{"id":9336,"date":"2025-12-19T10:00:30","date_gmt":"2025-12-19T10:00:30","guid":{"rendered":"https:\/\/serisec.com\/index.php\/2025\/12\/19\/university-of-sydney-hacked-students-and-staff-data-exposed\/"},"modified":"2025-12-19T10:00:30","modified_gmt":"2025-12-19T10:00:30","slug":"university-of-sydney-hacked-students-and-staff-data-exposed","status":"publish","type":"post","link":"https:\/\/serisec.com\/index.php\/2025\/12\/19\/university-of-sydney-hacked-students-and-staff-data-exposed\/","title":{"rendered":"University of Sydney Hacked \u2013 Students and Staff Data Exposed"},"content":{"rendered":"<p>    University of Sydney Hacked \u2013 Students and Staff Data Exposed<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n    <!-- no image --><br \/>\n \t<BR><br \/>\n<BR><\/BR><\/p>\n<div>\n<p>The University of Sydney has confirmed a significant <a href=\"https:\/\/cybersecuritynews.com\/soundcloud-data-breach\/\" target=\"_blank\" rel=\"noreferrer noopener\">data breach<\/a> affecting thousands of current and former staff members, as well as students and alums.<\/p>\n<p>In a message to the university community, Vice-President (Operations) Nicole Gower revealed that suspicious activity was detected in an online IT code library last week.<\/p>\n<p>While this digital storage space was meant for software development, it also contained old files with sensitive personal information.<\/p>\n<p>Hackers gained <a href=\"https:\/\/cybersecuritynews.com\/hackerone-confirms-data-breach\/\" target=\"_blank\" rel=\"noreferrer noopener\">unauthorized access<\/a> to a \u201ccode library,\u201d a place where developers store and test computer code. The university\u2019s security team detected the intrusion and immediately blocked the access.<\/p>\n<p>Although the breach has been stopped, an investigation showed that the intruders downloaded historical files. These files were likely used for testing purposes years ago but were never removed.<\/p>\n<p>Notably, the university clarified that this <a href=\"https:\/\/cybersecuritynews.com\/cyber-attack-attacking-macos-users\/\" target=\"_blank\" rel=\"noreferrer noopener\">cyber-attack<\/a> is\u00a0not\u00a0related to a separate technical issue involving student results that occurred earlier this week. The breach exposed personal details for thousands of people.<\/p>\n<p>According to the university, the stolen data includes: Names, Dates of birth, Phone numbers, home addresses, Job titles, and employment dates.<\/p>\n<p>Currently, officials state there is no evidence that the stolen data has been published online or used for fraud. However, the risk remains, and the university is <a href=\"https:\/\/cybersecuritynews.com\/network-monitoring-tools\/\" target=\"_blank\" rel=\"noreferrer noopener\">monitoring<\/a> the situation closely.<\/p>\n<p>The breach impacts three main groups, totaling over 27,000 individuals:<\/p>\n<figure class=\"wp-block-table is-style-stripes\">\n<table class=\"has-fixed-layout\">\n<thead>\n<tr>\n<th>Affected Group<\/th>\n<th>Approximate Number<\/th>\n<th>Details<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>Current Staff<\/td>\n<td>~10,000<\/td>\n<td>Employees working at the university as of September 4, 2018<\/td>\n<\/tr>\n<tr>\n<td>Former Staff<\/td>\n<td>~12,500<\/td>\n<td>Former employees who worked there as of the same 2018 date<\/td>\n<\/tr>\n<tr>\n<td>Students and Alumni<\/td>\n<td>~5,000+<\/td>\n<td>Students and graduates (mainly from 2010\u20132019), plus a small number of supporters<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/figure>\n<h2 class=\"wp-block-heading\" id=\"h-university-response-and-next-steps\"><strong>University Response and Next Steps<\/strong><\/h2>\n<p>The University of Sydney has launched a significant investigation that is expected to continue into January 2026.<\/p>\n<p>They have also <a href=\"https:\/\/www.sydney.edu.au\/news-opinion\/news\/2025\/12\/18\/notification-of-cyber-and-data-breach.