Australian Ransomware Wave: Law Firm, Malibu Boats, Air Services Hit
Show Links
In this episode of the Don’t Be A Sitting Duck Podcast, Leigh Kefford unpacks three Australian cyber incidents that reveal just how far attackers are willing to go:
WA Law Firm Ransomware Attack – A prominent Perth firm confirmed a breach after the Anubis ransomware gang leaked client data online, forcing systems offline and disrupting legal operations.
Malibu Boats Australia Breach – The Qilin ransomware group claims to have stolen corporate and supplier data from the luxury boat manufacturer, raising concerns about IP theft and production disruption.
- Air Services Australia Vendor Exposure – A third-party provider handling staff and operational data was compromised, exposing personal details and showing how supply-chain risks can ripple through critical infrastructure.
These cases paint a clear picture: ransomware groups are targeting trust, not just technology. Whether it’s law, manufacturing, or aviation, attackers are exploiting credentials, vendors, and human error to gain leverage. Leigh explains how these attacks unfolded, why they matter, and what actions businesses should take now to strengthen their defences.
Key Takeaways
Ransomware gangs like Anubis and Qilin are evolving their tactics — combining data theft with extortion.
Vendor and supply-chain breaches are rising sharply, even in regulated sectors.
Sensitive data remains the prime target: legal files, design IP, and personnel records.
Proactive measures — MFA, vendor risk assessments, network segmentation, and regular testing — are essential.
Security awareness and incident response planning are no longer optional, even for SMEs.
Sources & Further Reading
What To Do Next
Book your free Empower Systems Assessment → nationalpc.com.au/empower
Listen to my audiobook: Sitting Duck – The Phone Call You Don’t Want to Receive → Available now on Spotify and leading audiobook platforms
Subscribe to the Don’t Be A Sitting Duck Podcast for daily insights
Episode Transcript
Three new Australian cyber incidents are making headlines this week — a prominent Perth law firm taken down by Anubis ransomware, luxury boat manufacturer Malibu Boats Australia caught in the crossfire of a Qilin ransomware leak, and Air Services Australia investigating a data exposure tied to a third-party vendor.
From legal offices to manufacturing floors and government agencies, these attacks show no industry is immune — and they all have one thing in common: data in the wrong hands can sink trust faster than a breach notice hits the inbox.
Welcome to the Don’t Be A Sitting Duck Podcast, I’m Leigh Kefford—let’s dive in.
A well-known Western Australian law firm has confirmed a cyberattack after the Anubis ransomware group claimed responsibility and posted samples of stolen client data. The firm has since taken its systems offline and engaged cyber specialists to investigate.
Anubis ransomware operators are known for exploiting exposed remote access portals and weak credentials. Once inside, they exfiltrate sensitive data — in this case, legal documents and client records — before encrypting systems to force a payout. For law firms, this is devastating: client confidentiality is the foundation of trust, and even a temporary loss of access can halt legal proceedings.
Take Action:
If your business handles sensitive or regulated information, implement strict access controls. Disable remote desktop access from the internet, use multi-factor authentication on all accounts, and conduct regular vulnerability scans. A simple credential compromise can expose everything — and law firms are especially attractive targets for extortion.
Luxury boat manufacturer Malibu Boats Australia has reportedly been hit by the Qilin ransomware gang, which claims to have stolen corporate files and engineering data. While the company hasn’t confirmed the details publicly, the data samples released suggest operational and supplier information was exposed.
Qilin typically gains entry through phishing campaigns or compromised vendor credentials. Once in, they move laterally across networks to access file servers and exfiltrate intellectual property. For a manufacturer like Malibu Boats, the loss of design files or supplier contracts could directly impact production and competitive advantage.
Take Action:
Segment your networks — keep operational systems separate from business IT. Review supplier and contractor access, and ensure third-party connections follow your security standards. Backups and incident response drills should include not just data recovery, but communication planning — how you’ll respond publicly if attackers release stolen data.
Air Services Australia has confirmed a cybersecurity incident involving a third-party service provider responsible for handling personnel and operational data. While the breach did not disrupt air traffic systems, the compromised vendor environment reportedly exposed personal information of staff and contractors.
Initial reports point to a supply-chain breach, where attackers exploited weaknesses in a vendor’s environment. This highlights a growing risk: even if your internal systems are secure, a partner’s poor controls can expose your data. For critical infrastructure operators like Air Services, this poses national-level security concerns.
Take Action:
Conduct vendor risk assessments and require cybersecurity clauses in all supplier agreements. Monitor vendor compliance and ensure data shared with third parties is minimised or tokenised. Remember: your supply chain is only as strong as its weakest link.
That’s a wrap for today’s episode! Want more cybersecurity insights? Head over to sittingduck.com.au for show notes, resources, and the latest updates. Thinking about your business security? Here’s what to do next: Book your free Empower Systems Assessment to uncover vulnerabilities and learn how to strengthen your defences. Listen to my audiobook, Sitting Duck – The Phone Call You Don’t Want to Receive—a real-world look at Business Email Compromise. Available now on Spotify and leading audiobook platforms.
Until next time—stay safe, stay informed, and don’t be a sitting duck!
This podcast was produced by National PC, delivering expert cyber security services in Townsville and Cairns through our Empower Managed IT solutions—secure, reliable, and built for North Queensland businesses.



