{"id":531990,"date":"2021-10-30T11:00:27","date_gmt":"2021-10-30T09:00:27","guid":{"rendered":"https:\/\/businesstech.co.za\/news\/?p=531990"},"modified":"2021-10-30T11:02:07","modified_gmt":"2021-10-30T09:02:07","slug":"south-africa-under-cyber-attack-interpol-reveals-top-threats-in-south-africa","status":"publish","type":"post","link":"https:\/\/businesstech.co.za\/news\/it-services\/531990\/south-africa-under-cyber-attack-interpol-reveals-top-threats-in-south-africa\/","title":{"rendered":"South Africa under cyber attack: Interpol reveals top threats in South Africa"},"content":{"rendered":"<p>A new report published by the International Criminal Police Organisation, commonly known as Interpol, gives key insights into cybercrime in Africa. The result of cross-sector collaboration, the African Cyberthreat Assessment Report 2021 will help countries in Africa to understand the most prevalent threats and formulate a coordinated regional response to cybercrime.<\/p>\n<p>The Interpol report identifies the most prominent threats in Africa, based on input from Interpol member countries and data drawn from private sector partners.<\/p>\n<p>The top five threats are:<\/p>\n<ul>\n<li><strong>Online scams<\/strong>: fake emails or text messages claiming to be from a legitimate source are used to trick individuals into revealing personal or financial information;<\/li>\n<li><strong>Digital extortion<\/strong>: victims are tricked into sharing sexually compromising images which are used for blackmail;<\/li>\n<li><strong>Business email compromise<\/strong>: criminals hack into email systems to gain information about corporate payment systems, then deceive company employees into transferring money into their bank account;<\/li>\n<li><strong>Ransomware<\/strong>: cybercriminals block the computer systems of hospitals and public institutions, then demand money to restore functionality;<\/li>\n<li><strong>Botnets<\/strong>: networks of compromised machines are used as a tool to automate large-scale cyberattacks.<\/li>\n<\/ul>\n<p>The African region experienced attacks against critical infrastructure and frontline services during the pandemic, Interpol said. This was most prominently seen in South Africa and Botswana. For instance, South Africa\u2019s Life Healthcare Group, responsible for managing 66 health facilities, was hit by a serious and sustained cyberattack. Interpol\u2019s\u00a0 partner, Trend Micro, recorded millions\u00a0 of threat detections in Africa from\u00a0 January 2020 to February 2021:<\/p>\n<ul>\n<li><strong>Email:<\/strong> 679 million detections<\/li>\n<li><strong>Files:<\/strong> 8.2 million detections<\/li>\n<li><strong>Web:<\/strong> 14.3 million detections<\/li>\n<\/ul>\n<p>More specifically, South Africa had 230 million threat detections in total.<\/p>\n<p>The exploitation of these vulnerabilities within South Africa was further highlighted by Accenture, who identified that South Africa has the third-highest number of cybercrime victims worldwide, at a cost of\u00a0 R2.2 billion a year, Interpol said.<\/p>\n<p>&#8220;The scale of this cyber criminality is further evidenced when we consider that the country has seen a 100% increase in mobile banking application fraud and is estimated to suffer 577 malware attacks an hour,&#8221; the policing group said. Such malware attacks are one of the emerging threats.<\/p>\n<p>The South African Banking Risk Information Centre (SABRIC) evidenced that \u201cgross fraud losses on South African issued cards increased by 20.5% from 2018 to 2019\u201d with CNP fraud and banking malware attacks, behind only Russia.<\/p>\n<p>&#8220;Yet this number fails to take into account the influx of Covid-19 related phishing attempts and the financial, emotional and mental impact they have on victims.<\/p>\n<p>&#8220;Stolen data from carding scams is auctioned off to the highest bidder or sold within underground forums \u2013 meaning unsuspecting victims of credit card fraud in the African region may have their credit card information misused globally following the breach.&#8221;<\/p>\n<p>Another growing concern for African member countries is cryptocurrency scams, in which threat actors seek to defraud victims of their cryptocurrency, the report noted. An ISS report has highlighted two examples of cryptocurrency investment scams in South Africa.<\/p>\n<p>&#8220;These examples involved, firstly, a Ponzi scheme where thousands of investors were allegedly scammed out of 588 million USD in Bitcoin by the company Mirror Trading International in 2020. The second case was where the two founders of the trading company Africrypt allegedly absconded with $3.6 billion from investors in April 2021.&#8221;<\/p>\n<p>South Africa was therefore one of the top ten countries globally where threat actors received the highest volume of cryptocurrency from illicit addresses.<\/p>\n<p>In addition to investment scams, a growing threat in the cryptocurrency space is that of wallet phishing, where threat actors utilize false or misleading advertisements, imposter domains, fake wallet or decentralized finance platforms to obtain a victim\u2019s cryptocurrency wallet private keys, thus enabling them to steal funds from the victim\u2019s accounts, the crime-fighting unit said.<\/p>\n<p>Trend Micro identified some IP addresses in Africa that were used to send out digital extortion spam messages. Digital extortion seeks to target individuals with either allegations of sexually compromising images or through direct blackmail campaigns.