CTARS
Disclosed May 31, 20224 years ago12,314 accountsUnverified
In May 2022, the client management system for the Australian government's NDIS (National Disability Insurance Scheme) suffered a data breach which was subsequently posted to an online hacking forum . The CTARS cloud platform is used by care providers to record information about NDIS participants and often contains sensitive medical information. Impacted data includes over 12k unique email addresses, physical addresses, names, dates of birth, phone numbers and data related to patient conditions and treatments.
What is known
| People affected | 12,314 (accounts in the leaked data, per Have I Been Pwned) |
|---|---|
| Disclosed | May 31, 2022 |
| Happened | May 21, 2021 |
| Attack | Hacking |
| Data exposed | Dates of birth, Emails, Names, Passwords, Health, Phone numbers, Addresses |
| Sector | Tech |
| Status | Unverified: not yet confirmed by an official notice, a filing or the organization |
| Check your email | Have I Been Pwned |
Sources
| Source | |
|---|---|
| Have I Been Pwned: CTARShaveibeenpwned.com · Aggregator | Aggregator |
Notices filed
| Where | Filed | People |
|---|---|---|
| Have I Been Pwnedaccounts in the data | May 31, 2022 | 12,314 |
History of this record
- 2026-09-25 · added · backfill source
First seen 2026-09-25 (Have I Been Pwned). Record counts are as reported. Not legal advice.