真実

評価: 7.0/10

Coalition
C0161

主張

“myGovIDのセキュリティ脆弱性を無視し、修正しないことを選択した。これは、選択された認証プロトコルが独自仕様であり、標準的な慣行と一致していないために生じたものである。”
元の出典: Matthew Davis
分析日: 29 Jan 2026

元の出典

事実検証

# # # # # # myGovID noun MyGovID セキュリティ noun Security 脆弱ぜいじゃく noun Zeijaku せい Sei - - コード noun Code リプレイ noun Replay 攻撃こうげき noun Kougeki
### myGovID Security Vulnerability - Code Replay Attack
この Kono 主張しゅちょう noun Shuchou topic-marker Wa , myGovID noun MyGovID location/means De 確認かくにん noun Kakunin verb Sa auxiliary-verb Re auxiliary-verb Ta 実在じつざい noun Jitsuzai する verb Suru セキュリティ noun Security 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 指しさし verb Sashi particle Te いる verb Iru .
The claim references a real security vulnerability identified in myGovID.
2024 noun 2024 ねん noun Nen 8 noun 8 つき noun Tsuki , メルボルン noun Melbourne 大学だいがく noun Daigaku possessive No ベン noun Benn / フレン noun Furen グリー noun Glee ( Ben noun Ben Frengley noun Frengley ) Shi and/with To Thinking noun Thinking Cybersecurity noun Cybersecurity possessive No CEO noun CEO auxiliary-verb De あり verb Ari ANU noun ANU 客員きゃくいん noun Kyakuin 教授きょうじゅ noun Kyouju possessive No ヴァネッサ noun Vanessa / ティーグ noun Tiigu ( Vanessa noun Vanessa Teague noun Teague ) Shi object-marker Wo 含むふくむ verb Fukumu セキュリティ noun Security 研究けんきゅう noun Kenkyuu しゃ Mono subject-marker Ga , myGovID noun MyGovID possessive No 認証にんしょう noun Ninshou システム noun System direction/target Ni 重大じゅうだい Juudai auxiliary-verb Na 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 発見はっけん noun Hakken verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
In August 2024, security researchers Ben Frengley (University of Melbourne) and Vanessa Teague (CEO of Thinking Cybersecurity, ANU adjunct professor) discovered a critical vulnerability in myGovID's authentication system [1].
この Kono 脆弱ぜいじゃく noun Zeijaku せい Sei topic-marker Wa , 根本こんぽん noun Konpon てき Mato auxiliary-verb Na 設計せっけい noun Sekkei じょう Ue possessive No 欠陥けっかん noun Kekkan object-marker Wo 悪用あくよう noun Akuyou する verb Suru コード noun Code リプレイ noun Replay 攻撃こうげき noun Kougeki auxiliary-verb De ある verb Aru .
The vulnerability is a **code replay attack** that exploits a fundamental design flaw.
攻撃こうげき noun Kougeki しゃ Mono topic-marker Wa にせ noun Nise possessive No ウェブサイト noun Website object-marker Wo 設定せってい noun Settei verb Shi , ユーザー noun User possessive No メール noun Mail アドレス noun Address object-marker Wo 取得しゅとく noun Shutoku できる verb Dekiru .
An attacker can set up a fake website and capture a user's email address.
攻撃こうげき noun Kougeki しゃ Mono subject-marker Ga 被害ひがい noun Higai しゃ Mono possessive No メール noun Mail object-marker Wo 使用しよう noun Shiyou verb Shi particle Te 正当せいとう noun Seitou auxiliary-verb Na 政府せいふ noun Seifu ポータル noun Pootaru location/means De 認証にんしょう noun Ninshou object-marker Wo 開始かいし noun Kaishi する verb Suru and/with To , ポータル noun Pootaru direction/target Ni 4 noun 4 けた noun Keta possessive No PIN noun PIN subject-marker Ga 表示ひょうじ noun Hyouji verb Sa れる auxiliary-verb Reru .
When the attacker initiates authentication at a legitimate government portal using the victim's email, the portal displays a 4-digit PIN.
攻撃こうげき noun Kougeki しゃ Mono topic-marker Wa この Kono PIN noun PIN object-marker Wo にせ noun Nise possessive No サイト noun Site object-marker Wo 通じつうじ verb Tsuuji particle Te 被害ひがい noun Higai しゃ Mono direction/target Ni 中継ちゅうけい noun Chuukei verb Shi , 被害ひがい noun Higai しゃ Mono subject-marker Ga myGovID noun MyGovID アプリ noun Application direction/target Ni 入力にゅうりょく noun Nyuuryoku する verb Suru and/with To , 自分じぶん noun Jibun subject-marker Ga 知らしら verb Shira ない auxiliary-verb Nai うち noun Uchi direction/target Ni 攻撃こうげき noun Kougeki しゃ Mono direction/target Ni 正当せいとう noun Seitou auxiliary-verb Na 政府せいふ noun Seifu アカウント noun Account direction E possessive No 完全かんぜん Kanzen auxiliary-verb Na アクセス noun Access けん Ken object-marker Wo 付与ふよ noun Fuyo verb Shi particle Te しまう verb Shimau .
The attacker relays this PIN to the victim through the fake site, and when the victim enters it into their myGovID app, they unknowingly grant the attacker full access to legitimate government accounts.
重大じゅうだい Juudai auxiliary-verb Na 設計せっけい noun Sekkei じょう Ue possessive No 弱点じゃくてん noun Jakuten and/with To verb Shi particle Te , myGovID noun MyGovID アプリ noun Application topic-marker Wa " どの Dono 組織そしき noun Soshiki subject-marker Ga 認証にんしょう noun Ninshou object-marker Wo 要求ようきゅう noun Youkyuu verb Shi particle Te いる verb Iru question Ka direction/target Ni 関するかんする verb Kansuru 表示ひょうじ noun Hyouji object-marker Wo 全くまったく adverb Mattaku 提供ていきょう noun Teikyou verb Shi ない auxiliary-verb Nai 」[ ?? 2 noun 2 ]。 ??
A critical design weakness is that the myGovID app provides **no indication of which organization is requesting authentication** [2].
研究けんきゅう noun Kenkyuu しゃ Mono topic-marker Wa 2024 noun 2024 ねん noun Nen 8 noun 8 がつ noun Tsuki 19 noun 19 Hi direction/target Ni この Kono 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo オーストラリア noun Australia 信号しんごう noun Shingou きょく noun Kyoku ( Australian noun Australian Signals noun Signals Directorate noun Directorate , ASD noun ASD ) direction/target Ni 報告ほうこく noun Houkoku verb Shi auxiliary-verb Ta [ [ 3 noun 3 ]。 ??
The researchers reported this vulnerability to the Australian Signals Directorate (ASD) on August 19, 2024 [3].
業界ぎょうかい noun Gyoukai possessive No ベスト noun Best プラクティス noun Practice direction/target Ni 従いしたがい verb Shitagai , 政府せいふ noun Seifu subject-marker Ga 修正しゅうせい noun Shuusei object-marker Wo 開発かいはつ noun Kaihatsu / 実装じっそう noun Jissou する verb Suru 時間じかん noun Jikan object-marker Wo 確保かくほ noun Kakuho する verb Suru ため noun Tame , 公開こうかい noun Koukai 開示かいじ noun Kaiji まえ noun Mae direction/target Ni 90 noun 90 日間かかん noun Kakan possessive No 責任せきにん noun Sekinin ある verb Aru 開示かいじ noun Kaiji 期間きかん noun Kikan object-marker Wo 提案ていあん noun Teian verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
According to industry best practice, they proposed a 90-day responsible disclosure period to allow the government time to develop and implement a fix before public disclosure [1].
