Trumpet of Patriots

Trumpet of Patriots

The ransomware attack on Trumpet of Patriots, announced in July 2025 but occurring on June 23, compromised sensitive data of supporters, including email addresses, phone numbers, identity records, banking records, and employment history. The extent of the data breach remains unclear, but the attack also affected the United Australia Party. Political parties in Australia are exempt from many data protection obligations, raising concerns about the security of voter information. The breach highlights vulnerabilities in political party data handling and the potential risks of such exemptions.

Source: https://www.theguardian.com/technology/2025/jul/27/trumpet-of-patriots-hack-calls-for-political-parties-report-data-breaches-ntwnfb

TPRM report: https://www.rankiteo.com/company/trumpetofpatriots

"id": "tru309080925",
"linkid": "trumpetofpatriots",
"type": "Ransomware",
"date": "6/2025",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Politics',
                        'location': 'Australia',
                        'name': 'Trumpet of Patriots',
                        'type': 'Political Party'},
                       {'industry': 'Politics',
                        'location': 'Australia',
                        'name': 'United Australia Party',
                        'type': 'Political Party'}],
 'customer_advisories': 'Supporters were informed about the potential '
                        'compromise of their data.',
 'data_breach': {'data_exfiltration': 'Likely',
                 'personally_identifiable_information': 'Yes',
                 'sensitivity_of_data': 'High',
                 'type_of_data_compromised': ['email addresses',
                                              'phone numbers',
                                              'identity records',
                                              'banking records',
                                              'employment history',
                                              'other documents']},
 'date_publicly_disclosed': 'July 2025',
 'description': 'A ransomware attack affected Clive Palmer’s Trumpet of '
                'Patriots and United Australia parties, compromising sensitive '
                'voter data including email addresses, phone numbers, identity '
                'records, banking records, and employment history. The attack '
                'was publicly disclosed by the parties, though they were not '
                'legally required to do so under Australian Privacy Act '
                'exemptions for political parties.',
 'impact': {'brand_reputation_impact': 'Potential damage due to public '
                                       'disclosure of the breach',
            'data_compromised': ['email addresses',
                                 'phone numbers',
                                 'identity records',
                                 'banking records',
                                 'employment history',
                                 'other documents'],
            'identity_theft_risk': 'High',
            'payment_information_risk': 'High'},
 'lessons_learned': 'The incident highlights the risks of political parties '
                    'being exempt from data protection obligations under the '
                    'Australian Privacy Act.',
 'ransomware': {'data_encryption': 'Yes', 'data_exfiltration': 'Likely'},
 'recommendations': 'Narrow or remove the exemption for political parties '
                    'under the Australian Privacy Act to ensure better '
                    'protection of personal information.',
 'references': [{'source': 'The Guardian'}],
 'response': {'communication_strategy': 'Public disclosure by the affected '
                                        'parties'},
 'title': 'Ransomware Attack on Clive Palmer’s Trumpet of Patriots and United '
          'Australia Parties',
 'type': 'Ransomware Attack'}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.