South Africa is a target for cyber attacks

November 2017 Editor's Choice, Information Security, Security Services & Risk Management

Following the announcement by large South African data centre operator and website hosting service provider Hetzner, that a key database had been hacked, Maeson Maherry, chief solutions officer for LAWtrust, Africa’s leading cybersecurity firm, says numerous data breaches over the past few weeks show South Africa is a “focus area for cyber attacks”.

The Hetzner breach – which was discovered on Wednesday 1 November, follows the revelation two weeks ago that over 30-million South Africans’ personal information (including property ownership, income and employment history) had been exposed online, in what is considered South Africa’s biggest data breach.

“We are effectively in a Cold War where the goal has become less about disruption and more about stealing data,” Maherry says. He says it is imperative that South African businesses act to protect their data and their brand, and retain customer confidence.

“Businesses have to provide multilayered defences to protect the data and this has to be done in such a way that the information services are still accessible and convenient to customers.”

This means businesses need to put in place strong authentication for all administrators, employees and customers in light of the breaches. Companies also have to encrypt everything, including data in databases, file servers and data in the cloud.

“It is not a question anymore of whether an organisation will be breached, but how and when. Therefore, businesses must consider bringing the protection close to data itself – encrypt your data, while taking into account preservation of business functionalities and convenience for the users. Encrypting everything will become the norm in the future,” says Dr Aleksandar Valjarevic, head of pre-sales at LAWtrust.

Maherry adds that businesses also have to consider how they manage the cryptographic keys, SSH keys and digital certificates that are the foundation of the security plumbed into enterprise and cloud IT. “If an employee can leave with a copy of the SSH key for a server and a business can’t do anything about it, then that business is in extreme danger,” he says.

For more information contact LAWtrust, +27 (0)11 731 8238, [email protected], www.lawholdings.co.za





Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Security has an identity problem
Access Control & Identity Management Information Security
Cybersecurity discussions have mainly focused on defence, including stronger firewalls, tighter network controls, and better endpoint security. However, in today's world, those traditional defences have become less relevant.

Read more...
Detect procurement fraud before losses escalate
Security Services & Risk Management News & Events Financial (Industry) Editor's Choice
Organisations need to move procurement fraud prevention closer to the point where suspicious activity occurs, rather than relying primarily on investigations after money has already been lost, according to SAS and FACTS Consulting.

Read more...
Modernising ‘smart’ ports
IoT & Automation Information Security Transport (Industry) Logistics (Industry)
A modern port is part of a much larger digital trade ecosystem where all systems need to work together. If one part of that ecosystem is disrupted, the impact can quickly move through the supply chain.

Read more...
Reinventing cybersecurity
NEC XON News & Events Information Security Commercial (Industry)
NEC XON helps a workforce solutions leader reinvent cybersecurity with an AI-enhanced XDR solution to keep pace with increasingly devious cyberattack techniques, including fileless malware, lateral movement, and credential misuse.

Read more...
Hold the line
BlueVision Information Security Editor's Choice
While most businesses are still focused on guarding the wall, the perimeter today has moved to the login screen, according to Christo Coetzer, founder and managing director of BlueVision Technologies.

Read more...
AI assistants learn bad workplace habits
AI & Data Analytics Security Services & Risk Management
An employee under pressure at a logistics firm finds a productivity-boosting shortcut. Instead of manually parsing a 40-page supplier contract, they paste the confidential PDF into a public generative AI tool for a quick summary.

Read more...
Shadow AI: The next evolution of Shadow IT
AI & Data Analytics Security Services & Risk Management
Today, as AI gains traction in all aspects of life and business, African organisations face a new challenge, known as ‘Shadow AI’, where employees at all levels make use of AI without considering the potential impact.

Read more...
Free live travel risk map covering multiple countries
News & Events Security Services & Risk Management
Most widely cited travel risk maps are published once a year as static documents, but risk conditions do not follow a publishing calendar. The Sicuro map draws on official travel advisories from the ...

Read more...
The line between locking residents out and restricting their access
News & Events Security Services & Risk Management Residential Estate (Industry)
A June 2026 High Court judgment has clarified one of the most contested issues in modern estate governance: when an HOA's digital access restrictions amount to unlawful self-help or spoliation, and when they do not.

Read more...
Modernise field communications with Push-to-Talk over Cellular
Products & Solutions Security Services & Risk Management
Sentiv is bringing Hytera’s Push-to-Talk over Cellular (PTToC) portfolio to organisations that need a more structured and controlled way to coordinate field teams, without extending a full private radio model to every team, site, or function.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.