Wednesday 22 May 2019

The Abbott-Turnbull-Morrison Federal Government still hasn't made personal health data secure


Since about 2014 it has been known that the personal details of Medicare cardholders has been for sale on the dark web.

Despite an April 2014 report by the Australian National Audit Office that the Consumer Directory - which contains all Medicare customer records - was not secure and that cardholder details were for sale, the federal Liberal-Nationals Coalition Government does not appear to have comprehensively acted act on the issue of database security.

It was not unknown that Medicare cardholder details were being used fraudulently.


When contacted by the mainstream media in July 2017 the Liberal MP for Aston and then Minister for Human Services Alan Tudge denied any prior knowledge of cardholder details being offered for sale.

It was not reported that at the time if he was asked about instances of Medicare cardholder details being used to commit fraud or identity theft.

In August 2017 eHealth Privacy Australia was telling the Senate Finance and Public Administration Committee that:

• There are fundamental weaknesses in both the HPOS (Medicare card data) and My Health Records systems, which make them vulnerable to illegal access.

• Those weaknesses mean that fraudulent users of the systems can assume the identity of legitimate users to gain illegal access.

• It is not sufficient to mitigate these weaknesses in the My Health Records system.

By 1 January 2019 IT News was reporting that Medicare cardholder details fraudulently obtained had been used to access an individual’s My Health Record:

The number of data breaches involving the My Health Record system rose from 35 to 42 in the past financial year, new figures show.

The Australian Digital Health Agency (ADHA) said in its annual report [pdf] that “42 data breaches (in 28 notifications) were reported to the Office of the Australian Information Commissioner” in 2017-18.

As with previous years, the agency said that “no purposeful or malicious attacks compromising the integrity or security of the My Health Record system” were reported in the period.

Of the 42 breaches, one was the result of “unauthorised access to a My Health Record as a result of an incorrect Parental Authorised Representative being assigned to a child”, the agency reported.

A further two breaches were from “suspected fraud against the Medicare program where the incorrect records appearing in the My Health Record of the affected individual were also viewed without authority by the individual undertaking the suspected fraudulent activity”, ADHA said.

In addition, 17 breaches were the result of “data integrity activity initiated by the Department of Human Services to identify intertwined Medicare records (that is, where a single Medicare record has been used interchangeably between two or more individuals)”, the agency said. [my yellow highlighting]

Despite this knowledge the Abbott-Turnbull-Morrison Government has still not grasped the nettle, because on 16 May 2019 The Guardian reported:

Australians’ Medicare details are still being illegally offered for sale on the darknet, almost two years after Guardian Australia revealed the serious privacy breach.

Screenshots of the Empire Market, provided to Guardian Australia, show the vendor Medicare Machine has rebranded as Medicare Madness, offering Medicare details for $US21.

Other vendors charge up to $US340 by offering fake Medicare cards alongside other fake forms of identification – such as a New South Wales licence.

The Medicare Madness listing suggests the Medicare details “of any living Australian citizen” have been available since September 2018.

Guardian Australia first reported patient details were on sale in July 2017, verifying the listing by requesting the data of a Guardian staff member and warning that Medicare card numbers could be used for identity theft and fraud.


The report did not identify the source of the Medicare data leak but suggested that people could use publicly available information about healthcare providers – including their provider number and practice location – to pass security checks and obtain a Medicare card number through the Department of Human Services provider hotline.

The review panel warned the “current security check for release of Medicare card information provides a much lower level of confidence than the security requirements” for Health Professional Online Services, the portal that allows providers to make rebate claims.

An IT industry source, who refused to be named, said the re-emergence of the data breach brings into question government assurances around the privacy of medical data “when those responsible cannot even manage the security of Medicare cards”.

The source said there is a “concerted effort at the moment by law enforcement to curtail darknet market activity”.

“In reality the darknet markets, while disrupted momentarily when their sites are brought down, easily relocate and continue business.”

Darknet markets can simply private message existing clients with a new link to resume business elsewhere. [my yellow highlighting]

Thus far the federal government has failed to recognise where Medicare cardholder details may be being accessed unlawfully, as this 2 August 2018 ABC online article indicates:

Privacy experts have warned that the system opens up health records to more people than ever before, thereby increasing the threat surface — the number of vulnerabilities in a system — dramatically.

