🔒breach.co.nz · the NZ & Australia breach register 🛡️ A Govern service
By sector › Other

🗂️ Other — data breaches

13 records in the other sector across New Zealand and Australia.

Other sector · leaderboard
Own the Other leaderboard
The top banner across the Other overview and every Other record — one advertiser, exclusively.
Own this leaderboard → breach@govern.co.nz
Melbourne International Film Festival
🇦🇺 Melbourne, VIC · breach 2026-05
● Disclosed
People affected
26,782 (approx)
Data taken
Names, email addresses, phone numbers, addresses, customer IDs and membership/purchase data; MIFF said no credit-card data was involved
Regulator
ACSC (ASD) notified
Trust tier
Reported
Source: Cyber Daily · View record →
Qantas Airways Limited
🇦🇺 Australia (national carrier) · breach 2025-06-30
● Under investigation
People affected
5,700,000
Data taken
Customer names, email addresses, Frequent Flyer account details, Business and residential addresses, Phone numbers
Regulator
OAIC
Trust tier
Confirmed
Source: Qantas Airways Limited · View record →
Sponsored placement
Reach decision-makers, in-feed
Native placement alongside the breaches your buyers are already reading.
Enquire → breach@govern.co.nz
Qantas
🇦🇺 Sydney, NSW (AU; NZ regulator also notified) · breach 2025-06
● Resolved
People affected
5,700,000 (approx)
Data taken
Names, email addresses, Qantas Frequent Flyer numbers, addresses, dates of birth, phone numbers, No credit-card, financial or passport data (not stored in the affected system)
Regulator
OAIC
Trust tier
Confirmed
Source: Qantas · View record →
The Fullerton Hotel Sydney
🇦🇺 Sydney, NSW · breach 2025-03
● Under investigation
People affected
Not disclosed
Data taken
As claimed by the Akira ransomware group (~148 GB): passports, driver licences, employee records, corporate documents and the credit-card details of a small number of guests
Regulator
OAIC (notified)
Trust tier
Reported
Source: Cyber Daily · View record →
Metricon Homes
🇦🇺 Australia · breach 2025
● Disclosed
People affected
Not disclosed
Data taken
Employee and customer personal information posted to a dark-web leak site
Regulator
OAIC (notified)
Trust tier
Reported
Source: Breachsense · View record →
Compass Group (Australia)
🇦🇺 Australia · breach 2024-09
● Disclosed
People affected
Not disclosed
Data taken
Employee wage declarations, international passports, driver's licences and internal documents (exfiltrated by the Medusa group)
Regulator
ACSC and OAIC notified
Trust tier
Reported
Source: Cyber Daily · View record →
Nissan Oceania
🇦🇺 Australia & New Zealand · breach 2023-12
● Resolved
People affected
100,000 (approx)
Data taken
Government identification (some Medicare, licence, passport numbers), and other personal information
Regulator
OAIC; ID Support NSW
Trust tier
Reported
Source: ID Support NSW (NSW Government) · View record →
DP World Australia
🇦🇺 Australia (national ports) · breach 2023-11
● Under investigation
People affected
Not disclosed
Data taken
Personal information of current and former employees
Regulator
National Cyber Security Coordinator; OAIC
Trust tier
Reported
Source: DP World Australia · View record →
Harcourts (Australia)
🇦🇺 Australia · breach 2023-10
● Disclosed
People affected
Not disclosed
Data taken
Names, addresses, bank details and signatures, Photo identification of prospective renters
Regulator
OAIC (notified)
Trust tier
Reported
Source: InnovationAus · View record →
MediaWorks
🇳🇿 Auckland · breach 2023-05
● Under investigation
People affected
403,000 (approx)
Data taken
Names, dates of birth, contact details and competition-entry data
Regulator
NZ Privacy Commissioner
Trust tier
Reported
Source: RNZ · View record →
AA Traveller
🇳🇿 New Zealand · breach 2021-08
● Disclosed
People affected
Not disclosed
Data taken
Names, addresses and contact details (phone/email), For older records, expired credit-card numbers held on a legacy system
Regulator
NZ Office of the Privacy Commissioner (notified)
Trust tier
Reported
Source: RNZ · View record →
Air New Zealand — Airpoints
🇳🇿 Auckland · breach 2021-03
● Resolved
People affected
Not disclosed
Data taken
Airpoints member account details (names, contact and loyalty information)
Regulator
NZ Privacy Commissioner
Trust tier
Reported
Source: RNZ · View record →
Toll Group
🇦🇺 Melbourne, VIC · breach 2020-05
● Disclosed
People affected
Not disclosed
Data taken
Personal information of past and present employees, Details of commercial agreements with current and former enterprise customers
Regulator
OAIC (notified)
Trust tier
Reported
Source: iTnews · View record →
GGOVERN Tabletop Exercises · Govern house Strengthen your cyber resilience — rehearse the decisions that matter. Book a Discovery Call →