Subscribe Sign in

Nearly two million Quest Apartment Hotels customers affected by data breach

1 min read Rewritten in plain language
Show what we removed Rules applied: A1×4 A3 D2 D3×5 D4×3 F2 all 30 rules
  • Personal information of nearly two million Quest Apartment Hotels customers has been compromised in a data breach, including credit card, passport and Medicare numbers.
  • David Mansfield, the managing director of The Ascott Limited provided an update this week.
  • All the information relates to records from before June 2025.
  • Quest said it first identified an outage on its website on 17 August, with investigation revealing "a malicious attack" had exploited a vulnerability in a third-party service provider's software.
  • After a data breach involving millions of Optus customers in 2022, the federal government overhauled privacy laws, needing companies to destroy or actively de-identify personal information as soon as it was no longer needed.

5 sentences from our version of the report, chosen to cover it. Nothing here is written; every line is in the article below. How

Headline check

The one thing this headline claims is in the report.

Figures, names and quoted words in the headline, looked for in the report itself — not in the summary above. One claim in this headline could be checked, so this is a narrow pass and not a thorough one. How this is checked

Personal information of nearly two million Quest Apartment Hotels customers has been compromised in a data breach, including credit card, passport and Medicare numbers.

Last month, the accommodation provider identified a cyberattack on a database system via a vulnerability in a third-party technology provider.

David Mansfield, the managing director of The Ascott Limited provided an update this week.

Most information related to names and contacts, but also included:.

All the information relates to records from before June 2025.

Mansfield said the company was contacting those affected directly to tell them of which category they were in, the steps they could take, and available support.

Quest said it first identified an outage on its website on 17 August, with investigation revealing "a malicious attack" had exploited a vulnerability in a third-party service provider's software.

Quest said it was cooperating with the Office of the Australian Information Commissioner, the Australian Signals Directorate, the Australian Cyber Security Centre and Victoria Police.

After a data breach involving millions of Optus customers in 2022, the federal government overhauled privacy laws, needing companies to destroy or actively de-identify personal information as soon as it was no longer needed.

Shortened to 1 minute of reading, this version reads 6.1 on the Niral Score.

You are reading our version, not theirs. This is SBS News's report shortened to its most important sentences, in plainer words, with verdicts and loaded words taken out. Plain description stays, and so do adjectives that carry a fact, such as "former" or "federal". The reporting, the facts and the quotations are theirs — quotations are never edited — and the indicators beside it measure this version. Hover or tap Adjectives to see every one left in the text.

How this outlet filed it, and how we rewrote it

No other newsroom we read has filed on this event, so there is nothing to compare it with yet.

Outlet Niral ScoreAdjectivesSourcingSentimentHappiness
SBS Newsas they published this story 10.1 10 79 -0.3 48.6
Mundane Readneutralized from SBS News 6.4 6 79 -0.1 48.6

Sign in to react.

Comments

Nothing here yet.

Sign in to comment.

Questions

Readers can ask a question about this story here. Questions and answers are for subscribers. Sign in to read them.

Comments are read before they appear where anything in them needs a person to look. Nothing posted here is ever deleted; a comment taken down keeps its text and the reason, so the decision can be looked at again. How this works