Phishing & Ransomware Attacks Explained: What the ADT Breach Means for Your Business
Show Links
This week’s episode dives into two major cybersecurity incidents that show just how easily businesses can be compromised.
First, we unpack how hackers accessed over 5.5 million ADT customer records through a phishing attack targeting an employee—proving that even the biggest security companies aren’t immune. Then, we explore the rise of ransomware groups like ShinyHunters, targeting major global brands and threatening to leak sensitive data.
Major Stories Covered
- ADT data breach via phishing (5.5 million customers impacted)
- Ransomware and data leak threats targeting Zara, Carnival, and 7-Eleven
Key Takeaways
- Cybersecurity is no longer optional—it’s essential for business survival.
Sources & Further Reading
- ADT Customers Breached MSN News
- Zara/Carnival/7Eleven Ransomware Cybernews.com Article
Episode Transcript
Cybercriminals are getting smarter—and faster. This week alone, we’ve seen hackers access data from millions of customers through something as simple as a phishing email, global brands hit by ransomware attacks, and warnings of massive data leaks tied to well-known companies like Zara, Carnival, and 7-Eleven.
What’s clear is this—these attacks aren’t just targeting big corporations. They’re exposing a bigger issue: businesses are still relying on people and processes that aren’t built to withstand modern cyber threats. And if it can happen to companies with massive budgets, it can absolutely happen to yours.
Welcome to the Don’t Be A Sitting Duck Podcast, I’m Leigh Kefford—let’s dive in.
Let’s start with the first story.
Hackers have reportedly accessed data on over 5.5 million ADT customers after successfully phishing an employee. ADT, one of the largest security companies in the world, confirmed that threat actors gained access through compromised credentials.
Here’s what happened and why it matters.
This wasn’t a technical hack. No firewall was broken. No system vulnerability exploited. Instead, attackers tricked an employee into giving up their login details—likely through a phishing email or fake login page. Once inside, they were able to access sensitive customer data.
This highlights a major problem—your biggest vulnerability isn’t always your technology, it’s your people. Phishing attacks are designed to look legitimate, and even trained staff can fall for them.
TAKE ACTION:
- First, implement phishing-resistant security like multi-factor authentication—especially number matching or app-based approvals, not just SMS codes.
- Second, invest in ongoing security awareness training. Not once a year—continuously.
- And third, monitor user behaviour. If an account suddenly logs in from a different location or starts accessing unusual data, you need systems in place to catch that early.
A wave of ransomware and data leak threats has emerged, with a group known as ShinyHunters allegedly targeting major brands including Zara, Carnival, and 7-Eleven. These attacks are often followed by warnings that stolen data may be released or sold online.
Here’s what’s happening and why it matters.
Ransomware groups are no longer just encrypting data—they’re stealing it first. This is called double extortion. Even if a company restores from backup, attackers can still threaten to leak sensitive data publicly.
For businesses, this changes the game completely. It’s no longer just about recovering systems—it’s about protecting your reputation, your customers, and your compliance obligations.
TAKE ACTION:
- Start by assuming breach—not just prevention. Ensure you have proper endpoint detection and response in place, along with 24/7 monitoring.
- Lock down access using Zero Trust principles—only give users access to what they need.
- And critically, test your incident response plan. If something happens tomorrow, does your team know exactly what to do?
- Also, review your backups. Are they immutable? Are they tested regularly? Because in ransomware scenarios, your backup is your last line of defence—but only if it actually works.
The key takeaway from both of these stories is simple.
Cybersecurity is no longer about IT—it’s about business survival.
Whether it’s a phishing email or a ransomware attack, the impact is the same: downtime, financial loss, and damaged trust.
If you’re relying on outdated systems, one-off training, or assuming “it won’t happen to us,” you’re already at risk.
That’s a wrap for today’s episode! Want more cybersecurity insights? Head over to sittingduck.com.au for show notes, resources, and the latest updates. Thinking about your business security? Here’s what to do next: Book your free Empower Systems Assessment to uncover vulnerabilities and learn how to strengthen your defences. Listen to my audiobook, Sitting Duck – The Phone Call You Don’t Want to Receive—a real-world look at Business Email Compromise. Available now on Spotify and leading audiobook platforms.
Until next time—stay safe, stay informed, and don’t be a sitting duck!
This podcast was produced by National PC, delivering expert cyber security services in Townsville and Cairns through our Empower Managed IT solutions—secure, reliable, and built for North Queensland businesses.

