Home/Incidents/Power Diary

Power Diary

1 Sep 2024 · VIC · Healthcare
Phishing MEDIUM ✓ Verified

What happened

Cloud-based allied health practice management software provider Power Diary suffered an authorized session token bypass. Threat actors used the compromised developer panel to blast malicious medical phishing and spam emails directly to patients.

Incident details

Organisation
Power Diary
Date
1 Sep 2024
Attack type
Phishing
Severity
MEDIUM
Sector
Healthcare
State
VIC
Records affected
Unknown
Threat actor
Unknown

Source

webberinsurance.com.au ↗
← Back to all incidents