April 16, 2026
11 °C London, UK

Serving Intelligent Investors

RBNZ response to illegal breach of data system

Reserve Bank of New Zealand RBNZ inflation monetary

The Reserve Bank of New Zealand (RBNZ) – Te Pūtea Matua continues to respond with urgency to a breach of a third party file sharing service used to share information with external stakeholders.

Governor Adrian Orr says the breach is contained, but it will take time to determine the impact. The analysis of the potentially affected information is being done with pace and care.

“We are actively working with domestic and international cyber security experts and other relevant authorities as part of our investigation. This includes the GCSB’s National Cyber Security Centre which has been notified and is providing guidance and advice.”

“We have been advised by the third party provider that this wasn’t a specific attack on the Reserve Bank, and other users of the file sharing application were also compromised.”

“We recognise the public interest in this incident however we are not in a position to provide further details at this time.”

Providing any further details at this early stage could adversely affect the investigation and the steps being taken to mitigate the breach. The Reserve Bank will continue to work with affected stakeholders directly.

“Our core functions and New Zealand’s financial system remain sound, and Te Pūtea Matua is open for business. This includes our markets operations and management of the cash and payments systems.”

We will provide further facts when it is appropriate to do so.

Key details of incident to date:

  • A third party file sharing service provided by Accellion called FTA (File Transfer Application), used by the Bank to share and store some sensitive information, was illegally accessed.
  • The system has been secured and taken offline while investigations are underway.
  • The Bank is communicating with system users about alternative ways to securely share data.
  • Work is continuing to confirm the nature and extent of information that has been potentially accessed. The compromised data may include some commercially and personally sensitive information.
Previous Article

Richard H. Clarida: U.S. Economic Outlook and Monetary Policy

Next Article

SEC Charges Deutsche Bank With FCPA Violations Related to Third-Party Intermediaries

You might be interested in …

CFTC The Commodity Futures Trading Commission fraud Futures and Options pooled futures

CFTC Charges Former Hawaii Resident in Forex and Futures Ponzi Scheme

Commodity Futures Trading Commission today filed a civil enforcement action in the U.S. District Court for the District of Hawaii against Gregory Demetrius Bryant, Jr., formerly of Hawaii, for fraudulent solicitation, misappropriation, operation of an unlawful commodity pool, and failure to register with the CFTC.