X
  • About
  • Advertise
  • Contact
  • Superannuation Guide
Get the latest news! Subscribe to the Super Review bulletin
  • News
    • Technology
    • Financial Advice
    • Funds Management
    • Institutional Investment
    • SMSF
    • Insurance
    • Superannuation
    • Post Retirement
    • People & Products
    • Rollover
    • Women’s Wealth
  • Investment Centre
  • Features & Analysis
    • Editorial
    • Expert Analysis
    • Features
    • Roundtables
    • Knowledge Centre
  • Events
  • Promoted Content
No Results
View All Results
  • News
    • Technology
    • Financial Advice
    • Funds Management
    • Institutional Investment
    • SMSF
    • Insurance
    • Superannuation
    • Post Retirement
    • People & Products
    • Rollover
    • Women’s Wealth
  • Investment Centre
  • Features & Analysis
    • Editorial
    • Expert Analysis
    • Features
    • Roundtables
    • Knowledge Centre
  • Events
  • Promoted Content
No Results
View All Results
No Results
View All Results
Home News Superannuation

Super sector pressed to strengthen cyber defences

Credential stuffing attacks have heightened cyber risks in the super sector, prompting regulators to demand stronger identity protections to safeguard members’ retirement savings.

by Adrian Suljanovic
September 24, 2025
in News, Superannuation
Reading Time: 3 mins read
Share on FacebookShare on Twitter

Credential stuffing attacks have heightened cyber risks in the super sector, prompting regulators to demand stronger identity protections to safeguard members’ retirement savings. 

Following a series of credential stuffing attacks in April – a method in which cyber attackers use compromised user credentials to breach the system – regulators have warned that funds must urgently lift their security standards to protect members’ savings.

X

Since then, the Australian Prudential Regulation Authority (APRA) has directed super funds to address longstanding weaknesses in information security and authentication controls.

According to Ashley Diffey, vice-president, Australia and New Zealand at Ping Identity, these attacks have demonstrated the scale of the sector’s challenge as digital engagement rises.

“Rapid growth of member engagement has caught parts of the sector off-guard, or at least without the capacity to enable secure self-service of the influx of requests,” Diffey said.

He noted that an ageing population is drawing down funds, while Tax Office campaigns have encouraged younger Australians to check their super more frequently.

Further complicating the task for super funds has been digital transformation. With an estimated $4.3 trillion under management, funds are still in the process of modernising systems, all while the threat of cyber attacks has increased.

“It’s not just member experience that is driving transformation; cyber security is also an important consideration and investment driver,” Diffey said. “After the credential stuffing attacks, the focus on security has become even more urgent.”

Diffey pointed towards banks, the focus of cyber regulation for some time, and how they have been forced to adopt unparalleled protections.

“Who does identity security right today? I am quick to cite the banks,” Diffey said.

“They’ve got the nation’s wealth in their hands, they’ve got the ability to invest, they’ve got good teams and experts inside their business, and they engage the right people to come in and advise and help them build, architect and deliver really meaningful outcomes.”

He added that APRA’s close oversight has compelled banks to implement solutions that are “quite literally world-class” and said that an equivalent uplift in superannuation is both achievable and necessary, particularly as stolen credentials remain a favoured attack method.

According to Diffey, the best practice for super funds would involve the adoption of verifiable credentials, such as Apple’s ID in Wallet, combined with attribute-based access controls to govern what members can once logged in.

“Rather than requiring users to have a separate identity for every service they use or organisation with which they engage, they can use one credential to access everything,” he said.

Adoption of verifiable credentials would also reduce the need for funds to collect and store identity data, thereby limiting their exposure to breaches.

Identity and access management platforms, Diffey said, can provide the connective thread for authentication across the member journey with minimal friction but maximum security.

“These platforms can also help implement attribute-based access controls, monitoring how members interact with digital services and issuing additional challenges when anomalous behaviour is detected,” he added.

Diffey stressed that super funds have had a “serious scare” and are “under regulatory guidance to act”.

“An identity and access management platform is a key foundational element of the response,” Diffey said.

Related Posts

Using data to achieve member experience success

by Staff Writer
December 4, 2025

A panel of superannuation commentators have shared how data and technology can be used to improve the member experience at...

ASFA releases latest Retirement Standard data

by Laura Dew
December 4, 2025

The budget needed for a couple to fund a comfortable retirement has reached more than $76,000, rising by 1.6 per cent in...

APRA warns super trustees lag as systemic risks rise

by Adrian Suljanovic
December 4, 2025

APRA has called on super trustees to close widening performance gaps as superannuation becomes more critical to financial stability. Appearing...

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

VIEW ALL
Promoted Content

Using data to achieve member experience success

A panel of superannuation commentators have shared how data and technology can be used to improve the member experience at...

by Staff Writer
December 4, 2025
Promoted Content

To the expert guiding the doers

Everyone has their own reason for wanting to stay healthier, for longer.

by Partner Article
October 7, 2025
Promoted Content

Developing Next-Generation Fintech Applications on High-Speed Blockchain Networks

The evolution of financial technology continues accelerating with the emergence of high-speed blockchain networks that enable unprecedented performance and cost...

by Partner Article
September 4, 2025
Promoted Content

Smart finance is the key to winning in the property investment surge

Australian property prices are rising again, presenting a compelling opportunity for investors. For the first time in four years, every Australian...

by Partner Article
August 13, 2025

Join our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

Top Performing Funds

FIXED INT - AUSTRALIA/GLOBAL BOND
Fund name
3 y p.a(%)
1
DomaCom DFS Mortgage
220.82
2
Loftus Peak Global Disruption Fund Hedged
110.90
3
SGH Income Trust Dis AUD
80.01
4
Global X 21Shares Bitcoin ETF
76.11
5
Smarter Money Long-Short Credit Investor USD
67.63
Super Review is Australia’s leading website servicing all segments of Australia’s superannuation and institutional investment industry. It prides itself on in-depth news coverage and analysis of important areas of this market, such as: Investment trends, Superannuation, Funds performance, Technology, Administration, and Custody

Subscribe to our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

About Us

  • About
  • Advertise
  • Contact
  • Investment Centre
  • Terms & Conditions
  • Privacy Collection Notice
  • Privacy Policy

Popular Topics

  • Superannuation
  • People And Products
  • Financial Advice
  • Funds Management
  • Institutional Investment
  • Insurance
  • Features And Analysis

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited

No Results
View All Results
NEWSLETTER
  • News
    • All News
    • Technology
    • Financial Advice
    • Funds Management
    • Institutional Investment
    • SMSF
    • Insurance
    • Superannuation
    • Post Retirement
    • People & Products
    • Rollover
    • Women’s Wealth
  • Superannuation Guide
  • Features & Analysis
    • All Features & Analysis
    • Editorial
    • Expert Analysis
    • Features
    • Roundtables
    • Knowledge Centre
  • Events
  • Investment Centre
  • Promoted Content
  • About
  • Advertise
  • Contact Us

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited