligible to receive updates from the law firm and any compensation that may be sought on their behalf.
Warren said any class action will likely be challenged by Qantas on the grounds that a third party was responsible for protecting the data, and that the data was not stolen in Australia.
With additional reporting from Australian Associated Press.

Share this @internewscast.com
You May Also Like
Trump bathes in Israeli praise as final living hostages freed

Amid Release of Last Hostages, Trump Receives Accolades from Israel

He bathed in waves of adulation from Israeli leaders for more than…
Treasurer Dr Jim Chalmers at a press conference at Parliament House in Canberra on Monday 13 October 2025. fedpol Photo: Alex Ellinghausen

Treasurer Jim Chalmers Reveals Significant Adjustments in Super Policy Reversal

The federal government has unveiled significant revisions to its superannuation tax strategy.…
Four dead hostages returned to Israel with psalm and flag ceremony

Four Deceased Hostages Brought Back to Israel in Ceremony with Psalms and Flags

The coffins of the four deceased hostages have arrived in Israel, with…
Trump calls for end to 'old feuds' in Middle East peace speech

Trump urges resolution of longstanding conflicts in Middle East peace address

US President Donald Trump advocated for a new wave of unity in…
Stock image of Australian money - $100, $50 and $20 notes

New Insights Show How Many Australians Are Unintentionally Harming Their Finances

Up to 9.6 million Aussies admit one or more spending habits are…

‘Feeling Isolated’: Exploring the Often Unseen Grief Experienced by One in Three Australian Women

This article refers to early pregnancy loss. Sarah Peters was anticipating her…
New Zealand prop Nepo Laulala has brought a wealth of experience to Gloucester

Nepo Laulala’s Comeback Story: Learning from Challenges, Mentorship with Afolabi Fasogbon, and Giving Back to Gloucester

Nepo Laulala, who boasts a notable record as a 53-cap All Black…
Tears of joy as the living Israeli hostages are returned

Emotional Reunions: Israeli Hostages Safely Return Home

It was a day of mixed emotions throughout Israel. People watched with…

AFP Probes Lidia Thorpe’s Comments on ‘Burning Down Parliament House’ Remarks

Senator Lidia Thorpe is under investigation by the Australian Federal Police following…

I inquired with a mortgage broker about the buying power of a median first-time homebuyer with a 5% deposit.

Recently, mortgage broker Damian Wallace has experienced a surge in inquiries from…
Victoria's top cop has unveiled a plan to overhaul the structure of the police force in an effort to rein in the state's crime crisis.Chief Commissioner Mike Bush said a five-point proposal would see admin staff complete paperwork rather than have members spend four to six hours of their shift at their desks.

Victoria Police Unveils Significant Restructure to Combat Crime Effectively

Victoria’s top cop has unveiled a plan to overhaul the structure of…
Patients of a dentist in Sydney's south are being urged to get tested for blood borne viruses due to infection control breaches identified at the practice.

Alert for Sydney Dentist Patients Over ‘Infection Control Issues’

Patients of a dentist located in Sydney’s south are being encouraged to…