H&L Australia
| Primary URL | Location | Industry | www[.]hlaustralia[.]com[.]au |
Country
Australia
|
Technology
|
|---|
Profile
The organisation is an Australian point-of-sale technology provider that supplies POS solutions to major retail and hospitality chains. Its offerings include software and hardware components that can be integrated with loyalty programs and supply chain interfaces. The company’s clients span prominent retail and hospitality brands, indicating a market focus on high-volume consumer-facing businesses.
The 2016 breach highlighted its role as a custodian of transactional and customer data, underscoring the sensitivity of the information it handles. The incident also revealed that its systems were susceptible to common web \application \flaws \such \as \SQL \injection \or \file \upload \vulnerabilities, \as \suggested \by \security \experts. \The \attackers \allegedly \breached \the \provider’s \systems, \exfiltrating \a \customer \database \containing \login \credentials, \passwords \and \potentially \sensitive \financial \or \personal \information. \They \attempted \to \sell \the \stolen \data, \claiming \access \via \a \backdoor \and \offering \a \large \SQL \database \dump. \The \breach \underscored \risks \associated \with \insufficient \network \segmentation \and \highlighted \potential \impacts \on \interconnected \systems \like \loyalty \programs \or \supply \chain \interfaces. \While \the \organisation \did \not \disclose \detailed \technical \specifics \publicly, \it \acknowledged \the \breach \and \initiated \notifications \to \affected \stakeholders. \No \further \details \about \the \organisation's \size, \ownership, \or \parent‑subsidiary \relationships \are \provided \in \the \available \sources.