# # # # # # 政府せいふ noun Seifu possessive No 対応たいおう noun Taiou : 修正しゅうせい noun Shuusei 拒否きょひ noun Kyohi
### Government's Response: Refusal to Fix
2024 noun 2024 ねん noun Nen 9 noun 9 がつ noun Tsuki 18 noun 18 Hi , オーストラリア noun Australia 税務ぜいむ noun Zeimu きょく noun Kyoku ( ATO noun ATO ) topic-marker Wa 研究けんきゅう noun Kenkyuu しゃ Mono and/with To 会合かいごう noun Kaigou verb Shi , " プロトコル noun Protocol object-marker Wo 変更へんこう noun Henkou する verb Suru 予定よてい noun Yotei topic-marker Wa ない adjective Nai " and/with To 明確めいかく Meikaku auxiliary-verb Ni 述べのべ verb Nobe auxiliary-verb Ta [ [ 3 noun 3 ]。 ??
On September 18, 2024, the Australian Taxation Office (ATO) met with the researchers and explicitly stated it **"did not intend to change the protocol"** [3].
これ Kore topic-marker Wa , 政府せいふ noun Seifu subject-marker Ga 脆弱ぜいじゃく noun Zeijaku せい Sei possessive No 修正しゅうせい noun Shuusei object-marker Wo 拒否きょひ noun Kyohi verb Shi auxiliary-verb Ta こと noun Koto object-marker Wo 意味いみ noun Imi する verb Suru .
This means the government declined to remediate the vulnerability.
また conjunction Mata , ATO noun ATO topic-marker Wa この Kono 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo " 技術ぎじゅつ noun Gijutsu てき Mato auxiliary-verb Na 欠陥けっかん noun Kekkan " location/means De topic-marker Wa なく adjective Naku " 公共こうきょう noun Koukyou 認識にんしき noun Ninshiki possessive No 問題もんだい noun Mondai " and/with To verb Shi particle Te 特徴とくちょう noun Tokuchou づけ verb Zuke auxiliary-verb Ta [ [ 3 noun 3 ]。 ??
Additionally, the ATO characterized the vulnerability as "more of a public awareness issue" rather than a technical flaw requiring protocol changes [3].
ATO noun ATO topic-marker Wa また conjunction Mata , " myGovID noun MyGovID topic-marker Wa あらゆる Arayuru 認証にんしょう noun Ninshou 情報じょうほう noun Jouhou より particle Yori 安全あんぜん noun Anzen " and/with To いう verb Iu 声明せいめい noun Seimei object-marker Wo 発表はっぴょう noun Happyou verb Shi , 研究けんきゅう noun Kenkyuu しゃ Mono possessive No 懸念けねん noun Kenen object-marker Wo 却下きゃっか noun Kyakka verb Shi auxiliary-verb Ta [ [ 4 noun 4 ]。 ??
The ATO also issued statements claiming myGovID was "more secure than any credential," dismissing researcher concerns [4].
政府せいふ noun Seifu subject-marker Ga 脆弱ぜいじゃく noun Zeijaku せい Sei possessive No 修正しゅうせい noun Shuusei object-marker Wo 拒否きょひ noun Kyohi verb Shi auxiliary-verb Ta あと noun Ato , 研究けんきゅう noun Kenkyuu しゃ Mono topic-marker Wa 責任せきにん noun Sekinin ある verb Aru 開示かいじ noun Kaiji 期間きかん noun Kikan object-marker Wo 提案ていあん noun Teian verb Shi particle Te verb I auxiliary-verb Ta direction/target Ni also Mo かかわら verb Kakawara auxiliary-verb Zu , 2024 noun 2024 ねん noun Nen 9 noun 9 がつ noun Tsuki 21 noun 21 Hi direction/target Ni 調査ちょうさ noun Chousa 結果けっか noun Kekka object-marker Wo 公開こうかい noun Koukai verb Shi auxiliary-verb Ta [ [ 2 noun 2 ]。 ??
After the government refused to fix the vulnerability, the researchers went public on September 21, 2024 - publishing their findings despite having proposed a responsible disclosure period [2].
セキュリティ noun Security 研究けんきゅう noun Kenkyuu しゃ Mono topic-marker Wa , ログ noun Log イン noun In じょう Ue possessive No 欠陥けっかん noun Kekkan subject-marker Ga 修正しゅうせい noun Shuusei verb Sa れる auxiliary-verb Reru まで until Ma de myGovID noun MyGovID possessive No 使用しよう noun Shiyou object-marker Wo 控えるひかえる verb Hikaeru よう You 公衆こうしゅう noun Koushuu direction/target Ni 警告けいこく noun Keikoku verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
The security researchers explicitly warned the public not to use myGovID until the login flaw was fixed [1].
# # # # # # 監察かんさつ noun Kansatsu かん Kan direction/target Ni よる verb Yoru 裏付けうらづけ noun Urazuke 証拠しょうこ noun Shouko
### Supporting Evidence from Ombudsman
2024 noun 2024 ねん noun Nen 8 noun 8 つき noun Tsuki , オーストラリア noun Australia 監察かんさつ noun Kansatsu かん Kan topic-marker Wa " myGov noun MyGov possessive No セキュリティ noun Security 確保かくほ noun Kakuho " レポート noun Report object-marker Wo 発表はっぴょう noun Happyou verb Shi , myGov noun MyGov / / myGovID noun MyGovID システム noun System possessive No 複数ふくすう noun Fukusuu possessive No セキュリティ noun Security じょう Ue possessive No 欠陥けっかん noun Kekkan object-marker Wo 特定とくてい noun Tokutei verb Shi auxiliary-verb Ta .
In August 2024, the Australian Ombudsman published the "Keeping myGov Secure" report, which identified multiple security deficiencies in myGov/myGovID systems, including inconsistent proof-of-identity standards, limited security controls for unauthorized account linking, and instances of fraudsters redirecting pension payments and submitting false benefit claims [5].
これ Kore direction/target Ni topic-marker Wa , 一貫いっかん noun Ikkan せい Sei possessive No ない adjective Nai 身元みもと noun Mimoto 証明しょうめい noun Shoumei 基準きじゅん noun Kijun , 不正ふせい noun Fusei auxiliary-verb Na アカウント noun Account 連携れんけい noun Renkei direction/target Ni 対するたいする verb Taisuru 限定げんてい noun Gentei てき Mato auxiliary-verb Na セキュリティ noun Security 管理かんり noun Kanri , 詐欺さぎ noun Sagi Shi subject-marker Ga 年金ねんきん noun Nenkin 支払いしはらい noun Shiharai object-marker Wo 振り替えふりかえ verb Furikae たり particle Tari 虚偽きょぎ noun Kyogi possessive No 給付きゅうふ noun Kyuufu きん Kin 請求せいきゅう noun Seikyuu object-marker Wo 行っおこなっ verb I たり particle Tari verb Shi auxiliary-verb Ta 事例じれい noun Jirei など particle Nado subject-marker Ga 含まふくま verb Fukuma れる auxiliary-verb Reru [ [ 5 noun 5 ]。 ??
Services Australia agreed to these recommendations in late July 2024 but deferred implementation to early 2025, indicating no immediate action was taken on urgent security matters [5].
Services noun Services Australia noun Australia topic-marker Wa 2024 noun 2024 ねん noun Nen 7 noun 7 がつ noun Tsuki 下旬げじゅん noun Gejun direction/target Ni これ Kore Ra possessive No 勧告かんこく noun Kankoku direction/target Ni 同意どうい noun Doui verb Shi auxiliary-verb Ta subject-marker Ga , 実施じっし noun Jisshi object-marker Wo 2025 noun 2025 ねん noun Nen 初頭しょとう noun Shotou direction/target Ni 延期えんき noun Enki verb Shi , 緊急きんきゅう noun Kinkyuu possessive No セキュリティ noun Security 問題もんだい noun Mondai direction/target Ni 対したいし verb Taishi particle Te 即座そくざ noun Sokuza possessive No 対応たいおう noun Taiou subject-marker Ga 取らとら verb Tora auxiliary-verb Re particle Te verb I ない auxiliary-verb Nai こと noun Koto object-marker Wo 示ししめし verb Shimeshi auxiliary-verb Ta [ [ 5 noun 5 ]。 ??

欠落した文脈

# # # # # # 1 noun 1 . . " 独自どくじ Dokuji 仕様しよう noun Shiyou " possessive No 認証にんしょう noun Ninshou プロトコル noun Protocol topic-marker Wa 正確せいかく noun Seikaku
### 1. The "Bespoke" Authentication Protocol is Accurate
この Kono 主張しゅちょう noun Shuchou topic-marker Wa , myGovID noun MyGovID possessive No 認証にんしょう noun Ninshou プロトコル noun Protocol object-marker Wo 標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb De ない adjective Nai もの noun Mono and/with To verb Shi particle Te 正確せいかく noun Seikaku auxiliary-verb Ni 特徴とくちょう noun Tokuchou づけ verb Zuke particle Te いる verb Iru .
The claim accurately characterizes myGovID's authentication protocol as non-standard. myGovID uses the **Trusted Digital Identity Framework (TDIF)**, which is a proprietary, bespoke system specific to Australia - not OpenID Connect, OAuth 2.0, or other internationally recognized standards [6].
myGovID noun MyGovID topic-marker Wa " 信頼しんらい noun Shinrai できる verb Dekiru デジタル noun Digital 身元みもと noun Mimoto フレームワーク noun Framework ( Trusted noun Trusted Digital noun Digital Identity noun Identity Framework noun Framework , TDIF noun TDIF ) " object-marker Wo 使用しよう noun Shiyou verb Shi particle Te おり verb Ori , これ Kore topic-marker Wa オーストラリア noun Australia 固有こゆう noun Koyuu possessive No 独自どくじ Dokuji システム noun System auxiliary-verb De あり verb Ari , OpenID noun OpenID Connect noun Connect particle Ya OAuth noun OAuth 2 noun 2 . . 0 noun 0 など particle Nado possessive No 国際こくさい noun Kokusai てき Mato auxiliary-verb Ni 認めみとめ verb Mitome られ auxiliary-verb Rare auxiliary-verb Ta 標準ひょうじゅん noun Hyoujun location/means De topic-marker Wa ない adjective Nai [ [ 6 noun 6 ]。 ??
Security researchers have recommended that the TDIF framework be deprecated and replaced with standard protocols like OpenID Connect [2].
セキュリティ noun Security 研究けんきゅう noun Kenkyuu しゃ Mono topic-marker Wa , TDIF noun TDIF フレームワーク noun Framework object-marker Wo 廃止はいし noun Haishi verb Shi , OpenID noun OpenID Connect noun Connect など particle Nado possessive No 標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb Na プロトコル noun Protocol direction/target Ni 置き換えるおきかえる verb Okikaeru こと noun Koto object-marker Wo 推奨すいしょう noun Suishou verb Shi particle Te いる verb Iru [ [ 2 noun 2 ]。 ??
### 2. Protocol Design vs. Implementation Issues
# # # # # # 2 noun 2 . . プロトコル noun Protocol 設計せっけい noun Sekkei and/with To 実装じっそう noun Jissou じょう Ue possessive No 問題もんだい noun Mondai
While the vulnerability exists, there is a technical distinction worth noting: the fundamental flaw appears to stem from the protocol's design (the lack of context about who is requesting authentication in the myGovID app), not necessarily implementation errors.
脆弱ぜいじゃく noun Zeijaku せい Sei topic-marker Wa 存在そんざい noun Sonzai する verb Suru subject-marker Ga , 技術ぎじゅつ noun Gijutsu てき Mato auxiliary-verb Na 区別くべつ noun Kubetsu subject-marker Ga 重要じゅうよう Juuyou auxiliary-verb De ある verb Aru : 根本こんぽん noun Konpon てき Mato auxiliary-verb Na 欠陥けっかん noun Kekkan topic-marker Wa プロトコル noun Protocol possessive No 設計せっけい noun Sekkei ( myGovID noun MyGovID アプリ noun Application direction/target Ni 認証にんしょう noun Ninshou object-marker Wo 要求ようきゅう noun Youkyuu verb Shi particle Te いる verb Iru 主体しゅたい noun Shutai direction/target Ni 関するかんする verb Kansuru 文脈ぶんみゃく noun Bunmyaku subject-marker Ga 欠如けつじょ noun Ketsujo verb Shi particle Te いる verb Iru こと noun Koto ) から from/because Kara 生じしょうじ verb Shouji particle Te いる verb Iru よう You auxiliary-verb De あり verb Ari , 必ずかならず adverb Kanarazu しも particle Shimo 実装じっそう noun Jissou じょう Ue possessive No エラー noun Error and/with To いう verb Iu わけ noun Wake location/means De topic-marker Wa ない adjective Nai .
However, this distinction does not diminish the validity of the claim - a flawed protocol design is still a flaw that requires fixing.
しかし conjunction Shikashi , この Kono 区別くべつ noun Kubetsu topic-marker Wa 主張しゅちょう noun Shuchou possessive No 妥当だとう noun Datou せい Sei object-marker Wo 減少げんしょう noun Genshou verb Sa せる auxiliary-verb Seru もの noun Mono auxiliary-verb De topic-marker Wa ない adjective Nai .
### 3. Timeline and Context
設計せっけい noun Sekkei じょう Ue possessive No 欠陥けっかん noun Kekkan auxiliary-verb De あっ verb A particle Te also Mo , 修正しゅうせい noun Shuusei subject-marker Ga 必要ひつよう noun Hitsuyou auxiliary-verb Na 欠陥けっかん noun Kekkan auxiliary-verb De ある verb Aru .
The vulnerability discovery occurred late in the Coalition government's tenure.
# # # # # # 3 noun 3 . . タイム noun Time ライン noun Line and/with To 文脈ぶんみゃく noun Bunmyaku
The Coalition was voted out of office in May 2022.
脆弱ぜいじゃく noun Zeijaku せい Sei possessive No 発見はっけん noun Hakken topic-marker Wa , 連立れんりつ noun Renritsu 政権せいけん noun Seiken ( Coalition noun Coalition ) possessive No 任期にんき noun Ninki possessive No 終わりおわり noun Owari direction/target Ni 近いちかい adjective Chikai 時期じき noun Jiki direction/target Ni 起きおき verb Oki auxiliary-verb Ta .
The vulnerability was discovered in August 2024 by the Albanese Labor government.
連立れんりつ noun Renritsu 政権せいけん noun Seiken topic-marker Wa 2022 noun 2022 ねん noun Nen 5 noun 5 がつ noun Tsuki direction/target Ni 選挙せんきょ noun Senkyo location/means De 敗北はいぼく noun Haiboku verb Shi auxiliary-verb Ta .
This means: - The Coalition government (2013-2022) would not have made the September 2024 decision to refuse remediation - The current (Labor) government inherited myGovID and made the decision not to change the protocol [3] However, the claim may be referring to the Coalition government's original decision to develop and deploy myGovID using a bespoke, non-standard protocol rather than established industry standards - which would have been a decision made during the Coalition's time in office (2013-2022).
この Kono 脆弱ぜいじゃく noun Zeijaku せい Sei topic-marker Wa アルバ noun Aruba ニーズ noun Needs 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken ( Albanese noun Albanese Labor noun Labor government noun Government ) Shita possessive No 2024 noun 2024 ねん noun Nen 8 noun 8 がつ noun Tsuki direction/target Ni 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta .
これ Kore topic-marker Wa 以下いか noun Ika object-marker Wo 意味いみ noun Imi する verb Suru :
- - 連立れんりつ noun Renritsu 政権せいけん noun Seiken ( 2013 noun 2013 ねん noun Nen - - 2022 noun 2022 ねん noun Nen ) topic-marker Wa , 2024 noun 2024 ねん noun Nen 9 noun 9 がつ noun Tsuki possessive No 修正しゅうせい noun Shuusei 拒否きょひ noun Kyohi possessive No 決定けってい noun Kettei object-marker Wo 下しくだし verb Oroshi auxiliary-verb Ta わけ noun Wake location/means De topic-marker Wa ない adjective Nai
- - 現在げんざい noun Genzai possessive No ( 労働ろうどう noun Roudou とう Tou ) 政権せいけん noun Seiken topic-marker Wa myGovID noun MyGovID object-marker Wo 引き継ぎひきつぎ verb Hikitsugi , プロトコル noun Protocol object-marker Wo 変更へんこう noun Henkou verb Shi ない auxiliary-verb Nai 決定けってい noun Kettei object-marker Wo 下しくだし verb Oroshi auxiliary-verb Ta [ [ 3 noun 3 ] ]
ただし conjunction Tadashi , この Kono 主張しゅちょう noun Shuchou topic-marker Wa , 連立れんりつ noun Renritsu 政権せいけん noun Seiken subject-marker Ga 標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb Na 業界ぎょうかい noun Gyoukai プロトコル noun Protocol location/means De topic-marker Wa なく adjective Naku 独自どくじ Dokuji 仕様しよう noun Shiyou possessive No プロトコル noun Protocol object-marker Wo 使用しよう noun Shiyou verb Shi particle Te myGovID noun MyGovID object-marker Wo 開発かいはつ noun Kaihatsu / 展開てんかい noun Tenkai する verb Suru and/with To いう verb Iu 当初とうしょ noun Tousho possessive No 決定けってい noun Kettei object-marker Wo 指しさし verb Sashi particle Te いる verb Iru 可能かのう Kanou せい Sei subject-marker Ga ある verb Aru .
これ Kore topic-marker Wa 連立れんりつ noun Renritsu 政権せいけん noun Seiken 在任ざいにん noun Zainin ちゅう Naka ( 2013 noun 2013 ねん noun Nen - - 2022 noun 2022 ねん noun Nen ) direction/target Ni 行わおこなわ verb Okonawa auxiliary-verb Re auxiliary-verb Ta 決定けってい noun Kettei auxiliary-verb De あろう verb Arou .