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">notified<\/a> government authorities, including the Australian Cyber Security Centre and the NSW Privacy Commissioner.<\/p>\n<p>\u201cWe understand this news may cause concern, and we sincerely apologise for any distress this may cause,\u201d said Nicole Gower. Notifications to affected individuals began today.<\/p>\n<p>The university aims to contact everyone impacted by January 2026. Security experts recommend that anyone potentially affected take the following simple steps to stay safe:<\/p>\n<ul class=\"wp-block-list\">\n<li>Be Alert:\u00a0Watch out for strange emails, texts, or phone calls asking for personal info. <a href=\"https:\/\/cybersecuritynews.com\/how-to-keep-your-cell-phone-safe-from-hackers-and-scammers\/\" target=\"_blank\" rel=\"noreferrer noopener\">Scammers<\/a> often use breached data to make their messages look real.<\/li>\n<li>Change Passwords:\u00a0Update passwords for online accounts and use <a href=\"https:\/\/cybersecuritynews.com\/hackers-using-evilginx\/\" target=\"_blank\" rel=\"noreferrer noopener\">Multi-Factor Authentication<\/a> (MFA) where possible.<\/li>\n<li>Monitor Accounts:\u00a0Check bank statements and university accounts for any unusual activity.<\/li>\n<\/ul>\n<p>The university has set up a dedicated\u00a0Cyber Incident Support Form. It is offering free counseling services through Converge International for distressed staff.<\/p>\n<p class=\"has-text-align-center has-background\" style=\"background:linear-gradient(180deg,rgb(238,238,238) 94%,rgb(169,184,195) 100%)\"><strong>Follow us on <a href=\"https:\/\/news.google.com\/publications\/CAAqMggKIixDQklTR3dnTWFoY0tGV041WW1WeWMyVmpkWEpwZEhsdVpYZHpMbU52YlNnQVAB?hl=en-IN&amp;gl=IN&amp;ceid=IN:en\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Google News<\/a>, <a href=\"https:\/\/www.linkedin.com\/company\/cybersecurity-news\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">LinkedIn<\/a>, and <a href=\"https:\/\/x.com\/cyber_press_org\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">X<\/a> for daily cybersecurity updates. <a href=\"https:\/\/cybersecuritynews.com\/contact-us\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Contact us<\/a> to feature your stories.<\/strong><\/p>\n<p>The post <a href=\"https:\/\/cybersecuritynews.com\/university-of-sydney-hacked\/\">University of Sydney Hacked \u2013 Students and Staff Data Exposed<\/a> appeared first on <a href=\"https:\/\/cybersecuritynews.com\/\">Cyber Security News<\/a>.<\/p>\n<\/div>\n<p> \t<BR><br \/>\n <BR><\/BR><br \/>\n    Abinaya<br \/>\n \t<BR><br \/>\n<BR><\/BR><br \/>\n<a href=\"https:\/\/cybersecuritynews.com\/university-of-sydney-hacked\/\">Go to cyber-security-news<\/a><br \/>\n \t<BR><br \/>\n <BR><\/BR><\/p>\n","protected":false},"excerpt":{"rendered":"<p>University of Sydney Hacked \u2013 Students and Staff Data Exposed The University of Sydney has confirmed a significant data breach affecting thousands of current and former staff members, as well as students and alums. In a message to the university community, Vice-President (Operations) Nicole Gower revealed that suspicious activity was detected in an online IT [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[129,63,156],"tags":[130],"class_list":["post-9336","post","type-post","status-publish","format-standard","hentry","category-cyber-security","category-cyber-security-news","category-data-breach","tag-cyber-security-news"],"_links":{"self":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/9336"}],"collection":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/comments?post=9336"}],"version-history":[{"count":0,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/posts\/9336\/revisions"}],"wp:attachment":[{"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/media?parent=9336"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/categories?post=9336"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/serisec.com\/index.php\/wp-json\/wp\/v2\/tags?post=9336"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}