Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Health Support Services (WA health system)

Health Support Services (WA health system) Vendor Cyber Rating & Cyber Score

wa.gov.au

Health Support Services (HSS) is the Western Australian Government agency providing shared services to the state’s public health system. We provide a suite of financial, ICT, procurement and supply, and workforce services to more than 65,000 employees across WA’s public health services and hospitals. Our focus is on providing simple, reliable, responsive and sustainable services to our customers. Every day, our people provide solutions, develop innovative technologies, and introduce new and easier ways of working for our customers so they can focus on providing excellent health care. Our vision is to provide great services to our customers, be known as a valued partner, and support the health of all Western Australians. To achieve


HSS A.I CyberSecurity Scoring

HSS
Company Information
Website:https://www.hss.health.wa.gov.au/
Employees number:1,118
Number of followers:11,259
NAICS:62
Industry Type:Hospitals and Health Care
Homepage:wa.gov.au
HSS Risk Score (AI oriented)
Between 750 and 799
logo
HSSHospitals and Health Care
Updated:
02/04/2026
751/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
HSS Global Score (TPRM)
xxxx
logo
HSSHospitals and Health Care
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

HSS
HSSFair
Current Score
751Baa (FAIR)
01000
1 incidents
0 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JULY 2026
752Before Incident
JUNE 2026
752Before Incident
MAY 2026
751Before Incident
APRIL 2026
751Before Incident
MARCH 2026
751Before Incident
FEBRUARY 2026
751Before Incident
JANUARY 2026
750Before Incident
DECEMBER 2025
750Before Incident
NOVEMBER 2025
750Before Incident
OCTOBER 2025
750Before Incident
SEPTEMBER 2025
749Before Incident
AUGUST 2025
749Before Incident
JUNE 2020
766Before Incident
Breach
16 Jun 2020HSS
Western Australia Department of Health (Public Health System)

Western Australia Public Health Data Breach via Unencrypted Radio Frequencies

703After Incident
CRITICAL-63
HEA3002130101725
In 2020, a 15-year-old autistic individual, Joshua, intercepted and decoded unencrypted radio frequencies used by Western Australia’s public health system during the COVID-19 pandemic. He uploaded the exposed data—including patient and staff names, contact details, and hospital communications—to a self-built 400-page website, making it publicly accessible. The breach was discovered after Nine News reported on it, broadcasting some of the leaked content before the site was taken down. While Joshua claimed no malicious intent and cooperated with authorities (who ultimately took no legal action), the incident compromised sensitive personal and operational data of patients and healthcare workers. The breach occurred at a critical time, heightening risks of identity exposure, reputational damage to the health system, and potential misuse of contact details. Police executed a search warrant at Joshua’s home, but no charges were filed. The case highlighted vulnerabilities in unencrypted communications and the unintended consequences of neurodivergent individuals engaging with sensitive systems.
INCIDENT DETAILS -
TYPE
Data BreachUnauthorized AccessPrivacy Violation
MOTIVATION
Non-malicious; curiosity and passion for technology (lack of awareness of consequences)
IMPACT
Patient namesStaff namesContact detailsHospital communicationsRadio communication systems of Western Australia public healthOperational Impact: Potential disruption to hospital communications during COVID-19 pandemicBrand Reputation Impact: Significant; described as 'very disappointing and disturbing' by then-premier Mark McGowanLegal Liabilities: None (no charges filed)Identity Theft Risk: High (exposed PII)
DATA BREACH
Personally Identifiable Information (PII)Healthcare communicationsSensitivity Of Data: High (patient/staff PII, hospital communications during pandemic)Data Exfiltration: Yes (uploaded to public website)Data Encryption: No (unencrypted radio frequencies)Text (decoded radio transmissions)NamesContact details

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for HSS ?
?
What was HSS's A.I Rankiteo Cyber Score in June 2026 ?
?
What was HSS's A.I Rankiteo Cyber Score in May 2026 ?
?
What was HSS's A.I Rankiteo Cyber Score in April 2026 ?
?
What was HSS's A.I Rankiteo Cyber Score in March 2026 ?
?
What was HSS's A.I Rankiteo Cyber Score in February 2026 ?
?
What was HSS's A.I Rankiteo Cyber Score in January 2026 ?
?
What was HSS's A.I Rankiteo Cyber Score in December 2025 ?
?
What was HSS's A.I Rankiteo Cyber Score in November 2025 ?
?
What was HSS's A.I Rankiteo Cyber Score in October 2025 ?
?
What was HSS's A.I Rankiteo Cyber Score in September 2025 ?
?
What was HSS's A.I Rankiteo Cyber Score in August 2025 ?
?
What is the average per-incident point impact on HSS's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with HSS ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view HSS's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?