Aussie Firm Skeggs Goldstien Confirms Qilin Ransomware Attack

Published:

spot_img

Investigation Underway at Skeggs Goldstien Following Cybersecurity Incident

Cybersecurity Breach Confirmed

Skeggs Goldstien, a financial services company based in New South Wales, Australia, is currently addressing a cybersecurity incident that came to light after the firm appeared on a ransomware leak site. The company acknowledged the situation following a post on June 12 from the Qilin ransomware group, which claimed to have extracted approximately 500 gigabytes of sensitive data from their systems.

Evidence of the Breach

To substantiate their claims, the Qilin group released several documents that included a signed confidentiality agreement, a completed client questionnaire, and an advisory statement. These materials were intended to demonstrate the seriousness of the breach and have raised significant concerns regarding the security of client information held by Skeggs Goldstien.

Company Response

A spokesperson for Skeggs Goldstien confirmed their awareness of Qilin’s claims, stating that the firm is actively collaborating with cybersecurity experts to conduct a thorough investigation. This inquiry is still ongoing, and the company is taking all necessary measures to understand the extent of the breach.

"It is essential for us to ensure the security of our clients’ data," the spokesperson remarked. Skeggs Goldstien has already reported the incident to critical authorities, including the Office of the Australian Information Commissioner (OAIC) and the Australian Cyber Security Centre (ACSC). Furthermore, the company is maintaining direct communication with its clients to keep them informed about the situation as it develops.

Upcoming Data Release Threat

The situation becomes more alarming with Qilin’s announcement that they intend to release the full dataset obtained from Skeggs Goldstien on June 24. This potential data dump could expose sensitive information and further complicate the firm’s efforts to mitigate the consequences of the breach.

Background on the Qilin Ransomware Group

Qilin is believed to have origins in Eastern Europe, with hackers communicating primarily in Russian on various forums associated with cybercrime. Since its emergence in August 2022, Qilin has reportedly targeted and compromised over 525 organizations, making it one of the most active ransomware groups presently operating.

Recent attacks attributed to Qilin include high-profile victims in Australia, such as Office National, which was added to their list of compromised entities as of May 30. Other notable Australian targets include MKA Accountants, freight forwarder Globelink International, and the not-for-profit community support service, Meli.

Skeggs Goldstien: Company Overview

Skeggs Goldstien operates two offices in New South Wales, located in Chatswood and Bella Vista. The firm specializes in tax and accounting services, wealth management, business advisory, and estate and retirement planning. With a focus on client trust and data integrity, the firm is working diligently to address the implications of the current cybersecurity incident while upholding the values their clients expect.

As the investigation unfolds, both clients and industry watchers will be closely observing the actions taken by Skeggs Goldstien in response to this breach, particularly in terms of their ongoing risk management strategies to protect against future attacks.

spot_img

Related articles

Recent articles

SENSOR PROXY: Tenable Releases Update for Vulnerability in Version 1.4.2

SENSOR PROXY Tenable has issued an advisory regarding a vulnerability affecting its Sensor Proxy product, specifically versions prior to 1.4.2. This advisory, numbered AV26-773...

CVE-2026-59774: Critical Gitea Flaw Allows Unauthenticated File Access

CVE-2026-59774: Critical Gitea Flaw Allows Unauthenticated File Access has been identified in the self-hosted Git platform Gitea, affecting versions 1.22.1 through 1.27.0. This vulnerability...

ChatGPT Misused by Cambodian Scam Centers for Investment Fraud Targeting Indians

ChatGPT Misused by Cambodian Scam Centers for Investment Fraud Targeting Indians. OpenAI has reported that it disrupted the use of its chatbot by cyber...

CVE-2026-18577: N-able Urges Immediate Remediation for Authentication Bypass Vulnerability

CVE-2026-18577 is an authentication bypass vulnerability that has been identified in N-central, a widely used Remote Monitoring and Management (RMM) platform by N-able. This...