Melbourne-based financial services and advice firm hit with cyber attack


Financial services aggregate 3P Corporation has denied its data was breached in an April attack; however, hackers have published more than 200 gigabytes of internal documents and customer data online.

The Space Bears ransomware gang listed Victorian financial services firm 3P Corporation as a victim on its darknet leak site in early April, and has since published data that it claims to have stolen in the course of the attack. The hackers made the claim in an April 10 post, listing some information about its alleged victim alongside claims relating to the nature of the stolen data, which includes a database, financial documents, and “personal information of employees and clients”.

Read more…
Source: Independent Financial Adviser


Sign up for our Newsletter
The latest news and insights delivered right to your inbox.


Related:

  • Batavia spyware steals data from Russian organizations

    July 7, 2025

    Since early March 2025, our systems have recorded an increase in detections of similar files with names like договор-2025-5.vbe, приложение.vbe, and dogovor.vbe (translation: contract, attachment) among employees at various Russian organizations. The targeted attack begins with bait emails containing malicious links, sent under the pretext of signing a contract. The campaign began in July 2024 and ...

  • BERT Ransomware Group Targets Asia and Europe on Multiple Platforms

    July 7, 2025

    In April, a new ransomware group known as BERT, has been observed targeting organizations across Asia and Europe. TrendResearch telemetry has confirmed the emergence and activity of this ransomware. This blog entry examines BERT’s tools and tactics across multiple variants. By comparing its different iterations, we unpack how the ransomware group operates, how their methods have ...

  • NordDragonScan: Quiet Data-Harvester on Windows

    July 7, 2025

    FortiGuard Labs recently uncovered an active delivery site that hosts a weaponized HTA script and silently drops the infostealer “NordDragonScan” into victims’ environments. Once installed, NordDragonScan examines the host and copies documents, harvests entire Chrome and Firefox profiles, and takes screenshots. The package is then sent over TLS to its command-and-control server, “kpuszkiev.com,” which also serves ...

  • Ingram Micro says ongoing outage caused by ransomware attack

    July 7, 2025

    Ingram Micro, a U.S. technology distributing giant and managed services provider, said on Monday a ransomware attack is the cause of an ongoing outage at the company. The hack began on Thursday, after which the company’s website and much of its network went down. Late on Saturday, the company said in a brief statement that it ...

  • Australia’s Qantas says cyber criminal contacts one week after data breach

    July 7, 2025

    A cyber criminal has made contact with Australia’s Qantas following a data breach last week that exposed personal information of six million customers, a company spokesperson told Reuters on Tuesday. The hacker had targeted a call centre and gained access to a third-party customer service platform containing the customers’ names, email addresses, phone numbers, birth dates ...

  • Louis Vuitton Korea says systems breach led to customer data leak

    July 4, 2025

    A systems breach at Louis Vuitton Korea in June led to the leak of some of customer data including contact information, but did not involve customers’ financial information, the luxury brand’s South Korea unit said on Friday. “We regret to inform that an unauthorized third party temporarily accessed our system resulting in the leak of some ...