CSIDB logo
Incident

Special Broadcasting Service Australia

Incident posture

Attack window
Jul 2021
Location
Australia
Status
Historical
CIA posture
Available to members
Updated
2025-10-23 00:00

Linked entities

Victim
Special Broadcasting Service Australia
Threat actors
1 actor
Sources
1 source

Timeline

Occurred
Jul 2021
Discovered
Pending
Disclosed
Pending
Resolved
Pending

Summary

The Instagram account of SBS Australia was compromised by an unauthorized party who replaced the profile image with a masked figure and posted a promotional video related to the "Vikings" television series. The organization regained control of the account, removed the unauthorized content, and publicly acknowledged the breach. While the exact method of compromise remains unconfirmed, potential vulnerabilities such as weak or reused passwords, phishing, or insufficient multi-factor authentication protections were raised as hypothetical points of failure in the incident's aftermath.

Motives

Detailed motive labels are available to members.

4 motives

TTPs

Detailed technique labels are available to members.

1 technique

Description

On July 26, 2021, the Instagram account of SBS Australia (@sbs_australia) was compromised by an unauthorized party. The attacker altered the account’s profile picture to display a hooded individual wearing a mask and posted a video tribute to Ragnar Lodbrok, a character from the "Vikings" television series portrayed by Australian actor Travis Fimmel. This content replaced the account’s typical promotional material for SBS programming, including posts about documentaries and cultural topics. SBS Australia acknowledged the breach publicly and regained control of the account after the incident. The unauthorized video was subsequently deleted, and the account restored to its original operational state. No additional compromised systems or platforms beyond the Instagram account were mentioned in available reports. The breach disrupted SBS’s social media operations temporarily but did not appear to affect broadcast services.

The intrusion raised unresolved questions regarding its origin, as no definitive cause was confirmed by SBS or investigators. Potential vulnerabilities cited in analysis included weak or reused passwords, phishing attacks targeting employees, or the absence of multi-factor authentication on the Instagram account. The attacker’s focus on "Vikings"-themed content suggested familiarity with the show but did not reveal clear motives beyond disruptive defacement. SBS did not disclose whether law enforcement was engaged to investigate the incident. No data theft, financial impacts, or secondary compromises were reported in connection with the breach. The organization’s restoration of account control and content removal constituted the primary documented response actions.

Sources

Sources available to members: 1 source.

CSIDB