Scores
  • Premier Cup FT Riverside FC2 Northgate United1
  • Premier Cup LIVE 67' Harbor City1 Westfield Rovers1
  • Premier Cup FT Oakmont0 Lakeside Athletic3
  • Premier Cup 20:45 Port Ashby Kingsbridge
  • Basketball League FT Eastvale Tigers88 Summit Hawks84
  • National League Sat 15:00 Redwood Rangers Silverton Stars

Breach at neighboring country’s security service exposed thousands of staff records

An internal review seen by News. says intruders spent eleven weeks inside a personnel system, raising fears for officers working under cover.

Dim server room with blue status lights and a laptop on a cart, its screen glowing out of focus Higgsfield AI Video: YouTube

In the video at the top of this page, our security correspondent walks through what is known about the breach that has shaken the internal security service of a neighboring country, and explains why officials on both sides of the border are worried about what comes next.

The service confirmed on Monday that it had suffered what it called a serious intrusion into its systems. It did not say what was taken. But an internal review, a 34-page document seen by News., shows that the attackers spent about eleven weeks inside a personnel database holding records on roughly 14,000 current and former employees.

According to the review, the exposed files include names, home addresses, phone numbers and emergency contacts. For several hundred staff members, they also contain internal assignment codes that could reveal which unit an officer works for, including teams that operate under cover.

How the intruders got in

The review traces the breach to a remote-maintenance account belonging to an outside contractor that serviced the agency’s payroll software. The account was protected by a password alone, without a second login step, and connected through an older network gateway that had been scheduled for replacement more than a year ago.

Add News to your preferred sources on Google.

Trust and transparency

Published
Updated
Author
Amelia Owens
Revision history
  • — Story updated.
  • — Article first published.

If you spot an error, let us know. We publish corrections clearly and visibly.

Comments 4

Write a comment

Join the discussion

Sign in or create a free account to comment.

Sign in Create free account

  • Elena M.

    Eleven weeks undetected is the part that should worry every agency still running contractor logins without MFA.

  • Jonas K.

    Do we know if officers working under cover were among the exposed files, or only headquarters staff?

  • Priya S.

    The review was leaked to the press before families were briefed. That sequencing feels like another failure.

  • Marc T.

    Remote-maintenance accounts with a password alone should have been retired years ago. This was preventable.

More news

In other news…

More news