Business

NZ central bank chief apologises over data breach

Adrian Orr says hack has been contained, lender now operating as usual

Updated 5 years ago · Published on 15 Jan 2021 5:20PM

NZ central bank chief apologises over data breach
Reserve Bank of New Zealand governor Adrian Orr says an independent probe will be carried out into a ‘malicious’ cyberattack revealed by the institution last weekend. – Twitter pic, January 15, 2021

WELLINGTON – New Zealand’s central bank chief today apologised for failings that allowed a “significant” and “malicious” cyberattack to occur, and ordered an independent investigation.

The Reserve Bank of New Zealand revealed the breach on Sunday, saying a third-party file-sharing service that stored sensitive information was illegally accessed.

Few details have been released since, aside from the bank saying the application at the centre of the breach was provided by US-based firm Accellion.

Governor Adrian Orr, in a statement today, confirmed that the data breach was significant, but has since been contained and the bank is operating normally, as are New Zealand’s financial institutions.

“We apologise unreservedly to all of those impacted by the breach. Personally, I own this issue, and I am disappointed and sorry.

“While a malicious third party has committed the crime, and we believe service provisions have fallen short of our agreement, the bank has also fallen short of the standards expected by our stakeholders.”

He acknowledged that “there are serious questions that need to be answered about how this incident occurred”.

“In addition to the forensic cyber investigation currently under way, we have appointed an independent third party to undertake a comprehensive general review of this incident.”

He pledged to be as transparent as possible, but said providing further details at the moment could adversely affect the probe.

In its latest report, the Computer Emergency Response Team, a government agency, said cyberattacks have increased 33% on-year in New Zealand. 

The country’s stock exchange was targeted by sustained DDoS, or distributed denial of service, attacks last August, forcing trading to be halted for four consecutive days. – AFP, January 15, 2021

Related News

Malaysia / 2mth

Banks to scrap RM1 ATM withdrawal fee nationwide from July 1

Malaysia / 3mth

Malaysian doctor couple saves passenger from allergic shock mid-flight

Malaysia / 3mth

RM19.5 million transaction to Bersatu was not illegal – Witness

Malaysia / 6mth

Ex-Army chief Hafizuddeain hit with two more money laundering charges

Business / 8mth

Court orders RHB Bank to disclose MDD guidelines to Maritime Network within 45 days

Malaysia / 8mth

Bank apologises after homeless man sprayed with water, kicked outside its branch

Spotlight

Malaysia

RM245m Penang Hill cable car project 32 per cent complete - CM

By Ian McIntyre

Malaysia

Six locals charged over alleged kidnapping of Singaporean couple in Johor

Malaysia

PM: No political, racial or religious shield for those found guilty in TH, Felda probes

Malaysia

Singapore security guard jailed 14 days, fined RM7,000 for insulting Islam

Health

Dengue cases soar 56% to 58,079 as nation records 55 deaths

Malaysia

NGOs urge BERSAMA to put Indian community agenda on political radar

By Alfian Z.M. Tahir

Health

MOH warns seniors against unproven hydrogen inhalers

Malaysia

Former Tabung Haji CEO remanded seven days as MACC RCI probe deepens

Malaysia

21 held in KLIA-Nilai crackdown on alleged online love scam syndicate

You may be interested

Business

Tey Por Yee and four others ordered to pay RM103.75m in SC civil suit

Business

Oil prices surge as US-Iran standoff, Ukraine strikes rattle global energy markets

Business

Robo.ai expects shareholders’ equity to turn positive after restructuring

By Alfian Z.M. Tahir

Business

Independent review needed, not blind denial, to address US claims – maritime expert