X
  • About
  • Advertise
  • Contact
  • Events
Subscribe to our Newsletter
  • News
    • Markets
    • Regulation
    • Super
    • M&A
    • Tech
    • Appointments
  • Podcast
  • Webcasts
  • Video
  • Analysis
  • Promoted Content
No Results
View All Results
  • News
    • Markets
    • Regulation
    • Super
    • M&A
    • Tech
    • Appointments
  • Podcast
  • Webcasts
  • Video
  • Analysis
  • Promoted Content
No Results
View All Results
No Results
View All Results
Home News Tech

Big 4 banks caught up in HWL Ebsworth hack

The list of high-profile victims of the HWL Ebsworth hack continues to grow, with Australia’s big four banks all confirming that they are clients of the Aussie law firm.

by Daniel Croft
June 22, 2023
in News, Tech
Reading Time: 3 mins read
Share on FacebookShare on Twitter

The four, made up of ANZ, Commonwealth Bank, National Australia Bank, and Westpac, have all revealed themselves as clients of HWL Ebsworth, whose systems were breached in early May, leading to an approximate 4 terabytes of data being stolen.

Of the four, NAB is the only bank that has confirmed that its data had been exposed after hackers from the ALPHV (also known as BlackCat) threat group behind the attack posted online that it had stolen data from it.

X

“We are aware that HWL Ebsworth, a law firm engaged by NAB for some legal services, has been impacted by a cyber attack,” said a spokesperson from the bank.

The bank added that while data contained by HWL Ebsworth may have been compromised, its own systems remain safe.

“NAB’s systems were not impacted and remain secure. We are working with HWLE as they continue to get more information in relation to the content of these matters.”

The other three banks have all said that they are working alongside HWL Ebsworth to determine exactly what data had been exposed, and if any of their customer’s data was at risk.

“ANZ is aware of the HWL Ebsworth (HWLE) cyber incident. ANZ’s systems have not been impacted,” said ANZ in a statement.

“ANZ is a client of HWLE for some legal matters.

“We are working with HWLE and others to understand and address the potential exposure, and we will directly contact those employees and customers who may have been impacted and need to be notified.”

The big four banks join several other major institutions as victims of the hack, with over 40 government agencies and departments including several bodies and authorities on cyber safety such as the Office of the Australian Information Commissioner (OAIC) and the Australian Federal Police (AFP) having been affected.

According to CyberCX’s director of cyber intelligence and public policy, Katherine Mansted, attacking high-profile targets such as major organisations and government is in line with ALPHV’s threat pattern of “big game hunting”.

“They’re one of the most prolific threat actors in Australia and have been for some time since they first emerged on the scene,” she told The Australian Financial Review.

“We have observed them compromise at least 14 Australian organisations and a lot of those are in the professional services sector.

“It’s been quite deliberate about the targets that it attacks; professional services in a sector that ALPHV assesses as having some pretty sensitive information that it can hold at risk.”

Ms Mansted added that ALPHV was the first threat group observed posting stolen data on the public internet rather than the dark web, in an effort to maximise the harm caused by exposing stolen data.

While ransomware demands are currently unknown, HWL Ebsworth has said that it is refusing to pay the hacking group what it’s asking.

“We take our ethical and moral duties to the community very seriously. We consider we have a fundamental civic duty to not, in any way, encourage or be seen to condone the criminal activity of extorting money by taking and threatening the publishing of other people’s data,” the law firm told the ABC.

“The privacy and security of our client and employee data remains of the utmost importance. We acknowledge and understand the impact this may have, and we are communicating closely with our clients.”

For more cyber security news, click here.

Related Posts

Janus Henderson to go private following US$7.4bn acquisition

by Laura Dew
December 23, 2025

Global asset manager Janus Henderson has been acquired by Trian Fund Management and General Catalyst in a US$7.4 billion deal....

Australian Super targets $1trn within a decade

by Adrian Suljanovic
December 22, 2025

Australia’s largest superannuation fund has announced it is targeting $1 trillion in assets by 2035, up from its current size...

The biggest people moves of Q4

by Olivia Grace-Curran
December 22, 2025

InvestorDaily collates the biggest hires and exits in the financial service space from the final three months of 2025. Movements...

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

VIEW ALL
Promoted Content

Why U.S. middle market private credit is a powerful income solution for Australian institutional investors

In today’s investment landscape, middle market direct lending, a key segment of private credit, has emerged as an attractive option...

by Tim Warrick
December 2, 2025
Promoted Content

Is Your SMSF Missing Out on the Crypto Boom?

Digital assets are the fastest-growing investment in SMSFs. Swyftx's expert team helps you securely and compliantly add crypto to your...

by Swyftx
December 2, 2025
Promoted Content

Global dividends reach US$519 billion, what’s behind the rise?

Global dividends surged to a record US$518.7 billion in Q3 2025, up 6.2% year-on-year, with financials leading the way. The...

by Capital Group
November 18, 2025
Promoted Content

Why smaller can be smarter in private credit

Over the past 15 years, middle market direct lending has grown into one of the most dynamic areas of alternative...

by Tim Warrick, Managing Director of Principal Alternative Credit, Principal Asset Management
November 14, 2025

Join our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

Latest Podcast

Podcast

Relative Return Insider: MYEFO, US data and a 2025 wrap up

by Staff Writer
December 18, 2025
After more than two decades, InvestorDaily continues to be an institution that connects and influences Australia’s financial services sector. This influential and integrated media brand connects with leading financial services professionals within superannuation, funds management, financial planning and intermediary distribution through a range of channels, including digital, social, research, broadcast, webcast and events.

Subscribe to our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

About Us

  • About
  • Advertise
  • Contact
  • Terms & Conditions
  • Privacy Collection Notice
  • Privacy Policy

Popular Topics

  • Markets
  • Appointments
  • Regulation
  • Super
  • Mergers & Acquisitions
  • Tech
  • Promoted Content
  • Analysis

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited

No Results
View All Results
NEWSLETTER
  • News
  • Markets
  • Regulation
  • Super
  • M&A
  • Tech
  • Appointments
  • Podcast
  • Webcasts
  • Promoted Content
  • Events
  • About
  • Advertise
  • Contact Us

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited