Australia's information commissioner has begun an investigation into Medibank's data-handling practices as the hackers behind the breach dumped the last customer information they stole on the dark web.
The health insurer reported the breach on October 13 and the Russian ransomware group has been releasing customer information in a staged manner since early November.
But the Office of the Australian Information Commissioner confirmed on Thursday it was examining Medibank after preliminary inquiries found enough evidence to press further.