South African Cybercrime Is Advancing Fast

Cyber criminals are finding more sophisticated ways of hacking and falsifying information as improvements in technological security increase.

“Before there would be spelling mistakes; now there are good-quality falsifications, which makes it hard to tell if it is a scam. 
“The types of cyber-attacks are more sophisticated…There has been an increase in cyber-crime and the value of money taken has also increased,” said managing director Danny Myburgh, from Cyanre Digital Forensic Lab.

IT group Dimension Data said consumers doing their festive shopping online could be at risk of losing up to R70000 per incident to cyber-crime.

ThreatMetrix, which helps businesses to prevent online fraud, said there were more than 50million global cyber-attacks last year over the holiday season. Myburgh added there were increases in cyber-crime over long weekends and the festive season. 
This is mostly done by hacking and malware, where a computer is encrypted and the criminal attempts to extort money from you in order to get the encryption key. 

The South African Banking Risk Information Centre (Sabric) said in a press statement that South Africa has the third highest number of cyber-crime victims worldwide, losing about R2.2bn a year to cyber-attacks. 

Kalyani Pillay, Sabric's chief executive, said criminals were very skilled at using social engineering to manipulate their victims into divulging their personal or confidential information. 

"They capitalise on the fact that not all digital banking clients are digitally literate, and exploit this vulnerability. Using technology, coupled with social engineering, criminals can gather sufficient information to impersonate victims, bypassing bank security protocols.”

One of the modus operandi used by criminals is to play on the victim's fear and send them an email that appears to be from their bank, stating that a fraudulent transaction has been made. The victim is then given the opportunity to report the fraud by clicking on a link. 

When clicking on links in these phishing emails, the victim is taken to a fraudulent website under the control of the criminal, and any information entered on this page, such as a banking profile username or password, is sent to the criminal. 

Once they have viewed your profile, and find that there is money to be accessed, they will commit fraud on your internet banking account, explained Sabric in a statement.
“Sabric is working closely with the SAPS and mobile network operators to address this scourge,” said Pillay.

Maanda Tshifularo, the head of Dialdirect Insurance, added that although vigilance was key in preventing and limiting these attacks, and cyber security was constantly evolving to address the ever-changing methods of cyber-attack, having adequate cyber insurance in place was imperative.

“The cost of what cyber criminals steal could run into tens of thousands of rand, if not more. 

“Add to that the legal fees of recovering what is yours, and you could be facing an astronomical bill," Pillay noted. 

"It's wise not only to be vigilant with your online shopping this festive season but also to have sufficient cover in place should a cyber-criminal decide to shop from your pocket.”

IOL

You Might Also Read:

In S.Africa The Cybersecurity Skills Gap Is A Chasm:

The US Is Buying Phone Hacking Tools For Ghana’s Police:

« 5G Mobile Technology Poses An Espionage Risk
10 Cyber Security Trends To Look Out For In 2019 »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall (and why does it matter)?

Watch this webinar to hear security experts from Amazon Web Services (AWS) and SANS break down the myths and realities of what an NGFW is, how to use one, and what it can do for your security posture.

Alvacomm

Alvacomm

Alvacomm offers holistic VIP cybersecurity services, providing comprehensive protection against cyber threats. Our solutions include risk assessment, threat detection, incident response.

NordLayer

NordLayer

NordLayer is an adaptive network access security solution for modern businesses — from the world’s most trusted cybersecurity brand, Nord Security. 

National Cyber Security Centre (NCSC) - United Kingdom

National Cyber Security Centre (NCSC) - United Kingdom

The NCSC acts as a bridge between industry and government, providing a unified source of advice, guidance and support on cyber security, including the management of cyber security incidents.

Cyber Security Academy - University of Southampton

Cyber Security Academy - University of Southampton

An industry/University partnership established to advance cyber security through world class research, teaching excellence, industrial expertise and training capacity.

6cure

6cure

The 6cure Threat Protection solution eliminates malicious traffic to critical services in real time and protects against DDoS attacks.

Sopra Steria

Sopra Steria

Sopra Steria is a leading European information technology consultancy.

BioCatch

BioCatch

BioCatch uses behavioral biometrics for fraud prevention and detection. Continuous authentication for web and mobile applications to prevent new account fraud.

Zeneth Technology Partners

Zeneth Technology Partners

Zeneth is a consulting firm providing information technology and cybersecurity services to federal and commercial clients.

Georgia Cyber Center

Georgia Cyber Center

Georgia Cyber Center is dedicated to training the next generation of professionals through education and real-world practice while also supporting innovation in new technologies for online defenses.

Griffiss Institute (GI)

Griffiss Institute (GI)

GI's primary role is to advocate and facilitate the co-operation of private industry, academia, and the Air Force Research Laboratory in developing solutions to critical cyber security problems.

PNGCERT

PNGCERT

PNGCERT is the national Computer Emergency Response Team (CERT) for Papua New Guinea.

1898 & Co

1898 & Co

Keep your critical assets secure with a comprehensive portfolio of services from high-level assessments to fully managed security services designed for operational technology applications.

Traced

Traced

TRACED is changing the detection paradigm. Empowering defenders to go on the offense to engage cyber attackers before they compromise your organization.

Tailscale

Tailscale

Tailscale is a VPN service that makes the devices and applications you own accessible anywhere in the world, securely and effortlessly.

Amazon Web Services (AWS)

Amazon Web Services (AWS)

Amazon Web Services is the world’s most comprehensive and broadly adopted cloud platform, offering fully featured services from data centers globally.

Saudi Information Technology Company (SITE)

Saudi Information Technology Company (SITE)

SITE is a forward-thinking enterprise, which aims at revitalizing Saudi Arabia’s digital infrastructure, cybersecurity, software development, and big data and analytics capabilities.

Clarity

Clarity

Clarity is an AI cybersecurity startup that protects against deepfakes and new social engineering and phishing attack vectors accelerated by the rapid adoption of Generative AI.

Blue Mantis

Blue Mantis

Blue Mantis is a security-first, IT solutions and services provider with a 30+ year history of successfully helping clients achieve business modernization.