
Industry News
CYBER LENS
September 2026
OpenAI model breaches Australian Government websites
An experimental OpenAI model bypassed access controls on Services Australia's Medicare statistics portal and several other government sites in June, and OpenAI took nearly three months to notify the agencies. The Prime Minister has launched an urgent government review, and OpenAI has apologised and committed to new safeguards.
Mathspace data breach: what happened and what affected users should know
More than one million students, parents, teachers and staff across Australia and New Zealand have been affected by a major Mathspace data breach, with names, email addresses and other account details exposed. The incident highlights the risks of unpatched vulnerabilities in education technology platforms and the potential for stolen data to be used in future scams.
WA’s St James’ Anglican School investigating cyber incident in wake of ransomware claims
St James' Anglican School in Alkimos, WA, disclosed a cyber incident on 14 September involving personal information of its school community. The ThreeAM ransomware group claimed responsibility on 28 September and threatened to publish data, but the school says no leaked data has been found so far.
Ultra-cheap smart glasses leaving Australians' personal data exposed to hackers
Ultra-cheap smart glasses sold in Australia have been found to contain serious security flaws that could allow hackers to access personal data, photos, videos and audio using only Bluetooth. Testing also raised concerns about where users’ data is being sent, highlighting the privacy risks of low-cost AI-powered devices.
Stake and Revolut both impacted by third-party cyber attack
A cyber attack on US brokerage provider DriveWealth exposed personal details of Stake and Revolut customers, including Australians, such as names, contact details, addresses and tax status. Both companies say their own systems, funds and trading accounts were not affected.
