EARF
United States Flag
United StatesNorth America
Japan Flag
JapanAsia
Italy Flag
ItalyEurope
Netherlands Flag
NetherlandsEurope
United Kingdom Flag
United KingdomEurope
EARFSTAGE
EARFSTAGEFestivals and live sets
METAR | EARF
EARFWeatherLive weather stations
EARFWiki
EARFWikiCountries and public records
EARFguessGuess where on Earth
/data-breach/aapt-data-leak-2012
328/430

File EL-0103HighResolvedData Breach / Customer Data Leak

AAPT Customer Data Leak

Also filed as Anonymous AAPT Hack · Australian ISP Data Leak 2012

Anonymous hacked Australian ISP AAPT and leaked 40GB of partially redacted customer data. The breach exposed customer personal information including names, addresses, phone numbers, and account details. The operation was framed as a protest against proposed Australian data retention legislation.

  • #anonymous
  • #aapt
  • #australia
  • #isp-data-leak
  • #data-breach
  • #privacy
  • #2012
Notoriety7/10
Event
28 Jul 2012
Disclosed
28 Jul 2012
Target
AAPT (ISP)
Actor
Anonymous
Scale
40 GB
Status
Resolved

01Summary

On July 28, 2012, Anonymous publicly released 40GB of data stolen from Australian ISP AAPT. The leaked data included customer records with names, addresses, phone numbers, and account details. While Anonymous partially redacted some sensitive fields, the sheer volume of exposed data represented a major privacy breach. The group stated that the hack was intended to demonstrate the dangers of government-mandated data retention, arguing that if companies were forced to store customer data, it would inevitably be compromised. The incident sparked debate in Australia about data retention laws and the ability of ISPs to protect customer information from cyberattacks.

02Background

At the time, the Australian government was considering controversial new data retention legislation that would require telecommunications companies to store customer metadata for two years for law enforcement access. Anonymous argued this would create a 'honeypot' of sensitive data vulnerable to breach.

03Key revelations

  1. 01Demonstrated the real-world privacy risks of mandatory data retention by ISPs.
  2. 02Exposed the vulnerability of Australian telecommunications infrastructure to hacktivist attacks.
  3. 03Privacy advocates used the incident to argue against data retention legislation.

04Technical analysis

The breach involved gaining access to AAPT's internal customer database, likely through exploitation of vulnerabilities in the company's web-facing systems. The 40GB volume indicates a comprehensive extraction of customer records.

Attack vector
Unknown (likely web application exploitation)
Attack method
Data Exfiltration and Public Release
Exfiltration
Database extraction and public dump
Malware type
Data Exfiltration

MITRE ATT&CK techniques

  • T1505

05Threat actor

Anonymous is a decentralized hacktivist collective. The AAPT operation demonstrated the group's ability to infiltrate telecommunications infrastructure and its willingness to weaponize customer data to make political arguments about privacy and surveillance.

Aliases

  • Anonymous Collective

MITRE groups

  • T1190

Attribution sources

  • Anonymous Statements
  • ZDNet
  • Media Reports

06Victims and impact

Additional victims

  • AAPT Customers

Countries affected

  • Australia

07Data exposed

Data types

  • Customer Names
  • Addresses
  • Phone Numbers
  • Account Details

Notable documents

  • AAPT Customer Database Dump

08Financial damage

Reputational damage to AAPT; customer trust impacted.

09Timeline

  1. 2012-07-28Anonymous releases 40GB of partially redacted AAPT customer data.

10On the record

This is what happens when you force ISPs to keep data. It gets stolen.

Anonymous, Statement explaining the motivation for the hack.

11Reaction and fallout

Public reaction

The leak intensified the debate over data retention laws in Australia, with privacy advocates citing the breach as evidence of the risks of centralized data storage.

Political impact

The incident contributed to public opposition to mandatory data retention legislation in Australia, though the laws were eventually passed in 2015.

12Legal

No arrests were reported. AAPT conducted an internal investigation.

13Aftermath

Policy changes

  • The incident was cited in debates on Australia's Telecommunications (Interception and Access) Amendment Act.

Security improvements

  • AAPT and other Australian ISPs enhanced customer database security.

14Significance and legacy

Significance

The AAPT leak was a textbook example of hacktivism used to make a political point about privacy and surveillance, demonstrating the real-world consequences of data retention policies.

Legacy

The incident became a reference point in Australian privacy debates and highlighted the tension between law enforcement data access needs and cybersecurity risks.

15Disclosure and media

Authentication
Journalistic verification and AAPT confirmation

Publishing organisations

  • Anonymous

16Field notes

  1. 01Anonymous partially redacted some customer data fields to 'avoid causing direct harm' while still making their point.
  2. 02The hack was explicitly framed as a protest against data retention laws, not against AAPT specifically.

17Resolution

Data was leaked publicly. AAPT secured its systems and notified affected customers.

18Sources

References

  1. [1]ZDNet reporting (July 2012)
  2. [2]Australian media coverage
Fact sheetEL-0103

Dates

Event
28 Jul 2012
Started
28 Jul 2012
Ended
28 Jul 2012
Duration
1 days
Discovered
28 Jul 2012
Disclosed
28 Jul 2012
Resolved
28 Jul 2012
Ongoing
No

Target

Organisation
AAPT Limited (Australian ISP)
Type
Corporation
Sector
Telecommunications / ISP
Country
Australia

Actor

Name
Anonymous
Type
Hacktivist Group
Motivation
Protest against proposed Australian data retention laws, which would require ISPs to store customer metadata for government access.
Attribution
Medium
Status
Active
Arrested
No
Convicted
No

Data

Volume
40 GB
Sensitivity
Confidential
Published
Yes

EARFLeaks documents publicly known security incidents. It does not host, store or distribute leaked data.

© 2026 EARF. All rights reserved.