情報源の信頼性評価

# # # # # # もと noun Moto possessive No ソース noun Sauce : Thinking noun Thinking Cybersecurity noun Cybersecurity
### Original Source: Thinking Cybersecurity
提供ていきょう noun Teikyou verb Sa auxiliary-verb Re auxiliary-verb Ta もと noun Moto possessive No ソース noun Sauce ( Thinking noun Thinking Cybersecurity noun Cybersecurity ) topic-marker Wa , ヴァネッサ noun Vanessa / ティーグ noun Tiigu ( Vanessa noun Vanessa Teague noun Teague ) Shi subject-marker Ga 率いるひきいる verb Hikiiru 組織そしき noun Soshiki auxiliary-verb De あり verb Ari , 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 発見はっけん noun Hakken verb Shi auxiliary-verb Ta 研究けんきゅう noun Kenkyuu しゃ Mono possessive No 一人ひとり noun Hitori auxiliary-verb De ある verb Aru .
The original source provided (Thinking Cybersecurity) is an organization led by Vanessa Teague, one of the researchers who discovered the vulnerability.
これ Kore topic-marker Wa , 脆弱ぜいじゃく noun Zeijaku せい Sei 自体じたい noun Jitai direction/target Ni つい verb Tsui particle Te possessive No 直接ちょくせつ noun Chokusetsu てき Mato auxiliary-verb Na 情報じょうほう noun Jouhou げん Minamoto object-marker Wo もたらす verb Motarasu .
This creates a direct source on the vulnerability itself.
ヴァネッサ noun Vanessa / ティーグ noun Tiigu Shi topic-marker Wa 以下いか noun Ika possessive No 通りとおり noun Toori :
Vanessa Teague is: - An ANU adjunct professor and security researcher - A credible academic voice in cybersecurity - Has published peer-reviewed work on electoral security and digital systems [7] However, as one of the researchers reporting on their own finding, there is inherent bias in favor of emphasizing the vulnerability's severity.
- - ANU noun ANU 客員きゃくいん noun Kyakuin 教授きょうじゅ noun Kyouju auxiliary-verb De あり verb Ari セキュリティ noun Security 研究けんきゅう noun Kenkyuu しゃ Mono
### Primary Sources on This Issue
- - サイバー Cyber セキュリティ noun Security direction/target Ni おけ verb Oke auxiliary-verb Ru 信頼しんらい noun Shinrai できる verb Dekiru 学術がくじゅつ noun Gakujutsu てき Mato auxiliary-verb Na こえ noun Koe
The most reliable sources are: - **Technology news outlets** (iTnews, InnovationAus): Mainstream Australian tech journalism covering the vulnerability discovery and government response [1][3] - **Government sources** (Ombudsman report, ATO statements): Official documentation of security concerns and government positions [4][5] - **Security research** (Thinking Cybersecurity, researchers' technical documentation): Academic and professional security analysis [2] The claim is well-supported by mainstream technology journalism and government reports, not primarily dependent on a single partisan source.
- - 選挙せんきょ noun Senkyo セキュリティ noun Security and/with To デジタル noun Digital システム noun System direction/target Ni 関するかんする verb Kansuru 査読さどく noun Sadoku 済みずみ Sumi possessive No 論文ろんぶん noun Ronbun object-marker Wo 発表はっぴょう noun Happyou verb Shi particle Te いる verb Iru [ [ 7 noun 7 ] ]
しかし conjunction Shikashi , 自らみずから noun Mizukara possessive No 発見はっけん noun Hakken object-marker Wo 報告ほうこく noun Houkoku する verb Suru 研究けんきゅう noun Kenkyuu しゃ Mono possessive No 一人ひとり noun Hitori and/with To verb Shi particle Te , 脆弱ぜいじゃく noun Zeijaku せい Sei possessive No 深刻しんこく Shinkoku Sa object-marker Wo 強調きょうちょう noun Kyouchou する verb Suru and/with To いう verb Iu 固有こゆう noun Koyuu possessive No 偏りかたより noun Katayori subject-marker Ga 存在そんざい noun Sonzai する verb Suru .
# # # # # # この Kono 問題もんだい noun Mondai direction/target Ni 関するかんする verb Kansuru いち noun Ichi Tsugi 情報じょうほう noun Jouhou げん Minamoto
最ももっとも adverb Mottomo 信頼しんらい noun Shinrai できる verb Dekiru 情報じょうほう noun Jouhou げん Minamoto topic-marker Wa 以下いか noun Ika possessive No 通りとおり noun Toori :
- - * * * * 技術ぎじゅつ noun Gijutsu ニュース noun News 媒体ばいたい noun Baitai * * * * ( iTnews noun ITnews , InnovationAus noun InnovationAus ) : 脆弱ぜいじゃく noun Zeijaku せい Sei possessive No 発見はっけん noun Hakken and/with To 政府せいふ noun Seifu 対応たいおう noun Taiou object-marker Wo 報じほうじ verb Houji auxiliary-verb Ta オーストラリア noun Australia possessive No 主流しゅりゅう noun Shuryuu 技術ぎじゅつ noun Gijutsu ジャーナリズム noun Journalism [ [ 1 noun 1 ][ ][ 3 noun 3 ] ]
- - * * * * 政府せいふ noun Seifu 情報じょうほう noun Jouhou げん Minamoto * * * * ( 監察かんさつ noun Kansatsu かん Kan レポート noun Report , ATO noun ATO 声明せいめい noun Seimei ) : セキュリティ noun Security じょう Ue possessive No 懸念けねん noun Kenen and/with To 政府せいふ noun Seifu possessive No 立場たちば noun Tachiba possessive No 公式こうしき noun Koushiki 文書ぶんしょ noun Bunsho [ [ 4 noun 4 ][ ][ 5 noun 5 ] ]
- - * * * * セキュリティ noun Security 研究けんきゅう noun Kenkyuu * * * * ( Thinking noun Thinking Cybersecurity noun Cybersecurity , 研究けんきゅう noun Kenkyuu しゃ Mono possessive No 技術ぎじゅつ noun Gijutsu 文書ぶんしょ noun Bunsho ) : 学術がくじゅつ noun Gakujutsu てき Mato / 専門せんもん noun Senmon てき Mato auxiliary-verb Na セキュリティ noun Security 分析ぶんせき noun Bunseki [ [ 2 noun 2 ] ]
この Kono 主張しゅちょう noun Shuchou topic-marker Wa , 主流しゅりゅう noun Shuryuu possessive No 技術ぎじゅつ noun Gijutsu ジャーナリズム noun Journalism and/with To 政府せいふ noun Seifu レポート noun Report direction/target Ni よっ verb Yo particle Te 十分じゅうぶん Juu fun auxiliary-verb Ni 裏付けうらづけ verb Urazuke られ auxiliary-verb Rare particle Te おり verb Ori , 単一たんいつ Tan'itsu possessive No 党派とうは noun Touha sources noun Sources direction/target Ni 主におもに adverb Omoni 依存いぞん noun Izon verb Shi particle Te いる verb Iru わけ noun Wake location/means De topic-marker Wa ない adjective Nai .
⚖️

労働党比較

# # # # # # 労働ろうどう noun Roudou とう Tou also Mo 同様どうよう Douyou possessive No 独自どくじ Dokuji 認証にんしょう noun Ninshou アプローチ noun Approach object-marker Wo 採用さいよう noun Saiyou verb Shi auxiliary-verb Ta question Ka ?
### Did Labor Adopt Similar Bespoke Authentication Approaches?
労働ろうどう noun Roudou とう Tou topic-marker Wa myGovID noun MyGovID subject-marker Ga 開発かいはつ noun Kaihatsu verb Sa auxiliary-verb Re auxiliary-verb Ta 時期じき noun Jiki ( 連立れんりつ noun Renritsu 政権せいけん noun Seiken subject-marker Ga 2013 noun 2013 ねん noun Nen - - 2022 noun 2022 ねん noun Nen direction/target Ni 統治とうち noun Touchi ) direction/target Ni topic-marker Wa 政権せいけん noun Seiken object-marker Wo 担っになっ verb Nina particle Te verb I なかっ auxiliary-verb Naka auxiliary-verb Ta .
Labor was not in government when myGovID was developed (Coalition governed 2013-2022).
労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken topic-marker Wa 2022 noun 2022 ねん noun Nen 5 noun 5 がつ noun Tsuki direction/target Ni 政権せいけん noun Seiken object-marker Wo 掌握しょうあく noun Shouaku verb Shi auxiliary-verb Ta さい noun Sai direction/target Ni myGovID noun MyGovID システム noun System object-marker Wo 引き継いひきつい verb Hikitsui auxiliary-verb Da .
The Labor government inherited the myGovID system when they took office in May 2022. **However**, the more relevant comparison is: **How did Labor respond to the discovered vulnerability?** As noted above, the decision to "not intend to change the protocol" in September 2024 was made by the **Labor government's ATO**, not the Coalition.
* * * * しかし conjunction Shikashi * * * * , より adverb Yori 関連かんれん noun Kanren せい Sei possessive No 高いたかい adjective Takai 比較ひかく noun Hikaku topic-marker Wa : * * * * 労働ろうどう noun Roudou とう Tou topic-marker Wa 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo どの Dono よう You auxiliary-verb Ni 対応たいおう noun Taiou verb Shi auxiliary-verb Ta question Ka ?
This indicates both governments (Coalition for original development, Labor for response to the discovered vulnerability) made questionable cybersecurity decisions regarding myGovID.
* * * * and/with To いう verb Iu てん noun Ten auxiliary-verb De ある verb Aru .
### Labor's Approach to Digital Identity
上記じょうき noun Jouki possessive No 通りとおり noun Toori , 2024 noun 2024 ねん noun Nen 9 noun 9 がつ noun Tsuki possessive No " プロトコル noun Protocol object-marker Wo 変更へんこう noun Henkou する verb Suru 予定よてい noun Yotei topic-marker Wa ない adjective Nai " and/with To いう verb Iu 決定けってい noun Kettei topic-marker Wa , * * * * 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken Shita possessive No ATO noun ATO * * * * direction/target Ni よっ verb Yo particle Te 下さくださ verb Kudasa auxiliary-verb Re auxiliary-verb Ta もの noun Mono auxiliary-verb De あり verb Ari , 連立れんりつ noun Renritsu 政権せいけん noun Seiken location/means De topic-marker Wa ない adjective Nai .
Labor has pursued continued development of myGovID (rebranded as "myID" in November 2024) under a digital identity scheme.
これ Kore topic-marker Wa , りょう Ryou 政権せいけん noun Seiken ( 独自どくじ Dokuji システム noun System object-marker Wo 開発かいはつ noun Kaihatsu verb Shi auxiliary-verb Ta 連立れんりつ noun Renritsu 政権せいけん noun Seiken , 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta 脆弱ぜいじゃく noun Zeijaku せい Sei direction/target Ni 対処たいしょ noun Taisho verb Shi auxiliary-verb Ta 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken ) subject-marker Ga myGovID noun MyGovID direction/target Ni 関しかんし verb Kanshi particle Te 疑わしいうたがわしい adjective Utagawashii サイバー Cyber セキュリティ noun Security possessive No 決定けってい noun Kettei object-marker Wo 下しくだし verb Oroshi auxiliary-verb Ta こと noun Koto object-marker Wo 示唆しさ noun Shisa verb Shi particle Te いる verb Iru .
Labor has not abandoned the bespoke TDIF framework but instead continued operating within it [8].
# # # # # # 労働ろうどう noun Roudou とう Tou possessive No デジタル noun Digital 身元みもと noun Mimoto アプローチ noun Approach
This suggests Labor may bear some responsibility for not addressing the architectural vulnerability once it was discovered under their watch.
労働ろうどう noun Roudou とう Tou topic-marker Wa デジタル noun Digital 身元みもと noun Mimoto スキーム noun Scheme possessive No もと noun Shita location/means De myGovID noun MyGovID ( 2024 noun 2024 ねん noun Nen 11 noun 11 がつ noun Tsuki direction/target Ni " myID noun MyID " and/with To verb Shi particle Te さい Sai ブランド noun Brand ) possessive No 継続けいぞく noun Keizoku てき Mato auxiliary-verb Na 開発かいはつ noun Kaihatsu object-marker Wo 追求ついきゅう noun Tsuikyuu verb Shi particle Te いる verb Iru .
労働ろうどう noun Roudou とう Tou topic-marker Wa 独自どくじ Dokuji possessive No TDIF noun TDIF フレームワーク noun Framework object-marker Wo 廃止はいし noun Haishi verb Se auxiliary-verb Zu , 代わりかわり noun Kawari direction/target Ni それ Sore object-marker Wo 継続けいぞく noun Keizoku verb Shi particle Te 運用うんよう noun Un'you verb Shi particle Te いる verb Iru [ [ 8 noun 8 ]。 ??
これ Kore topic-marker Wa , 労働ろうどう noun Roudou とう Tou subject-marker Ga 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 引き継いひきつい verb Hikitsui auxiliary-verb Da あと noun Ato also Mo 対応たいおう noun Taiou verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta こと noun Koto auxiliary-verb De , 一定いってい noun Ittei possessive No 責任せきにん noun Sekinin object-marker Wo 負っおっ verb O particle Te いる verb Iru 可能かのう Kanou せい Sei object-marker Wo 示唆しさ noun Shisa verb Shi particle Te いる verb Iru .
🌐

