Cresta A.I CyberSecurity Scoring
Cresta
Company Information
Website:http://www.cresta.com
Employees number:592
Number of followers:57,971
NAICS:5112
Industry Type:Software Development
Homepage:cresta.com
Cresta Risk Score (AI oriented)
Between 700 and 749
CrestaSoftware Development
Updated:
13/03/2026
13/03/2026
736/1000
Moderate
Ba
Cresta Global Score (TPRM)
xxxx
CrestaSoftware Development
Score locked

CrestaModerate
Current Score
736Ba (MODERATE)
01000
1 incidents
-28 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
738
MAY 2026
737
APRIL 2026
737
MARCH 2026
735
FEBRUARY 2026
735
JANUARY 2026
735
DECEMBER 2025
734
NOVEMBER 2025
733
OCTOBER 2025
732
SEPTEMBER 2025
731
AUGUST 2025
731
JULY 2025
757
Cyber Attack
02 Jul 2025 • Cresta
Hawaiian Airlines, Qantas and MGM Resorts: Qantas Hit By Major Cyber-Attack, Exposing Data of Up To 6 Million Customers
Qantas Suffers Major Data Breach Affecting Up to 6 Million Customers
729
CRITICAL-28
HAWQANMGM1771230438
Qantas Suffers Major Data Breach Affecting Up to 6 Million Customers
Qantas, Australia’s largest airline, has confirmed a cyberattack that compromised the personal data of up to six million customers through a third-party call center platform. The breach was detected on Monday, with threat actors gaining unauthorized access to customer service records.
The stolen data may include names, email addresses, phone numbers, birth dates, and frequent flyer numbers. Qantas has assured customers that no financial information, credit card details, or login credentials were exposed. The airline has contained the incident, stating that its internal systems remain secure, and has set up a dedicated support line for affected individuals.
Qantas Group CEO Vanessa Hudson apologized, emphasizing the company’s commitment to customer trust and support. The breach follows a series of controversies for the airline, including pandemic-related operational issues and opposition to Qatar Airways’ expansion plans.
Authorities, including the Australian Cyber Security Centre, the Office of the Australian Information Commissioner, and the Australian Federal Police, have been notified. Independent cybersecurity experts are investigating the incident.
Potential Link to Scattered Spider
While the attackers’ identity remains unconfirmed, the tactics used align with those of the Scattered Spider ransomware group, which has recently targeted airlines and retailers in the U.S. and U.K. The FBI has warned about the group’s use of social engineering such as phishing, SIM swapping, and help desk impersonation to bypass multi-factor authentication and steal sensitive data.
Scattered Spider, also known as UNC3944, is a sophisticated cybercriminal collective believed to consist of young adults in the U.S. and U.K. The group has been linked to high-profile attacks on MGM Resorts, Caesars Entertainment, and Snowflake customers, often partnering with ransomware-as-a-service (RaaS) providers like ALPHV. Their recent focus on aviation includes breaches at Hawaiian Airlines and WestJet, where they exploited self-service password reset tools.
Rising Cyber Threats in Australia
The Qantas breach adds to a surge in cyber incidents across Australia. The Office of the Australian Information Commissioner reported a 25% year-on-year increase in data breaches, with 1,113 incidents in the last fiscal year up from 893 in 2023. The health sector was the most targeted, followed by government, finance, and retail. 69% of breaches were attributed to malicious or criminal activity, with phishing and ransomware as the primary methods.
Scattered Spider’s evolution from telecom attacks to critical infrastructure and high-profile extortion highlights the growing sophistication of cybercriminal groups. Their use of legitimate remote-access tools and cloud platforms underscores the challenges organizations face in defending against such threats.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Cresta ??
What was Cresta's A.I Rankiteo Cyber Score in May 2026 ??
What was Cresta's A.I Rankiteo Cyber Score in April 2026 ??
What was Cresta's A.I Rankiteo Cyber Score in March 2026 ??
What was Cresta's A.I Rankiteo Cyber Score in February 2026 ??
What was Cresta's A.I Rankiteo Cyber Score in January 2026 ??
What was Cresta's A.I Rankiteo Cyber Score in December 2025 ??
What was Cresta's A.I Rankiteo Cyber Score in November 2025 ??
What was Cresta's A.I Rankiteo Cyber Score in October 2025 ??
What was Cresta's A.I Rankiteo Cyber Score in September 2025 ??
What was Cresta's A.I Rankiteo Cyber Score in August 2025 ??
What was Cresta's A.I Rankiteo Cyber Score in July 2025 ??
What is the average per-incident point impact on Cresta's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Cresta ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Cresta's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?