X
  • About
  • Advertise
  • Contact
Get the latest news! Subscribe to the ifa bulletin
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
No Results
View All Results
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
No Results
View All Results
No Results
View All Results
Home News

‘Businesses must learn’ from landmark RI Advice court decision

A cyber expert believes “a new precedent” has been set following the Federal Court’s landmark decision.

by Neil Griffiths
May 6, 2022
in News
Reading Time: 2 mins read
Share on FacebookShare on Twitter

On Thursday, 5 May, AFS licensee RI Advice was found to have breached its licence obligations by the Court, who ruled that the group did not act efficiently and fairly when it failed to have adequate risk management systems to manage its cyber security risks.

According to ASIC, a “significant number” of cyber incidents occurred at authorised representatives of RI Advice between June 2014 and May 2020, including an incident where “an unknown malicious agent obtained, through a brute force attack, unauthorised access to an authorised representative’s file server from December 2017 to April 2018 before being detected, resulting in the potential compromise of confidential and sensitive personal information of several thousand clients and other persons”.

X

“Brute force attacks consist of attackers submitting many passwords or passphrases with the hope of eventually guessing correctly. Implementing multi-factor authentication such as two-factor authentication, which needs another factor other than username and password to enable access, could have put a stop to the brute force attack that occurred,” CEO and founder of cyber security provider, StickmanCyber, Ajay Unni, said.

“For example, an attacker may need an authentication code from an certified app or a SMS code and their password, this makes it more difficult for cyber criminals to access your files or account. This attack could have also been prevented by implementing an account lockout after several unsuccessful login attempts.”

Mr Unni suggested that some ways to block attacks can include enabling CAPTCHA to render bots ineffective and engage with an information security team to regularly monitor server logs.

Though RI Advice has taken steps to address cyber security risks, the Court has ordered that the advice group engage a cyber security expert to identify any further measures that may be necessary to implement.

“With a rise in complexity and frequency of cyber threats, it isn’t a question of if your business will fall prey to a cyber attack, it is more a question of when an attack will occur,” Mr Unni said.

“Businesses, regardless of their size, type, and industry, need to enhance their cyber resilience.”

He continued: “Businesses need to learn from RI Advice and prioritise the enhancement of their cyber security posture by treating it as a business function, as opposed to a business issue that is relegated to the IT department.”

In addition to the licence breach, RI Advice has also been ordered to pay $750,000 towards ASIC’s costs.

READ MORE: ASIC responds to landmark RI Advice court ruling: ‘We expect active management of cyber risks’

Related Posts

Image: FAAA

FAAA wants auditors in the spotlight over Shield, First Guardian failures

by Keith Ford
December 12, 2025
1

Speaking on a Financial Advice Association Australia (FAAA) webinar on Thursday, chief executive Sarah Abood said she was pleased to...

Expect a 2026 surge in self-licencing: MDS

by Alex Driscoll
December 12, 2025
0

The dominant story of 2025 in the advice world has undoubtably been ASIC’s suing of InterPrac due to the failure...

image: feng/stock.adobe.com

Adviser movement surges as year-end licensee switching accelerates

by Shy Ann Arkinstall
December 12, 2025
0

According to Padua Wealth Data’s latest weekly analysis, there was a net gain of five advisers in the week ending...

Comments 2

  1. Anon E Mouse says:
    4 years ago

    ASIC’s approach to this – that the victim of the crime was the guilty party – is quite astonishing.

    Reply
  2. Andrew says:
    4 years ago

    ASIC initially wanted a fine for in excess of $100M and all that got was an award of costs. So who has really won.

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

VIEW ALL
Promoted Content

Seasonal changes seem more volatile

We move through economic cycles much like we do the seasons. Like preparing for changes in temperature by carrying an...

by VanEck
December 10, 2025
Promoted Content

Mortgage-backed securities offering the home advantage

Domestic credit spreads have tightened markedly since US Liberation Day on 2 April, buoyed by US trade deal announcements between...

by VanEck
December 3, 2025
Promoted Content

Private Credit in Transition: Governance, Growth, and the Road Ahead

Private credit is reshaping commercial real estate finance. Success now depends on collaboration, discipline, and strong governance across the market.

by Zagga
October 29, 2025
Promoted Content

Boring can be brilliant: why steady investing builds lasting wealth

Excitement sells stories, not stability. For long-term wealth, consistency and compounding matter most — proving that sometimes boring is the...

by Zagga
September 30, 2025

Join our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

Poll

This poll has closed

Do you have clients that would be impacted by the proposed Division 296 $3 million super tax?
Vote
www.ifa.com.au is a digital platform that offers daily online news, analysis, reports, and business strategy content that is specifically designed to address the issues and industry developments that are most relevant to the evolving financial planning industry in Australia. The platform is dedicated to serving advisers and is created with their needs and interests as the primary focus.

Subscribe to our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

About IFA

  • About
  • Advertise
  • Contact
  • Terms & Conditions
  • Privacy Collection Notice
  • Privacy Policy

Popular Topics

  • News
  • Risk
  • Opinion
  • Podcast
  • Promoted Content
  • Video
  • Profiles
  • Events

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited

No Results
View All Results
NEWSLETTER
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
  • About
  • Advertise
  • Contact Us

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited