# EY

Type: Company

Source: Cyber Intelligence Brief — https://getcyberbrief.com/entity/ey
Canonical HTML page: https://getcyberbrief.com/entity/ey

## Timeline

- **2026-08-25**: Next Court Date — Scheduled adjournment at Downing Centre Local Court for the Issa brothers’ case.
- **2026-06-30**: Firings reported and criminal charges filed — The Australian Financial Review first reports the firings; the AFP charges the two men with accessing restricted banking data. They appear in Sydney court the same day.
- **2026-06-30**: Court Appearance at Newtown Local Court — The two charged individuals appeared in court following bail, marking the opening phase of criminal proceedings.
- **2026-06-30**: PM Albanese Publicly Comments — Prime Minister Anthony Albanese tells ABC News Breakfast the breach is ‘a serious issue’ and criticises the conduct of major consulting firms, specifically referencing EY.
- **2026-06-29**: Initial Court Mention — Phillip and Paul Issa briefly appear at Downing Centre Local Court; both are charged with unauthorised access/modification of restricted data. Bail is granted and the matter adjourned to August 25.
- **2026-03**: EY hires two junior staffers — Two graduates join EY and are placed on secondment at Commonwealth Bank of Australia.
- **2026**: Unauthorized account access occurs — The staffers allegedly access the bank account of Prime Minister Albanese and at least one EY partner while embedded at CBA.
- **2025-12**: AUSTRAC Insider Risk Guidance Released — AUSTRAC published recommendations for managing insider risk, including robust upfront screening and periodic re-screening for high-risk roles.

## Recent coverage (3 stories)

### 2 Charged in CBA Data Breach: Contractor Access Exposes MP’s Private Records
2026-07-02 00:13:35 · Sentiment: Negative · Impact: 7/10 · Sources: 2

Two individuals have been charged over the alleged access of a federal parliamentarian’s restricted banking data at Commonwealth Bank. One is a former EY contractor, underscoring the persistent insider threat and third-party risk in financial institutions.
Full story: https://getcyberbrief.com/story/cyber-cba-ey-insider-breach-parliamentarian

### Inside Job: 2 EY Grads Allegedly Bypass CBA Controls to View PM's Data
2026-06-30 13:26:20 · Sentiment: Negative · Impact: 7/10 · Sources: 2

With two EY graduate consultants charged for unauthorised access, the incident serves as a real-world case study of insider threat detection and access control failures. The cybersecurity community can draw lessons on monitoring, privilege management, and the importance of layered defences even against vetted insiders.
Full story: https://getcyberbrief.com/story/ey-grads-cba-breach-cyber-insider-threat

### CBA Insider Breach: 2 Junior EY Staffers Accessed High-Profile Bank Accounts
2026-06-30 06:06:57 · Sentiment: Strongly negative · Impact: 8/10 · Sources: 2

A serious insider threat event at Commonwealth Bank saw two EY secondees, aged 21 and 25, misuse system access to view Prime Minister Albanese’s personal banking data. The breach underscores the peril of embedding third-party personnel into critical financial infrastructure and highlights the human factor in cybersecurity.
Full story: https://getcyberbrief.com/story/cba-insider-breach-ey-staffers

---
This page is a machine-readable summary. Sentiment measures the directional read of each development for this entity, not the tone of the reporting; impact weights consequence, not syndication reach. See https://getcyberbrief.com/guides/methodology for the full editorial methodology.