バランスの取れた視点

# # # # # # 連立れんりつ noun Renritsu 政権せいけん noun Seiken possessive No 設計せっけい noun Sekkei じょう Ue possessive No 決定けってい noun Kettei ( 2013 noun 2013 ねん noun Nen - - 2022 noun 2022 ねん noun Nen )
### The Coalition's Design Decision (2013-2022)
連立れんりつ noun Renritsu 政権せいけん noun Seiken subject-marker Ga 標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb Na 業界ぎょうかい noun Gyoukai プロトコル noun Protocol auxiliary-verb De ある verb Aru OpenID noun OpenID Connect noun Connect など particle Nado location/means De topic-marker Wa なく adjective Naku , 独自どくじ Dokuji possessive No 認証にんしょう noun Ninshou プロトコル noun Protocol ( TDIF noun TDIF ) object-marker Wo 使用しよう noun Shiyou verb Shi particle Te myGovID noun MyGovID object-marker Wo 開発かいはつ noun Kaihatsu する verb Suru こと noun Koto object-marker Wo 決定けってい noun Kettei verb Shi auxiliary-verb Ta さい noun Sai , これ Kore topic-marker Wa 疑わしいうたがわしい adjective Utagawashii アーキテクチャ noun Architecture じょう Ue possessive No 決定けってい noun Kettei auxiliary-verb De あっ verb A auxiliary-verb Ta .
When the Coalition government decided to develop myGovID using a proprietary, bespoke authentication protocol (TDIF) rather than adopting internationally standard protocols like OpenID Connect, this represented a questionable architectural decision.
この Kono 選択せんたく noun Sentaku possessive No 理由りゆう noun Riyuu topic-marker Wa おそらく adverb Osoraku 以下いか noun Ika possessive No 通りとおり noun Toori :
The reasons for this choice were likely: - Desire for a uniquely Australian solution tailored to specific government needs - Potential national sovereignty concerns (not relying on international standards) - Perceived control over the system's security and operations However, security experts argue that bespoke authentication systems are inherently riskier because they: - Have limited external security review compared to widely-used standards - Don't benefit from years of community vulnerability discovery and patching - Increase the chance of design flaws like the one discovered in 2024 [2] **Standard security practice is to use proven, widely-audited protocols unless there is a compelling reason not to.**
- - 特定とくてい noun Tokutei possessive No 政府せいふ noun Seifu ニーズ noun Needs direction/target Ni 合わせあわせ verb Awase auxiliary-verb Ta 独自どくじ Dokuji possessive No オーストラリア noun Australia ソリューション noun Solution object-marker Wo 求めるもとめる verb Motomeru 意向いこう noun Ikou
### The Government's Response to the Discovered Vulnerability
- - 潜在せんざい noun Senzai てき Mato auxiliary-verb Na 国家こっか noun Kokka 主権しゅけん noun Shuken じょう Ue possessive No 懸念けねん noun Kenen ( 国際こくさい noun Kokusai 標準ひょうじゅん noun Hyoujun direction E possessive No 依存いぞん noun Izon object-marker Wo 避けるさける verb Sakeru )
More problematic than the original design choice was the response when the vulnerability was discovered: **During Coalition government (2013-2022):** - The Coalition would have deployed and operated myGovID but the vulnerability wasn't discovered until 2024 (after their loss of office) **During Labor government (September 2024 onward):** - The ATO explicitly refused to fix the known vulnerability, stating they "did not intend to change the protocol" - The government dismissed it as a "public awareness issue" rather than a technical design flaw - No remediation timeline or plan was announced - The system continued to operate with the known vulnerability
- - システム noun System possessive No セキュリティ noun Security and/with To 運用うんよう noun Un'you direction/target Ni 対するたいする verb Taisuru 支配しはい noun Shihai object-marker Wo 望むのぞむ verb Nozomu
### Expert and Institutional Perspectives
しかし conjunction Shikashi , セキュリティ noun Security 専門せんもん noun Senmon Ie topic-marker Wa , 独自どくじ Dokuji possessive No 認証にんしょう noun Ninshou システム noun System subject-marker Ga 本質ほんしつ noun Honshitsu てき Mato auxiliary-verb Ni リスク noun Risk subject-marker Ga 高いたかい adjective Takai and/with To 主張しゅちょう noun Shuchou する verb Suru :
The Ombudsman's report reinforces that myGov/myGovID security is inadequate, with the government only agreeing to address deficiencies in 2025 [5].
- - 広くひろく adjective Hiroku 使用しよう noun Shiyou verb Sa auxiliary-verb Re particle Te いる verb Iru 標準ひょうじゅん noun Hyoujun and/with To 比較ひかく noun Hikaku verb Shi particle Te 外部がいぶ noun Gaibu direction/target Ni よる verb Yoru セキュリティ noun Security レビュー noun Review subject-marker Ga 限定げんてい noun Gentei てき Mato
The timing suggests this was reactive rather than proactive security governance.
- - 長年ながねん noun Naganen possessive No コミュニティ noun Community direction/target Ni よる verb Yoru 脆弱ぜいじゃく noun Zeijaku せい Sei 発見はっけん noun Hakken and/with To パッチ noun Patch 適用てきよう noun Tekiyou possessive No 恩恵おんけい noun Onkei object-marker Wo 受けうけ verb Uke られ auxiliary-verb Rare ない auxiliary-verb Nai
### Comparative Government Practice
- - 2024 noun 2024 ねん noun Nen direction/target Ni 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta よう You auxiliary-verb Na 設計せっけい noun Sekkei じょう Ue possessive No 欠陥けっかん noun Kekkan possessive No 可能かのう Kanou せい Sei subject-marker Ga 高まるたかまる verb Takamaru [ [ 2 noun 2 ] ]
Ignoring known security vulnerabilities in authentication systems is not standard practice across responsible governments.
* * * * 標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb Na セキュリティ noun Security プラクティス noun Practice topic-marker Wa , 強いつよい adjective Tsuyoi 理由りゆう noun Riyuu subject-marker Ga ない adjective Nai 限りかぎり noun Kagiri , 実績じっせき noun Jisseki possessive No ある verb Aru 広くひろく adjective Hiroku 監査かんさ noun Kansa verb Sa auxiliary-verb Re auxiliary-verb Ta プロトコル noun Protocol object-marker Wo 使用しよう noun Shiyou する verb Suru こと noun Koto auxiliary-verb De ある verb Aru .
The standard industry approach is: 1.
* * * *
Acknowledge the vulnerability 2.
# # # # # # 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta 脆弱ぜいじゃく noun Zeijaku せい Sei direction/target Ni 対するたいする verb Taisuru 政府せいふ noun Seifu possessive No 対応たいおう noun Taiou
Develop a remediation plan 3.
もと noun Moto possessive No 設計せっけい noun Sekkei じょう Ue possessive No 選択せんたく noun Sentaku より particle Yori also Mo 問題もんだい noun Mondai だっ auxiliary-verb Da auxiliary-verb Ta possessive No topic-marker Wa , 脆弱ぜいじゃく noun Zeijaku せい Sei subject-marker Ga 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta さい noun Sai possessive No 対応たいおう noun Taiou auxiliary-verb De あっ verb A auxiliary-verb Ta :
Implement the fix within a reasonable timeframe 4.
* * * * 連立れんりつ noun Renritsu 政権せいけん noun Seiken Shita ( 2013 noun 2013 ねん noun Nen - - 2022 noun 2022 ねん noun Nen ) : * * * *
