Menu
Browse

MyGov

Aliases: 2 aliases
Primary URL Location Industry
my[.]gov[.]au
Country Australia
Government - Public Services Icon
Government - Public Services
Profile

MyGov, also known as my.gov.au, operates as a critical Australian government digital portal facilitating citizen access to centralized online services. The platform serves as a gateway for individuals to interact with multiple government agencies through a single authentication point, streamlining processes like benefit claims, tax filings, and personal record management. Its national scope and integration with essential public services position it as a foundational component of Australia's digital government infrastructure, handling sensitive personal and financial data across a broad user base. The platform's mandatory use for accessing key social support programs underscores its systemic importance in public administration and service delivery.

The July 2020 credential compromise incident revealed significant security vulnerabilities within the MyGov ecosystem, exposing thousands of user accounts to criminal exploitation. Attackers listed stolen login credentials for sale on dark web marketplaces, with pricing tiers reflecting perceived account value and potential for financial fraud. This breach formed part of a larger dataset containing over 150,000 compromised Australian domain credentials, indicating coordinated targeting of government-affiliated digital identities. The incident demonstrated how compromised MyGov access could enable identity theft, benefit fraud, and unauthorized data exposure given the portal's central role in aggregating citizens' service interactions.

This cybersecurity event highlighted MyGov's attractiveness as a high-value target for threat actors seeking monetizable personal data, with stolen credentials commanding prices up to several hundred dollars based on their fraud potential. The breach's scale and the dark web marketplace activity surrounding it underscored systemic risks associated with centralized identity platforms managing sensitive citizen information. The incident's aftermath necessitated widespread credential resets and heightened scrutiny of authentication mechanisms for critical government service portals handling nationally significant datasets.

Incidents
Linked incidents available to members
1 incident