Quick wins for a faster PC:
Scan for outdated or missing drivers - takes under a minuteDriver Scan →Repair Windows errors before they cause bigger problemsFix Now →In 2023, ransomware group ALPHV/BlackCat claimed it had stolen data from Australian law firm HWL Ebsworth. The firm later said its investigation found information had been taken from a confined part of its systems. The Office of the Australian Information Commissioner (OAIC) confirmed that documents relating to a limited number of its files were included, while stating that the OAIC’s own systems had not been compromised.
What happened in the HWL Ebsworth breach?
HWL Ebsworth (HWLE), a law firm that provided services to Commonwealth clients, reported a data breach to the OAIC under Australia’s Notifiable Data Breaches scheme. The incident involved data held on the law firm’s systems, not a confirmed intrusion into the OAIC’s network.
The distinction matters: ALPHV/BlackCat made the initial claim of data theft; HWLE described what its investigation found; and the OAIC confirmed that documents relating to some of its files were included. Those are different accounts of different aspects of the incident, not proof that every attacker claim about the amount or contents of stolen data was verified.
Key dates and confirmed developments
| Date | What was reported |
|---|---|
| 28 April 2023 | HWLE says it became aware of a dark-web post by ALPHV/BlackCat claiming to have exfiltrated data from the firm. This was the group’s claim, not an independent forensic finding. HWLE’s incident notice |
| 8 May 2023 | HWLE reported a data breach to the OAIC under the Notifiable Data Breaches scheme. OAIC statement, 15 June 2023 |
| June 2023 | HWLE says some data was published on the threat actor’s dark-web forum for three weeks. HWLE’s incident notice |
| 10 June 2023 | HWLE told the OAIC that a document or documents relating to a limited number of OAIC files were included in the breach. At that point, the OAIC said it would review whether the documents contained personal information. OAIC statement, 15 June 2023 |
| 15 June 2023 | The OAIC stated: “The OAIC’s systems have not been compromised.” OAIC statement |
| 20 June 2023 | SecurityWeek published its contemporaneous report on the OAIC disclosure. Its reporting reflects information available at that time, not a final audited total of affected government or commercial records. SecurityWeek report |
| February 2024 | HWLE says a NSW Supreme Court injunction, first granted temporarily in June 2023, was made final. HWLE’s incident notice |
| Later firm update | HWLE says it completed its review of accessed data and its process of notifying impacted organisations and individuals, and that affected individuals were offered direct assistance and support services. HWLE’s incident notice |
What the OAIC confirmed—and what it did not
The OAIC confirmed that documents related to a limited number of its files were included in the breach. It did not quantify that number in its statement. The OAIC also said its own systems were not compromised, so the confirmed exposure was through a service provider’s systems rather than a reported breach of the regulator’s network.
#1 Best Overall
- Use RDX Manager software and RDX systems to securely encrypt business data, with support for FIPS 140-2 validated standards.
- The RDX HDD data cartridges are shockproof, rugged and secure
- Backup, bare metal restore, and air-gap to deter ransomware deliver a secure and flexible safety net for remote workers
- Removable cartridges for quick secure off-site backup, disaster recovery, data transfer and archiving
- Support for DropBox and Google Cloud
The available statements do not establish the full contents of every stolen file, a definitive total of affected government records, or that every leaked copy was removed. HWLE says the injunction was intended to restrict further publication or dissemination; its notice does not establish that all copies or circulation were stopped. Avoid treating the attackers’ claims about volume as independently verified.
What Australian organisations should know about ransomware reporting
The legal and reporting context has changed since the 2023 HWLE incident. The Australian Signals Directorate’s ASD Cyber Threat Report 2024–25 says a mandatory ransomware reporting regime was introduced on 30 May 2025. It applies to businesses with annual turnover of $3 million or more and entities responsible for critical infrastructure. The ASD describes the regime as a way to improve government visibility and support advice, policy and response. These later requirements should not be read back into the 2023 incident.
Rank #2
- Slim durable design to help take your important files with you
- Back up smarter with included device management software[2] with defense against ransomware
- Help secure your important files with password protection and hardware encryption
- 3-year limited warranty
For current Australian guidance, DFAT advises victims against paying a ransom: payment does not guarantee recovery of data or prevent its sale or publication. DFAT also warns that making or facilitating a ransomware payment to a person or entity subject to Australian cyber sanctions may contravene sanctions law. This is general guidance, not a statement about HWLE’s actions or case-specific legal advice. The guidance recommends contacting the Australian Cyber Security Hotline and reporting cybercrime or incidents to the ASD. See DFAT’s FAQs on cyber sanctions and ransomware payments and its cyber sanctions guidance note.
Quick Recap
Best Value
- Easy-to-use desktop hard drive—simply plug in the power adapter and USB cable
- Fast file transfers with USB 3.0
- Drag-and-drop file saving right out of the box
- Automatic recognition of Windows and Mac computers for simple setup (Reformatting required for use with Time Machine)
- Enjoy peace of mind with the included limited warranty and Rescue Data Recovery Services
Rank #4
- Slim durable design to help take your important files with you
- Vast capacities up to 6TB[1] to store your photos, videos, music, important documents and more
- Back up smarter with included device management software[2] with defense against ransomware
- Help secure your important files with password protection and hardware encryption
- 3-year limited warranty
Rank #3
- World’s First 6TB 2.5” Portable Hard Drive
- Slim durable design to help take your important files with you
- Vast capacities up to 6TB[1] to store your photos, videos, music, important documents and more
- Back up smarter with included device management software[2] with defense against ransomware
- Help secure your important files with password protection and hardware encryption
Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.
What’s actually slowing this PC down?
Pick the symptom - the matching free tool is one click away.

