[PSA] Data Breach - Cape Finance Mortgage Broker

I've used them from Ozb deal in the past for my homeloan that I've supplied heaps of documentation / IDs and I only got the email below today 20th Jan. 2023 on Friday night after 6pm.

We are writing to inform you of a targeted cyber incident that occurred at Cape Finance on 5 January 2023 which could have resulted in some of your  personal information being accessed by an unauthorised third party.  
Upon discovery of the unauthorised activity, we immediately took steps to prevent further access and have conducted a full security review to identify whether any additional security measures could be introduced.
Following a detailed investigation, it has been discovered the unauthorised party went to extraordinary lengths to contravene the security measures put in place by a major third-party service provider which, in turn, enabled them to gain limited access to our records. 
Following a review of our systems, it has been confirmed that for the short period in which they had access, the unauthorised party had the ability to access client data comprising of the following categories:
·         Contact information
·         Financial information
·         Government-issued identity document information
As a result we have decided to notify all of our clients in writing that this issue has occurred.

Related Stores

capefinancegroup.com.au
capefinancegroup.com.au

Comments

  • +7

    extraordinary lengths to contravene the security measures

    The extraordinary lengths
    Database: “Are you sure you want to access everything?”
    Hacker: ‘Yes’

  • +3

    Having a look at Google maps street view, I dont expect Cape Finance to have much of a security system or even an IT system. Probably just a couple of brokers running around with local account laptops and uploading all the files to shared drive.

    • If that's the telltale sign to lookout for, I'm looking at this other broker recommended by Ozb,
      with their office location advertised as below …

      Contact:-
      Office based in Paradise… Airlie Beach
      “Don’t dream your life, but live your dream.” - Mark Twain

      Is that more convincing or no …

    • +1

      excel spreadsheet they email each other from time to time, and id document files on the desktop

  • +1

    Looks like copy paste from medibank optus etc.
    Yeah… must be someone at their side uses very simple password, or with google remembering all password at laptop, and laptop got stolen.

    • Looks like at this age, the excellent customer service and being highly recommended by others just doesn't cut it anymore if data security is a joke.

      I wonder how many others have their homeloan through a broker or direct with lenders.

      There is no standards to compare data security handling / compliance between different brokers/lenders.

      Next time a broker post a deal here, data security would be the 1st thing to enquire about if any.

  • +1

    What I really love is they "have conducted a full security review to identify whether any additional security measures could be introduced."

    The time to do such a review was before January 5th. Muppets.

    • I guess they missed the reminder from Optus and Medibank.

Login or Join to leave a comment