Dr Bernard Robertson Dunn, who chairs the health committee at the foundation, says once the data is downloaded into the health system, the My Health record system cannot guarantee privacy.

"Once the data has been downloaded to, for instance, a hospital system, the protections of the hospital system apply, and then the audit logs apply to the hospital system — not to My Health record.

"So there is no way the Government would know who has accessed that data, and it is untraceable and untrackable that that access has occurred."

Tuesday 21 May 2019

A NSW Northern Rivers perspective on the 18 May 2019 Australian federal election results


A political and social perspective in thirteen tweets........












Monday 20 May 2019

Australia's hard right prime minister runs to Trump for a 'good dog' pat on the head


From The Daily Examiner on 19 May 2019:

US President Donald Trump and Israeli Prime Minister Benjamin Netanyahu have welcomed Australia’s surprise Liberal-led Coalition election win.

With 75 per cent of the vote counted yesterday, Scott Morrison’s Liberal Nationals were two seats short of the 76 needed for a majority in parliament but will be returned to government.

“Congratulations to Scott on a GREAT WIN,” Trump said on Twitter.

The White House said he and Morrison had spoken by phone and “pledged to continue their close co-operation on shared priorities”.

Sunday 19 May 2019

Dystopia 2019



Australian Federal Election Results 2019 at 
https://tallyroom.aec.gov.au/HouseDefault-24310.htm.

Yamba rock pool reopens


Yamba Rock Pool, May 2019

Clarence Valley Council, media release, 16 May 2019:

Yamba ocean rock pool repairs get the thumbs up

BARRY Cribb well remembers teaming up with half a dozen of his mates, arming themselves with brooms and shovels and cleaning out the Yamba ocean rock pool by hand.

That started about 40 years ago and only finished when the then Maclean Shire Council offered to take over the maintenance.

It was a big relief for Barry and his team, but the Yamba resident retains a strong interest in the pool and still swims there regularly – daily when conditions suit.

And he’s pretty chuffed about the latest work Clarence Valley Council has done there.
For the past few years the pool has leaked and in the past 12 months had to be closed on several occasions because the water had fallen to a level that meant it was unsafe for swimming.

Council completed repairs to the pool more than a month ago and there appear to be no signs of leaks.

“It looks and feels nice and clean now,” he said.

“I’ve been swimming in there every day since it re-opened and everyone reckons it is great. It’s not losing any water now.”

Despite some interruptions to the work from Cyclone Oma, the work was completed on time and substantially under budget.

The savings have allowed the council to undertake further improvements at the pool site, including the replacement of ageing timber railings with stainless steel and the widening of concrete paths.

Project manager, council’s Justin Menzies, said working in a marine environment in sometimes unpredictable conditions provided plenty of challenges, but thorough planning and having contingencies meant they could be resolved with little impact on the project.

“We put a lot of effort into project management to make sure we deliver projects on time and within budget and we couldn’t be happier with the result,” he said.

“We’ve got pool users giving us the thumbs up each time we go there and that is really rewarding. That’s what you do it for.”

Mr Menzies said observations since the work was complete suggested the pool would stay clean for much longer following the works.

He said that before the repairs started, holes in the pool allowed sand to penetrate the base and the pool would be dirty with sand and decaying seaweed within a few days after cleaning.

“That’s not happening now and the only sand getting into the pool is coming over the top,” he said.

“That means it’s clean much longer and is much more attractive for users.

“It is a great result for pool users and Yamba.”

Saturday 18 May 2019

Where to follow the Australian federal election vote count on Saturday 18 May 2019



Australian Electoral Commission (AEC) Virtual Tally Room House of Representatives - from 6pm with progressive ballot tally all night

Australia Votes: ABC Election Night Live website - from 6:00pm

ABC News live stream online or televised on Channel 24 

ABC News on Twitter

ABC Radio National - from 6pm

You Ask, We Answer ABC online - from 6pm onwards

Cartoons of the Week




Cartoons by Cathy Wilcox


Cartoon by Jon Kudelka