Supply chain ⛓ Supply Chain

The Australian P&N Bank Third-Party Breach (January 2020)

📅 2020-01-01 🏢 Not disclosed
Primary Source ↗

Incident Details

Aussie P&N bank suffers data breach. The Australian P&N Bank reported a data breach that exposed detailed and sensitive financial information on an unspecified number of customers. Access was gained on December 12 to the bank’s customer relationship management system, which is operated by a third-party hosting firm, was undergoing an upgrade. Details on how it was accessed wer. The Australian P&N Bank reported a data breach that exposed detailed and sensitive financial information on an unspecified number of customers. The information included name, address, email, phone number, customer number, age, account number and account balance. Additional pieces of what P&N considers non-sensitive data, such as interactions between the bank and its customers, was also located on the breached system.

Technical Details

Initial Attack Vector
Compromise of third-party service provider / vendor relationship
Vendor / Product
Not disclosed
Supply Chain Attack
✅ Confirmed third-party / vendor compromise

Timeline

  1. 2020-01-01 Breach occurred
  2. 2020-01-16 Publicly disclosed