Publicly communicate the resolution The Australian government's response (refusing to fix the protocol design flaw) falls short of these standards. **Key context:** Neither the Coalition nor Labor has demonstrated strong cybersecurity governance regarding myGovID.
- - 連立れんりつ noun Renritsu 政権せいけん noun Seiken topic-marker Wa myGovID noun MyGovID object-marker Wo 展開てんかい noun Tenkai / 運用うんよう noun Un'you verb Shi auxiliary-verb Ta subject-marker Ga , 脆弱ぜいじゃく noun Zeijaku せい Sei topic-marker Wa かれ Kare Ra subject-marker Ga 退陣たいじん noun Taijin verb Shi auxiliary-verb Ta あと noun Ato possessive No 2024 noun 2024 ねん noun Nen direction/target Ni 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta
The Coalition created a system using non-standard protocols, and Labor (which inherited it) refused to fix it when vulnerabilities were discovered.
* * * * 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken Shita ( 2024 noun 2024 ねん noun Nen 9 noun 9 がつ noun Tsuki 以降いこう noun Ikou ) : * * * *
Both decisions appear driven by bureaucratic inertia and unwillingness to acknowledge systemic architectural failures.
- - ATO noun ATO topic-marker Wa 既知きち noun Kichi possessive No 脆弱ぜいじゃく noun Zeijaku せい Sei possessive No 修正しゅうせい noun Shuusei object-marker Wo 明確めいかく Meikaku auxiliary-verb Ni 拒否きょひ noun Kyohi verb Shi , " プロトコル noun Protocol object-marker Wo 変更へんこう noun Henkou する verb Suru 予定よてい noun Yotei topic-marker Wa ない adjective Nai " and/with To 述べのべ verb Nobe auxiliary-verb Ta
- - 政府せいふ noun Seifu topic-marker Wa これ Kore object-marker Wo 技術ぎじゅつ noun Gijutsu てき Mato auxiliary-verb Na 設計せっけい noun Sekkei じょう Ue possessive No 欠陥けっかん noun Kekkan location/means De topic-marker Wa なく adjective Naku " 公共こうきょう noun Koukyou 認識にんしき noun Ninshiki possessive No 問題もんだい noun Mondai " and/with To verb Shi particle Te 特徴とくちょう noun Tokuchou づけ verb Zuke auxiliary-verb Ta
- - 修正しゅうせい noun Shuusei possessive No タイム noun Time ライン noun Line particle Ya 計画けいかく noun Keikaku topic-marker Wa 発表はっぴょう noun Happyou verb Sa auxiliary-verb Re なかっ auxiliary-verb Naka auxiliary-verb Ta
- - 既知きち noun Kichi possessive No 脆弱ぜいじゃく noun Zeijaku せい Sei subject-marker Ga 存在そんざい noun Sonzai verb Shi auxiliary-verb Ta まま noun Mama システム noun System topic-marker Wa 運用うんよう noun Un'you object-marker Wo 続けつづけ verb Tsuzuke auxiliary-verb Ta
# # # # # # 専門せんもん noun Senmon Ie and/with To 制度せいど noun Seido possessive No 視点してん noun Shiten
監察かんさつ noun Kansatsu かん Kan possessive No レポート noun Report topic-marker Wa , myGov noun MyGov / / myGovID noun MyGovID possessive No セキュリティ noun Security subject-marker Ga Fu 十分じゅうぶん Juu fun auxiliary-verb De ある verb Aru こと noun Koto object-marker Wo 裏付けうらづけ verb Urazuke particle Te おり verb Ori , 政府せいふ noun Seifu topic-marker Wa 2025 noun 2025 ねん noun Nen まで until Ma de 欠陥けっかん noun Kekkan direction E possessive No 対応たいおう noun Taiou object-marker Wo 延期えんき noun Enki する verb Suru こと noun Koto direction/target Ni 同意どうい noun Doui verb Shi auxiliary-verb Ta だけ particle Dake auxiliary-verb De あっ verb A auxiliary-verb Ta [ [ 5 noun 5 ]。 ??
タイミング noun Timing から from/because Kara 判断はんだん noun Handan verb Shi particle Te , これ Kore topic-marker Wa 率先そっせん noun Sossen てき Mato auxiliary-verb Na セキュリティ noun Security 統治とうち noun Touchi location/means De topic-marker Wa なく adjective Naku 事後じご noun Jigo 対応たいおう noun Taiou てき Mato auxiliary-verb De あっ verb A auxiliary-verb Ta .
# # # # # # 政府せいふ noun Seifu possessive No 実践じっせん noun Jissen and/with To possessive No 比較ひかく noun Hikaku
認証にんしょう noun Ninshou システム noun System possessive No 既知きち noun Kichi possessive No セキュリティ noun Security 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 無視むし noun Mushi する verb Suru こと noun Koto topic-marker Wa , 責任せきにん noun Sekinin ある verb Aru 政府せいふ noun Seifu possessive No 標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb Na 慣行かんこう noun Kankou location/means De topic-marker Wa ない adjective Nai .
標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb Na 業界ぎょうかい noun Gyoukai アプローチ noun Approach topic-marker Wa 以下いか noun Ika possessive No 通りとおり noun Toori :
1 noun 1 . . 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 認識にんしき noun Ninshiki する verb Suru
2 noun 2 . . 修正しゅうせい noun Shuusei 計画けいかく noun Keikaku object-marker Wo 開発かいはつ noun Kaihatsu する verb Suru
3 noun 3 . . 合理ごうり noun Gouri てき Mato auxiliary-verb Na 期間きかん noun Kikan ない Uchi direction/target Ni 修正しゅうせい noun Shuusei object-marker Wo 実装じっそう noun Jissou する verb Suru
4 noun 4 . . 解決かいけつ noun Kaiketsu さく noun Saku object-marker Wo おおやけ noun Kou direction/target Ni 伝えるつたえる verb Tsutaeru
オーストラリア noun Australia 政府せいふ noun Seifu possessive No 対応たいおう noun Taiou ( 設計せっけい noun Sekkei じょう Ue possessive No 欠陥けっかん noun Kekkan object-marker Wo 修正しゅうせい noun Shuusei する verb Suru ため noun Tame possessive No プロトコル noun Protocol 変更へんこう noun Henkou object-marker Wo 拒否きょひ noun Kyohi verb Shi auxiliary-verb Ta ) topic-marker Wa , これ Kore Ra possessive No 標準ひょうじゅん noun Hyoujun object-marker Wo 下回っしたまわっ verb Shitamawa particle Te いる verb Iru .
* * * * 重要じゅうよう Juuyou auxiliary-verb Na 文脈ぶんみゃく noun Bunmyaku : * * * * 連立れんりつ noun Renritsu 政権せいけん noun Seiken also Mo 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken also Mo myGovID noun MyGovID direction/target Ni 関しかんし verb Kanshi particle Te 強力きょうりょく Kyouryoku auxiliary-verb Na サイバー Cyber セキュリティ noun Security 統治とうち noun Touchi object-marker Wo 示ししめし verb Shimeshi particle Te verb I ない auxiliary-verb Nai .
連立れんりつ noun Renritsu 政権せいけん noun Seiken topic-marker Wa 標準ひょうじゅん noun Hyoujun がい Soto possessive No プロトコル noun Protocol object-marker Wo 使用しよう noun Shiyou する verb Suru システム noun System object-marker Wo 作成さくせい noun Sakusei verb Shi , 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken ( これ Kore object-marker Wo 引き継いひきつい verb Hikitsui auxiliary-verb Da ) also Mo 脆弱ぜいじゃく noun Zeijaku せい Sei subject-marker Ga 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta さい noun Sai direction/target Ni 修正しゅうせい noun Shuusei object-marker Wo 拒否きょひ noun Kyohi verb Shi auxiliary-verb Ta .
両方りょうほう noun Ryouhou possessive No 決定けってい noun Kettei topic-marker Wa , 官僚かんりょう noun Kanryou てき Mato auxiliary-verb Na 惰性だせい noun Dasei and/with To 体系たいけい noun Taikei てき Mato auxiliary-verb Na アーキテクチャ noun Architecture じょう Ue possessive No 失敗しっぱい noun Shippai object-marker Wo 認めみとめ verb Mitome たく auxiliary-verb Taku ない adjective Nai and/with To いう verb Iu 意向いこう noun Ikou から from/because Kara 動かさうごかさ verb Ugokasa auxiliary-verb Re particle Te いる verb Iru よう You auxiliary-verb De ある verb Aru .

