By visiting our site, you agree to our privacy policy regarding cookies, tracking statistics, etc.
Apply now for free support from our Cybersecurity Services Centre
Apply for free cybersecurity support
Attend the Ransomware Defence Summer Bootcamp in Amsterdam, June 2026
Attend our free summer bootcamp on ransomware defence
Enroll in the Foundations of Cybersecurity and AI online live course
Learn online about the foundations of cybersecurity and AI
Australia became on Friday the first country in the world to require victims of ransomware attacks to declare to the government any extortion payments made on their behalf to cybercriminals. The law, initially proposed last year, only applies to organizations with an annual turnover greater than AUS $3 million ($1.93 million) alongside a smaller group of specific entities working within critical infrastructure sectors. The turnover threshold is expected to capture just the top 6.5% of all registered businesses in Australia, comprising roughly half of the country’s economy. Reports will be made to the Australian Signals Directorate (ASD) within 72 hours. Companies that fail to make a report could receive 60 penalty units within the Australian civil penalty system.