Published: 2-Dec-25

Legal insight | New mandatory ransomware payment reporting obligations now in force - Gadens

 Effective from 30 May 2025, the new mandatory ransomware reporting regime under the Cyber Security Act introduces ransomware payment reporting obligations. This regime requires certain entities – including businesses with an annual turnover exceeding $3 million and operators of critical infrastructure – to report any ransomware or cyber extortion payments made, or known to have been made on their behalf, within 72 hours of the transaction.  

 

Read more here

Haven’t found what you’re looking for?

To discuss your needs and how we can support you -
request a callback using the form below.

Join the APSCo Membership today!

Apply below and a member of the team will be in touch to discuss how APSCo membership can transform your business.