Partnered Health, an Australian healthcare provider operating family medical clinics, disclosed a cyberattack that exposed patient data from clinics across Sydney, Melbourne, Canberra and other cities. Reports indicate the intrusion affected at least 16 clinics, while Partnered Health said data was accessed from 21 clinics on 23 June. The compromised information is believed to include highly sensitive medical records such as treatment details, consultation notes, referral letters, pathology and diagnostic results, along with personal and insurance data including names, dates of birth, addresses, Medicare numbers and private health insurance details.
The company said it had notified affected patients and stakeholders and reported the incident to the Australian Cyber Security Centre, the Office of the Australian Information Commissioner and law enforcement. Partnered Health also obtained an interim injunction from the New South Wales supreme court ordering that the accessed data not be used or published, but experts warned the records could still be traded on dark-web markets, where medical data is considered especially valuable.

See the actors and campaigns active against you right now.
5 events from the most recent confirmed update back to the earliest known activity.
Partnered Health obtained an interim injunction from the New South Wales supreme court ordering that the accessed data not be used or published. The legal step was taken in response to the breach and risk of further dissemination.
After discovering the incident, Partnered Health said it contacted affected patients and stakeholders. The company also reported the breach to the Australian Cyber Security Centre, the Office of the Australian Information Commissioner, and law enforcement.
Media reports said Partnered Health was the victim of a cyber breach exposing patient data across Australian family clinics. One report stated that 16 clinics were directly affected, while later reporting said 21 clinics were impacted.
Partnered Health said investigations were still ongoing at five clinics to determine the full extent of the June 23 cyberattack. This indicated the final scope of the compromise had not yet been fully established when the breach was disclosed.
On 2026-06-23, a malicious actor accessed data from 21 Partnered Health clinics across Sydney, Melbourne, Canberra, and other Australian cities. The compromised data is believed to include sensitive medical records, consultation notes, diagnostic results, and personal and insurance information.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See the adversaries and campaigns active against your sector right now, ranked by what they're exploiting.
6 references tracked. Mallory keeps watching after this page renders.
cyberveille.ch
Open sourcescworld.com
Open sourcetheguardian.com
Open sourceteiss.co.uk
Open sourcemalware.news
Open sourcepartneredhealth.com.au
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.