<\/p>\n<p>While such threats are not new on the threat landscape, the move towards a digital society \u2013 particularly within the African region \u2013 has created new attack vectors for criminals to both obfuscate their identity and target new victims.<\/p>\n<p>From January 2021 to May 2021, the count of unique IP addresses is about 10.6% of the overall number. The top sender countries include South Africa, Morocco, Kenya and Tunisia. The IP addresses can be from botnet networks or dedicated VPSs rented by cybercriminals.<\/p>\n<p><a  data-lightbox=\"post-image\" href=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-532062\" src=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol.png\" alt=\"\" width=\"931\" height=\"517\" srcset=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol.png 931w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol-300x167.png 300w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol-768x426.png 768w\" sizes=\"auto, (max-width: 931px) 100vw, 931px\" \/><\/a><\/p>\n<p><span id=\"page54R_mcid4\" class=\"markedContent\"><span dir=\"ltr\" role=\"presentation\">South <\/span> <span dir=\"ltr\" role=\"presentation\">Africa<\/span> <span dir=\"ltr\" role=\"presentation\">was the country most heavily affected by targeted <\/span><span dir=\"ltr\" role=\"presentation\">ransomware in the first quarter of 2021, with a variety of families such as Crysis, Nefilim, Ryuk, Clop, <\/span><span dir=\"ltr\" role=\"presentation\">and <\/span><span dir=\"ltr\" role=\"presentation\">Conti ransomware. Subsequently, Egypt was the next hardest<\/span><span dir=\"ltr\" role=\"presentation\">&#8211;<\/span><span dir=\"ltr\" role=\"presentation\">hit country with a similar profile of <\/span><span dir=\"ltr\" role=\"presentation\">targeted ransomware detection. <\/span><\/span><\/p>\n<p><a  data-lightbox=\"post-image\" href=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol1.png\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-532066\" src=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol1.png\" alt=\"\" width=\"911\" height=\"614\" srcset=\"https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol1.png 911w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol1-300x202.png 300w, https:\/\/businesstech.co.za\/news\/wp-content\/uploads\/2021\/10\/Interpol1-768x518.png 768w\" sizes=\"auto, (max-width: 911px) 100vw, 911px\" \/><\/a><\/p>\n<p><strong>From analysis to action<\/strong><\/p>\n<p>\u201cNot only do criminals exploit vulnerabilities in cyber security across the region, but they also take advantage of variations in law enforcement capabilities across physical borders,\u201d said Craig Jones, Interpol\u2019s director of Cybercrime.<\/p>\n<p>\u201cInterpol\u2019s regional cybercrime strategy for Africa provides a robust framework for sharing intelligence and coordinating action to strengthen the law enforcement response across Africa and beyond,\u201d said Jones.<\/p>\n<p>The strategy focuses on the areas of criminal intelligence, law enforcement operations, regional capacity and capabilities, and awareness campaigns for businesses and the general public.<\/p>\n<p>Implementation will be driven by Interpol\u2019s African Cybercrime Operations Desk, working in close partnership with key regional stakeholders, in particular the African Union and Afripol, law enforcement communities and the private sector.<\/p>\n<p>Recognizing the need for a change in the approach to cybercrime within Africa as a region that is embracing digital transformation, the report concludes with Interpol\u2019s regional cybercrime strategy to support member countries in Africa. The strategy encompasses the four strategic objectives below:<\/p>\n<blockquote>\n<ul>\n<li>Enhancing cybercrime intelligence for effective responses to cybercrime;<\/li>\n<li>Strengthening cooperation for joint operations against cybercrime;<\/li>\n<li>Developing regional capacity and capabilities to combat cybercrime;<\/li>\n<li>Promoting good cyber hygiene for a safer cyberspace.<\/li>\n<\/ul>\n<\/blockquote>\n<hr \/>\n<p><strong>Read: <a href=\"https:\/\/businesstech.co.za\/news\/business\/523168\/here-are-the-top-5-digital-scams-in-south-africa-to-be-aware-of\/\" target=\"_blank\" rel=\"noopener\">Here are the top 5 digital scams in South Africa to be aware of<\/a><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A new report published by the International Criminal Police Organisation, commonly known as Interpol, gives key insights into cybercrime in South Africa.<\/p>\n","protected":false},"author":10,"featured_media":78690,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[31],"tags":[26,6843],"class_list":["post-531990","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-it-services","tag-headline","tag-interpol"],"_links":{"self":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts\/531990","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/users\/10"}],"replies":[{"embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/comments?post=531990"}],"version-history":[{"count":8,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts\/531990\/revisions"}],"predecessor-version":[{"id":533532,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/posts\/531990\/revisions\/533532"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/media\/78690"}],"wp:attachment":[{"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/media?parent=531990"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/categories?post=531990"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/businesstech.co.za\/news\/wp-json\/wp\/v2\/tags?post=531990"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}