真実

7.0

/ 10

この Kono 主張しゅちょう noun Shuchou topic-marker Wa , myGovID noun MyGovID possessive No 脆弱ぜいじゃく noun Zeijaku せい Sei and/with To 政府せいふ noun Seifu possessive No 修正しゅうせい noun Shuusei 拒否きょひ noun Kyohi direction/target Ni つい verb Tsui particle Te 事実じじつ noun Jijitsu and/with To verb Shi particle Te 正確せいかく noun Seikaku auxiliary-verb De ある verb Aru .
The claim is factually accurate regarding the myGovID vulnerability and the government's refusal to fix it.
しかし conjunction Shikashi , 重要じゅうよう Juuyou auxiliary-verb Na * * * * 時期じき noun Jiki てき Mato auxiliary-verb Na 補足ほそく noun Hosoku * * * * subject-marker Ga ある verb Aru : 修正しゅうせい noun Shuusei 拒否きょひ noun Kyohi possessive No 決定けってい noun Kettei topic-marker Wa , * * * * 連立れんりつ noun Renritsu 政権せいけん noun Seiken location/means De topic-marker Wa なく adjective Naku 2024 noun 2024 ねん noun Nen 9 noun 9 がつ noun Tsuki possessive No 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken * * * * direction/target Ni よっ verb Yo particle Te 下さくださ verb Kudasa auxiliary-verb Re auxiliary-verb Ta もの noun Mono auxiliary-verb De ある verb Aru .
However, there is an important **temporal clarification**: The decision to refuse remediation was made by the **Labor government in September 2024**, not the Coalition government.
連立れんりつ noun Renritsu 政権せいけん noun Seiken ( 2013 noun 2013 ねん noun Nen - - 2022 noun 2022 ねん noun Nen ) topic-marker Wa 独自どくじ Dokuji 仕様しよう noun Shiyou possessive No 標準ひょうじゅん noun Hyoujun がい Soto プロトコル noun Protocol object-marker Wo 使用しよう noun Shiyou する verb Suru and/with To いう verb Iu 当初とうしょ noun Tousho possessive No 決定けってい noun Kettei object-marker Wo 下しくだし verb Oroshi auxiliary-verb Ta subject-marker Ga , これ Kore subject-marker Ga この Kono 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 可能かのう Kanou auxiliary-verb Ni verb Shi auxiliary-verb Ta アーキテクチャ noun Architecture じょう Ue possessive No 選択せんたく noun Sentaku auxiliary-verb De ある verb Aru .
The Coalition (2013-2022) made the original decision to use a bespoke, non-standard protocol, which was the architectural choice that enabled this vulnerability.
この Kono 主張しゅちょう noun Shuchou topic-marker Wa noun Ni 通りとおり noun Toori direction/target Ni 解釈かいしゃく noun Kaishaku できる verb Dekiru :
The claim could be interpreted two ways: 1. **If referring to original protocol design (Coalition era 2013-2022):** TRUE - The Coalition chose a bespoke protocol over proven standards 2. **If referring to the 2024 refusal to fix the discovered vulnerability:** TRUE but made by Labor government, not Coalition The statement "Chose to ignore and not fix" most naturally reads as referring to the refusal to remediate after discovery (September 2024), which was a Labor government decision, though the underlying architectural choice was made by the Coalition.
1 noun 1 . . * * * * もと noun Moto possessive No プロトコル noun Protocol 設計せっけい noun Sekkei object-marker Wo 指すさす verb Sasu 場合ばあい noun Baai ( 連立れんりつ noun Renritsu 政権せいけん noun Seiken 時代じだい noun Jidai 2013 noun 2013 ねん noun Nen - - 2022 noun 2022 ねん noun Nen ) : * * * * 真実しんじつ noun Shinjitsu - - 連立れんりつ noun Renritsu 政権せいけん noun Seiken topic-marker Wa 標準ひょうじゅん noun Hyoujun てき Mato auxiliary-verb Na プロトコル noun Protocol location/means De topic-marker Wa なく adjective Naku 独自どくじ Dokuji 仕様しよう noun Shiyou object-marker Wo 選択せんたく noun Sentaku verb Shi auxiliary-verb Ta
2 noun 2 . . * * * * 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta 脆弱ぜいじゃく noun Zeijaku せい Sei possessive No 2024 noun 2024 ねん noun Nen possessive No 修正しゅうせい noun Shuusei 拒否きょひ noun Kyohi object-marker Wo 指すさす verb Sasu 場合ばあい noun Baai : * * * * 真実しんじつ noun Shinjitsu auxiliary-verb De ある verb Aru subject-marker Ga , 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken direction/target Ni よる verb Yoru もの noun Mono auxiliary-verb De あり verb Ari 連立れんりつ noun Renritsu 政権せいけん noun Seiken location/means De topic-marker Wa ない adjective Nai
" 無視むし noun Mushi verb Shi , 修正しゅうせい noun Shuusei verb Shi ない auxiliary-verb Nai こと noun Koto object-marker Wo 選択せんたく noun Sentaku verb Shi auxiliary-verb Ta " and/with To いう verb Iu 表現ひょうげん noun Hyougen topic-marker Wa , 発見はっけん noun Hakken Ato possessive No 修正しゅうせい noun Shuusei 拒否きょひ noun Kyohi ( 2024 noun 2024 ねん noun Nen 9 noun 9 がつ noun Tsuki ) object-marker Wo 指すさす verb Sasu よう You auxiliary-verb Ni 最ももっとも adverb Mottomo 自然しぜん Shizen auxiliary-verb Ni 読めるよめる verb Yomeru subject-marker Ga , これ Kore topic-marker Wa 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken possessive No 決定けってい noun Kettei auxiliary-verb De あり verb Ari , 連立れんりつ noun Renritsu 政権せいけん noun Seiken possessive No 決定けってい noun Kettei location/means De topic-marker Wa ない adjective Nai .
ただし conjunction Tadashi , 根底こんてい noun Kontei direction/target Ni ある verb Aru アーキテクチャ noun Architecture じょう Ue possessive No 選択せんたく noun Sentaku topic-marker Wa 連立れんりつ noun Renritsu 政権せいけん noun Seiken direction/target Ni よる verb Yoru もの noun Mono auxiliary-verb De あっ verb A auxiliary-verb Ta .

📚 出典と引用 (8)

  1. 1
    itnews.com.au

    itnews.com.au

    ATO declines to change protocol.

    iTnews
  2. 2
    thinkingcybersecurity.com

    thinkingcybersecurity.com

    Thinkingcybersecurity

  3. 3
    innovationaus.com

    innovationaus.com

    Innovationaus

  4. 4
    accountantsdaily.com.au

    accountantsdaily.com.au

    From security concerns to clashes with workplace policies, the transition to myGovID has caused a few headaches within the profession, but the ATO believes worries are misplaced.

    Accountantsdaily Com
  5. 5
    PDF

    Keeping myGov Secure

    Ombudsman Gov • PDF Document
  6. 6
    architecture.digital.gov.au

    architecture.digital.gov.au

    Architecture Digital Gov

  7. 7
    cecs.anu.edu.au

    cecs.anu.edu.au

    Cecs Anu Edu

  8. 8
    ato.gov.au

    ato.gov.au

    Ato Gov

評価スケールの方法論

1-3: 虚偽

事実に反する、または悪意のある捏造。

4-6: 部分的

一部は真実だが、文脈が欠如または歪曲されている。

7-9: ほぼ真実

軽微な技術的問題または表現上の問題。

10: 正確

完全に検証済みで、文脈的に公正。

方法論: 評価は、公式の政府記録、独立したファクトチェック機関、および一次資料の相互参照を通じて決定されます。