Addressing the Rise in myGov Account Hacks: What you Need to Know!

In recent months, there has been a troubling surge in the hacking of myGov accounts across Australia.
Beau Appleby, Partner at Prahran, has received reports from his clients regarding incidents of compromised access to their accounts. This spike in activity demonstrates the urgent need for enhanced security measures and greater awareness among users.

Beau discusses how myGov accounts can be vulnerable to hacking, and provides guidance on steps you can take to protect yourself.

myGov is a central hub for accessing various government services, including Centrelink, Medicare, and the Australian Taxation Office (ATO). The platform’s critical role in managing personal and financial information makes it a prime target for cybercriminals. Recent reports indicate that hackers are exploiting myGov’s account-linking system to gain unauthorised access to sensitive data.

The method of attack often involves “unauthorised linking,” where a fraudster links a genuine myGov account to a fake account without the user’s consent. This exploitation allows hackers to make false claims for Centrelink payments, Medicare benefits, and ATO-related tax claims, causing significant financial and personal harm.

How Hackers Exploit myGov Accounts

Hackers employ various tactics to steal personal information, including:

– Targeted Attacks: Phishing scams where attackers trick users into revealing login credentials.

– Dark Web Purchases: Buying stolen personal information from illicit online marketplaces.

– Physical Theft: Collecting information from discarded documents or stolen mail.

Scarily, once they have access, perpetrators can redirect pension payments, apply for loans, or falsely claim government support payments in the victims’ names.

Strengthening Security Measures

To combat these security threats, Services Australia has implemented several protective measures across its digital platforms.

One of the key security features that many myGov users are unaware of is the two-factor authentication (2FA) option. The myGov Code Generator app, a specific tool provided by the Australian Taxation Office, generates a six-digit code that enhances account security. Despite its availability, a significant number of users do not have this 2FA setup activated.

Two-factor authentication provides an additional layer of security by requiring a second form of verification beyond just a password. This could be a code sent via SMS, generated by the myGov Code Generator app, or an answer to a secret question. Enabling 2FA significantly reduces the risk of unauthorised access.

There are also other security measures in place, which can be found on the myGov website here

How to Protect Yourself

To safeguard your myGov account and associated services, consider the following steps:

–  Activate Two-Factor Authentication: If you haven’t already, set up the myGov Code Generator app or other 2FA methods available.

–  Use strong, unique passwords: Ensure your password is complex and not used for other accounts.

–  Stay informed: Regularly update yourself on security practices and be cautious of phishing attempts and scams.

The rise in myGov account hacks highlights the need for heightened vigilance and stronger security measures. By understanding the risks and actively utilising available security features, we can better protect our personal and financial information from cybercriminals.

For further information about using the MyGov Code Generator app, head to: Use the myGov Code Generator app | myGov