X
  • About
  • Advertise
  • Contact
  • Events
Subscribe to our Newsletter
  • News
    • Markets
    • Regulation
    • Super
    • M&A
    • Tech
    • Appointments
  • Podcast
  • Webcasts
  • Video
  • Analysis
  • Promoted Content
No Results
View All Results
  • News
    • Markets
    • Regulation
    • Super
    • M&A
    • Tech
    • Appointments
  • Podcast
  • Webcasts
  • Video
  • Analysis
  • Promoted Content
No Results
View All Results
No Results
View All Results
Home News Super

Majority of super funds falling short on email security standards

Earlier this month, several Australian superannuation funds fell victim to credential stuffing attacks, which saw a small number of members lose more than $500,000.

by David Hollingworth
April 30, 2025
in News, Super
Reading Time: 3 mins read
Share on FacebookShare on Twitter

Sadly, it appears many such funds are still prone to compromise.

Cyber security firm Proofpoint has released new research into the email security of Australian super funds, and the most alarming statistic is that 58 per cent of funds are falling behind on the most basic security measures.

X

“Australian superannuation funds hold the financial futures of millions of everyday Australians, yet our research reveals 58 per cent are failing to implement basic email security protocols,” said Steve Moros, senior director, advanced technology group, Asia-Pacific and Japan at Proofpoint.

“This security gap creates a dangerous opening for cyber criminals who specifically target these data-rich organisations,” he added.

Proofpoint conducted Domain-based Message Authentication, Reporting and Conformance (DMARC) analysis of more than 80 Australian funds and found that 8 per cent don’t have any DMARC protection at all, while only 42 per cent have the highest level of DMARC protection.

DMARC has three levels of protection – monitor, quarantine and reject, the latter of which is the highest level of protection. The protocol is designed to prevent domain names from being misused by cyber criminals.

According to the research, 23 per cent of Australian funds use the quarantine level of protection and 27 per cent use the monitor level.

“The recent breach resulting in over $500,000 in losses demonstrates these threats aren’t theoretical and, in fact, regular occurrences growing in volume. They’re actively impacting Australians’ retirement savings,” Moros said.

“While resource constraints are understandable, implementing robust DMARC protection isn’t optional in today’s threat landscape – it’s essential infrastructure that stands between members’ life savings, their privacy and increasingly sophisticated fraud campaigns targeting these critical financial institutions.”

The analysis was conducted based on a list of APRA-regulated super funds in April this year.

Earlier this month, speaking at Momentum Media’s Election 2025 breakfast event in Sydney, Mary Delahunty, chief executive of the Association of Superannuation Funds of Australia (ASFA), took a moment to address the cyber incident that gripped some Australian super funds last week.

Initially, the funds affected by the incident included Rest, Hostplus, AustralianSuper, Insignia’s Expand platform, and Australian Retirement Trust, followed later by Cbus Super and Media Super, which raised alarms after a surge of suspicious login attempts.

“I’m sure all of you are aware of the cyber incident that affected several superannuation funds recently. It’s now being investigated by police and government authorities,” Delahunty said.

“While I can’t say a lot at the moment, I can say that the cyber criminals undertook a coordinated, well-funded and sophisticated attack on our system.

“The superannuation sector is taking this extremely seriously, as we should.”

Delahunty noted at the time that reviews are underway to assess where further protections are needed.

Related Posts

AI redefining global investment experience, tech firm says

by Olivia Grace-Curran
November 19, 2025

According to ViewTrade, AI is already transforming everything from compliance onboarding to personalisation and cross-border investing – automating low-value, high-volume...

Future Fund goes on the defensive with gold and active funds

by Georgie Preston
November 19, 2025

In a position paper released this week, the Future Fund said it is shifting gears to prioritise portfolio resilience, aiming...

Bloomberg strengthens pricing services on Aussie bonds

by Georgie Preston
November 19, 2025

The upgrades to Bloomberg’s evaluation pricing service, BVAL, and its intraday front office pricing service, IBVAL, aim to give investors...

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

VIEW ALL
Promoted Content

Global dividends hit a Q3 record, led by financials.

Global dividends surged to a record US$518.7 billion in Q3 2025, up 6.2% year-on-year, with financials leading the way. The...

by Capital Group
November 18, 2025
Promoted Content

Why smaller can be smarter in private credit

Over the past 15 years, middle market direct lending has grown into one of the most dynamic areas of alternative...

by Tim Warrick, Managing Director of Principal Alternative Credit, Principal Asset Management
November 14, 2025
Promoted Content

Members Want Super Funds to Step Up Security

For most Australians, superannuation is their largest financial asset outside the family home. So, when it comes to digital security,...

by MUFG Pension & Market Services
October 3, 2025
Promoted Content

Boring Can Be Brilliant: Why Steady Investing Builds Lasting Wealth

In financial markets, drama makes headlines. Share prices surge, tumble, and rebound — creating the stories that capture attention. But...

by Zagga
October 2, 2025

Join our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

Latest Podcast

Podcast

Relative Return Insider: Economic shifts, political crossroads, and the digital future

by InvestorDaily team
November 13, 2025
After more than two decades, InvestorDaily continues to be an institution that connects and influences Australia’s financial services sector. This influential and integrated media brand connects with leading financial services professionals within superannuation, funds management, financial planning and intermediary distribution through a range of channels, including digital, social, research, broadcast, webcast and events.

Subscribe to our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

About Us

  • About
  • Advertise
  • Contact
  • Terms & Conditions
  • Privacy Collection Notice
  • Privacy Policy

Popular Topics

  • Markets
  • Appointments
  • Regulation
  • Super
  • Mergers & Acquisitions
  • Tech
  • Promoted Content
  • Analysis

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited

No Results
View All Results
NEWSLETTER
  • News
  • Markets
  • Regulation
  • Super
  • M&A
  • Tech
  • Appointments
  • Podcast
  • Webcasts
  • Promoted Content
  • Events
  • About
  • Advertise
  • Contact Us

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited