Cyber crime in Australia increased 13% in the last year
The ACSC received one report of a cyber attack every eight minutes in the last financial year


Cyber crime in Australia increased by nearly 13% in the past year as more Australians significantly increased their dependence on the internet to work remotely, access services and information, and communicate.
During the 2020-21 financial year, the Australia Cyber Security Centre (ACSC) received over 67,500 cyber crime reports, equating to one report of a cyber attack every eight minutes. This is compared to one report every 10 minutes the previous year, the organisation stated in its latest ACSC Annual Cyber Threat report.
The ACSC categorised a higher proportion of cyber security incidents as “substantial” in impact, due to an increased reporting of attacks on larger organisations and the observed impact of the attacks on the victims. The organisation said this was compounded by the increased complexity and sophistication of attackers’ operations.
It revealed that malicious actors exploited the pandemic through spear phishing emails that were associated with COVID-related topics, encouraging victims to enter personal credentials for access to COVID-related information or services.
The ACSC said that the health care sector was a significant target of ransomware attacks, with criminals hoping to “leverage critical services to increase the motivation of victims to pay ransoms”.
The assistant minister for Defence, Andrew Hastie, said that cyber is the new battleground, adding that it's a team effort and a shared responsibility to lift the nation’s cyber defences by implementing cyber security measures.
RELATED RESOURCE
The business guide to ransomware
Everything you need to know to keep your company afloat
“Malicious cyber criminals are escalating their attacks on Australians. We need all Australians to be vigilant by taking simple cyber security steps including using strong passphrases, enabling two-factor authentication, updating software and devices and maintaining regular data backups, as well as being on guard against malicious emails and texts,” he said.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Around a quarter of cyber incidents reported were associated with the country’s critical infrastructure or essential services, and the ACSC also recorded a 15% increase in ransomware reports, calling it “one of the most significant threats” to organisations. Ransom demands ranged from thousands to millions of dollars.
Malicious actors, state and criminal ones, rapidly exploited security vulnerabilities, at times within hours of public disclosure, patch release, or technical write up “particularly if proof of concept code that identified the vulnerabilities in systems was also released”.
The ACSC said that business email compromise (BEC) continues to be a major threat to businesses and government enterprises, especially as more Australians work remotely. The average loss per successful event increased to over AUD$50,600 (£26,827), over one and a half times higher than the previous year.
Zach Marzouk is a former ITPro, CloudPro, and ChannelPro staff writer, covering topics like security, privacy, worker rights, and startups, primarily in the Asia Pacific and the US regions. Zach joined ITPro in 2017 where he was introduced to the world of B2B technology as a junior staff writer, before he returned to Argentina in 2018, working in communications and as a copywriter. In 2021, he made his way back to ITPro as a staff writer during the pandemic, before joining the world of freelance in 2022.
-
Should AI PCs be part of your next hardware refresh?
AI PCs are fast becoming a business staple and a surefire way to future-proof your business
By Bobby Hellard
-
Westcon-Comstor and Vectra AI launch brace of new channel initiatives
News Westcon-Comstor and Vectra AI have announced the launch of two new channel growth initiatives focused on the managed security service provider (MSSP) space and AWS Marketplace.
By Daniel Todd
-
Latitude Financial's data policies questioned after more than 14 million records stolen
News Some of the data is from at least 2005 and includes customers’ name, address, and date of birth
By Zach Marzouk
-
Latitude hack now under state investigation as customers struggle to protect their accounts
News The cyber attack has affected around 330,000 customers, although the company has said this is likely to increase
By Zach Marzouk
-
IDCARE: Meet the cyber security charity shaping Australia and New Zealand's data breach response
Case Studies IDCARE is recruiting a reserve army to turbocharge the fightback against cyber crime not just in the region, but in the interests of victims all over the world
By Zach Marzouk
-
Australia commits to establishing second national cyber security agency
News The country is still aiming to be the most cyber-secure country in the world by 2030
By Zach Marzouk
-
Medibank bleeds $26 million in cyber costs following hack
News The company believes this figure could rise to $45 million for the 2023 financial year
By Zach Marzouk
-
TikTok's two new European data centres to address data protection concerns
News The company is under pressure to prove its user data isn’t being accessed by the Chinese state
By Zach Marzouk
-
Cyber attack on Australia’s TPG Telecom affects 15,000 customers
News It is the third cyber attack on a major Australian telco since October
By Zach Marzouk
-
Telstra blames IT blunder for leak of 130,000 customer records
News Australia’s biggest telco said that the error was due to a mismanagement of databases and not a cyber attack
By Zach Marzouk