HAH 😬 just looked up #unisuper and that's what their webdude decided to call their page on the "#geopolitical events" topic 😳
https://www.unisuper.com.au/articles/2026/03/geopolitical-events-and-your-super
L'últim programa/podcast de @entredevyops on expliquen una incidència que va tenir UniSuper amb Google Cloud.
Resumint, no dependre només d'un servidor del núvol per a desar-hi els fitxers.
'A key topic where APRA has observed weakness is the use of data backups to protect an entity against data loss'.
To: All APRA regulated entities Cyber resilience is one of APRA’s supervision priorities. As the cyber threat landscape continues to evolve and escalate, APRA-regulated entities must stay vigilant and proactively implement strategies to mitigate the risk and impact of potential cyber-attacks.
If you've been following the #UniSuper #GCP #outage, the Incident report is out, and it's a good read - transparent, detailed, clearly outlines scope, actions, impact.
As someone who used to do this stuff for a living, I'm impressed.
https://cloud.google.com/blog/products/infrastructure/details-of-google-cloud-gcve-incident
#unisuper #google writeup
https://danielcompton.net/google-cloud-unisuper
Edit to quote my fave. bit: " The press release makes heroic use of the passive voice to obscure the actors:"
Update 2024-05-21: Miles Ward has an update with more details in this X thread: UniSuper’s production Google Cloud VMware Engine (GCVE) private cloud was automatically deleted one year after it’s creation due to a misconfiguration in how it was created. When it was created, there was a bug in the creation script which passed a null value. This caused the private cloud to be created with a one year subscription, rather than a perpetual one.