SIA Medical Centre (Vic): Rhysida claims patient records; OAIC and ACSC notified
Cyber Daily (18 August 2026) reports Victorian multi-clinic operator SIA Medical Centre is investigating unauthorised access after the Rhysida ransomware group listed it on 12 August and claimed roughly 20,000 patient medical records (names, dates of birth, Medicare numbers, clinical notes, insurance and WorkCover files) plus staff identity documents, credentials, HR and banking material, offered for six bitcoin with a threatened publication date of 19 August. An SIA spokesperson said the organisation engaged cyber experts to contain the incident and assess personal information accessed; it has become aware an unknown third party named it online and published a small number of documents, is notifying those individuals, and has informed the Office of the Australian Information Commissioner and the Australian Cyber Security Centre. Distinct from other Rhysida cards on this desk (e.g. Berlin state-network).
- Product
- SIA Medical Centre (Victoria)
- Exploited in Australia?
- yes
- Patch to
- Containment and OAIC/ACSC notification underway; affected individuals being contacted as documents publish
Primary: Cyber Daily (18 Aug 2026) ยท Vendor: Webber AU data-breaches list (SIA Medical, Aug 2026)
