Cyberattack on Partnered Health Exposes Sensitive Patient Data Across 21 Australian Clinics
Australian and Allied Agencies Warn of Russian State-Sponsored Targeting of Routers and Network Devices
Australian Signals Directorate Warns Organisations to Embrace AI Model Harnesses as Cyber Threat Landscape Shifts
ClickLock: New macOS Stealer Holds Victims’ Desktops Hostage Until They Hand Over Their Password
Australian healthcare provider Partnered Health has been hit by a serious cyberattack that has resulted in the theft of sensitive patient information from 21 clinics across its national network. The breach, which the company became aware of more than three weeks before notifying affected patients on Wednesday, has compromised a wide range of highly personal data including diagnostic and pathology results, consultation notes, referral letters, home addresses, private health insurance details, and Medicare information. Clinics impacted by the breach span multiple states and territories, including New South Wales, Victoria, Queensland, Western Australia, and the ACT, with the full extent of data extracted from five additional clinics (three in WA and two in Victoria) still under investigation.
Partnered Health, which was established in 2013 and operates 60 clinics across Australia, stated that while there is no direct evidence patient records have been viewed, it notified affected patients as a precautionary measure. The company has since reported the incident to the Australian Cyber Security Centre, the Office of the Australian Information Commissioner, and law enforcement authorities. In an effort to contain further damage, Partnered Health has also obtained an interim injunction order through the NSW Supreme Court to prevent the accessed data from being published or used. The federal government confirmed it was aware of the incident, with a Home Affairs spokesperson advising that relevant agencies are engaged.
The attack raises serious concerns about the vulnerability of healthcare data in Australia, given the highly sensitive nature of the information involved. The three-week delay between the company becoming aware of the breach and notifying patients is likely to draw scrutiny from regulators and privacy advocates alike. The total number of patients affected remains unclear, as does the identity of the threat actor responsible. Partnered Health has apologised to affected patients and advised them to take precautionary steps to protect their personal information while the investigation continues.
Australia’s cyber security agencies, alongside partners from the Five Eyes intelligence alliance have issued a joint advisory warning organisations to improve the security of their routers and network edge devices in response to active targeting by Russian state-sponsored threat actors. The advisory, published by the Australian Signals Directorate’s Australian Cyber Security Centre, identifies the Russian General Staff’s Main Intelligence Directorate (GRU) Unit 26165, also tracked as APT28 or Fancy Bear, as the group responsible for the malicious activity. The campaign has been observed targeting routers across government, military, defence, transportation, and critical infrastructure sectors, with the threat actors exploiting both known vulnerabilities and weak configurations to gain persistent access to victim networks.
The advisory details that attackers are primarily leveraging poor router hygiene, including the use of default credentials, outdated firmware, and exposed management interfaces, to compromise devices and establish footholds within targeted networks. Once inside, the threat actors have been observed conducting reconnaissance, intercepting network traffic, and using compromised devices as anonymous relay points to further their operations. The advisory notes that small office and home office (SOHO) routers are of particular concern, as they are frequently overlooked in routine security maintenance and often lack the monitoring capabilities found in enterprise-grade equipment.
Organisations are being strongly urged to take immediate steps to harden their network infrastructure, including changing default credentials, disabling unnecessary remote management services, applying available firmware updates promptly, and monitoring for unusual outbound traffic. The agencies also recommend that network administrators audit their exposed attack surface and consider replacing end-of-life devices that are no longer receiving security patches.
The Australian Signals Directorate (ASD) has published a further update on the growing role of AI model harnesses in cyber security, warning that organisations must understand and adopt these tools as a matter of urgency. Building on advisories issued in April and May 2026, ASD’s latest guidance highlights that AI model harnesses, the orchestration layers built around one or more AI models that coordinate tasking, output verification, and multi-agent workflows, are proving to be as critical a determinant of cyber capability as the underlying AI models themselves. Importantly, the agency notes that organisations do not need access to the most advanced frontier AI models to mount an effective cyber defence; a well-engineered harness orchestrating mid-tier models can achieve results comparable to those of top-tier systems, lowering the barrier to entry for defenders of all sizes.
A number of significant AI harness releases have been flagged in the advisory as shaping the current landscape. Microsoft’s MDASH coordinates more than 100 specialised AI agents across multiple frontier models to discover and prove exploitable vulnerabilities end-to-end, with its findings contributing to Microsoft’s June 2026 Patch Tuesday release — the largest on record at 206 patches. Anthropic has released an open-source Defending Code Reference Harness providing structured vulnerability discovery and remediation pipelines, alongside its Project Glasswing initiative offering selected organisations access to Claude Mythos for defensive purposes. Cisco, OpenAI, and open-source project OpenHack have similarly released model-agnostic and accessible harness frameworks designed to bring AI-assisted vulnerability research into mainstream security workflows, with OpenAI also establishing a Trusted Access for Cyber partnership with Australia.
However, ASD has been clear that these capabilities are inherently dual-use where the same tools that can find and fix vulnerabilities can equally be weaponised to discover and exploit them. The agency warns that the lowering of cost and skill barriers benefits malicious actors just as much as defenders, meaning the protective advantage only holds if organisations adopt these tools at least as quickly as their adversaries. ASD has indicated it will release practical guides on integrating AI harnesses into cyber defence workflows, urging Australian organisations to begin building familiarity with these technologies without delay.
https://thehackernews.com/2026/07/new-clicklock-macos-stealer-kills-apps.html
A newly identified macOS infostealer dubbed ClickLock has been documented by Group-IB researchers, notable for its unusually aggressive and psychologically coercive approach to credential theft. Rather than silently harvesting data in the background, ClickLock deliberately makes a victim’s computer unusable, killing Finder, the Dock, Spotlight, Terminal, Activity Monitor, and major browsers every 210 milliseconds for up to 83 hours, leaving nothing on screen but a password prompt. The malware arrives via the ClickFix social engineering technique, in which victims are tricked into pasting a command into Terminal. If the victim cancels the initial fake system dialog requesting their password, the malware installs two LaunchAgents and quietly exits, only to unleash its desktop hostage loop at the next login. A second persistence mechanism runs its own kill loop for up to 34.7 days while continuously querying the Keychain for Chrome’s Safe Storage key. Crucially, Activity Monitor and Terminal are both on the kill list, preventing victims from diagnosing or stopping the attack themselves.
The payload chain is comprehensive and damaging. A successful run hands the attacker the validated macOS login password, Chrome’s Safe Storage AES key, which enables offline decryption of all saved passwords and cookies, along with browser credentials, crypto wallet files, password manager vaults, the macOS Keychain, shell history, and FileZault’s saved server credentials. Exfiltration is conducted through three Telegram bots, and the malware uses a backdoor component largely copied from GSocket, an open-source tunnelling toolkit, to establish a reverse shell without requiring dedicated command-and-control infrastructure. The orchestrator script had zero detections on VirusTotal when Group-IB analysed it, and the researchers were unable to identify the lure pages used to drive victims to the initial payload, meaning the full delivery chain remains unconfirmed. Group-IB’s telemetry has identified at least 100 targets across 33 countries since May, with more than half located in Europe.
The malware highlights the growing limitations of Apple’s mitigations against Terminal-based ClickFix attacks. While macOS 26.4 introduced warnings for suspicious Terminal paste activity, the protection only triggers for users who do not regularly use Terminal and includes a “Paste Anyway” button, leaving a significant gap. The hard block requires macOS to already recognise the specific malware, and researchers have already documented campaigns bypassing these controls entirely. Group-IB assesses the malware is still under active development.

Comments
Nothing yet. Say the first thing.
Sign in to join the conversation.