Australian Securities and Investments Commission says credit license applications were accessed without authorization. The Reserve Bank of New Zealand was the first to come forward as a victim of an exploit of the Accellion vulnerability. The company described the vulnerability in its File Transfer Appliance as a P0 flaw. It’s a 20-year-old product thats used for large file transfers, and a patch was released within 72 hours. The Australian Cyber Security Center, a government agency, was more specific, describing it as a SQL injection flaw.”]
Source: https://www.cuinfosecurity.com/australian-financial-regulator-hit-by-data-breach-a-15859