QANTAS Cyber Incident

I got this "Here is your tax invoice" email too (once), as a P1. What the heck? The FF and QC links look legitimate apart from the fact they're not https. The PDF preview (I didn't open the PDF) has my name, address and FF #.

If this is a legitimate email, why on earth would they think links to the FF and QC T&Cs would be helpful in any way?
If not, looks like the exploitation has started for me :(
I rang the QFF service centre (dreaded Manila) this morning. Yes the email is legitimate. They sent it last night but there's no payment taken she assured me to which I responded that I know since I have not provided any card details and records for past payments Qantas says is not kept. I asked her to explain why they would send out an email with a tax invoice for something nobody has ordered and where no payment is due. No coherent answer.
She didn't even know why they issued a new P1 card (of course we all know in this community thanks to @Princess Fiona ) when I didn't order one. So much for internal training & communication.
 
I rang the QFF service centre (dreaded Manila) this morning. Yes the email is legitimate.
Thanks for reporting back. Happy it's not a hack, but irritated at QF for this amateurish confusion. I feel like replying and quoting links to their own privacy policies and the OAIC back at them.

I can't wait for my blue card to arrive. /sarcasm
 
I rang the QFF service centre (dreaded Manila) this morning. Yes the email is legitimate. They sent it last night but there's no payment taken she assured me to which I responded that I know since I have not provided any card details and records for past payments Qantas says is not kept. I asked her to explain why they would send out an email with a tax invoice for something nobody has ordered and where no payment is due. No coherent answer.
She didn't even know why they issued a new P1 card (of course we all know in this community thanks to @Princess Fiona ) when I didn't order one. So much for internal training & communication.
my guess… it seems they are ordering the new cards for those eligible, and did this through the regular order system. Instead of suppressing any customer email and payment, they somehow got sent out. The supplier/card printer probably takes details off the internal order system.
 
Just read that Optus is being taken to court re: their 2022 data breach by the Australian Information Commissioner.

I wonder if Qantas will be next?
 
Elevate your business spending to first-class rewards! Sign up today with code AFF10 and process over $10,000 in business expenses within your first 30 days to unlock 10,000 Bonus PayRewards Points.
Join 30,000+ savvy business owners who:

✅ Pay suppliers who don’t accept Amex
✅ Max out credit card rewards—even on government payments
✅ Earn & transfer PayRewards Points to 10+ airline & hotel partners

Start earning today!
- Pay suppliers who don’t take Amex
- Max out credit card rewards—even on government payments
- Earn & Transfer PayRewards Points to 8+ top airline & hotel partners

AFF Supporters can remove this and all advertisements

Become an AFF member!

Join Australian Frequent Flyer (AFF) for free and unlock insider tips, exclusive deals, and global meetups with 65,000+ frequent flyers.

AFF members can also access our Frequent Flyer Training courses, and upgrade to Fast-track your way to expert traveller status and unlock even more exclusive discounts!

AFF forum abbreviations

Wondering about Y, J or any of the other abbreviations used on our forum?

Check out our guide to common AFF acronyms & abbreviations.
Back
Top