Fraud is a reality in today’s digital world, where financial transactions, business communications, and operations are online. For business leaders, the challenge is preventing and uncovering fraud —mainly when perpetrators use sophisticated tactics to cover their tracks. It’s a growing and expensive threat. There was a 32% increase in fraud incidents reported to the Southern […]
AI has revolutionised industries across the board, and cybersecurity and digital forensics are no exception. With cyber threats evolving at an unprecedented pace, AI is both a powerful tool for digital forensics and incident response (DFIR) professionals and a significant enabler of more sophisticated cyberattacks. This dual-edged nature of AI means that DFIR needs to […]
When a cybersecurity incident strikes, businesses often focus on the immediate firefight: containing the breach, limiting damage, and restoring operations. Incident response (IR) teams spring into action, executing predefined plans to isolate infected systems and minimise downtime. While this rapid response is critical, it is only the beginning of a much larger process. What happens […]
Ransomware has had an interesting—if terrifying—journey. Between 2017 and 2018, ransomware attacks increased by 60%, with attackers increasingly targeting companies with cyber insurance. This was for two reasons. First, companies started taking out cyber insurance, and then many cyber insurance policies began paying ransoms, with insurers admitting that paying the ransom could often be cheaper […]
By: Jacques Oosthuizen, Digital Forensic Manager, Cyanre Email remains the number one attack vector for cyber criminals. According to Mimecast’s State of Email Security 2023 report, 82% of business leaders report higher volumes of email, 74% are seeing more email-based threats, 76% are expecting to face serious consequences from an email-based attack, and 84 % […]
We’re all familiar with the importance of cybersecurity, but digital forensics is a field that is still largely unknown unless a business experiences a major breach and requires digital evidence for legal, regulatory, or insurance purpose. However, as IT leaders and business owners, understanding the distinction and interplay between these two fields is crucial for […]
By Professor Danny Myburgh You’ve no doubt heard the terms dark web, black hat hacking and the ever-present threat of malicious software. What many business leaders are not as familiar with is shadow IT, and yet this is quickly becoming a large—but unnoticed—threat within organisations. Shadow IT is not at first glance as dangerous as […]
As cybersecurity and digital forensic professionals, we stay abreast with the latest hardware and software that protects digital landscapes and increasing threat surfaces. Here’s the problem. According to IBM’s Cost of a Data Breach 2022, over 95% of all data breaches are due to human error. Think about how many emails your employees send and […]
The global cyber security market size was valued at $153.65 billion in 2022 and is projected to grow from $172.32 billion in 2023 to $424.97 billion in 2030. There’s a reason for this exponential growth. The 2023 World Economic Forum’s (WEF) Global Risks Report places cybersecurity in the current and future top ten risks globally, […]
In recent years, three interconnected trends have gained momentum: remaining competitive in a rapidly changing business world, safeguarding against intensifying cyber risks, and achieving both objectives while simplifying and digitally evolving. As hybrid work models become more widespread, company networks are growing increasingly scattered, intricate, and undefined. To control risk in this highly connected virtual […]
By Professor Danny Myburgh Like many business leaders, you may be considering purchasing cyber liability insurance for the first time. With cyberattacks – and ransomware attacks in particular – on the rise, this is not surprising. In fact, cyber insurance is fast becoming one of the most important insurances businesses can invest in. The questions […]
In South Africa, the digital divide is often used to refer to sections of society that lack access to the Internet. However, in the corporate world, there is another digital divide between those who understand the technology they are using and those who only know enough to complete their daily tasks. While most employees have […]
By Professor Danny Myburgh In 2022, ransomware continued to plague organisations across the globe, from threat actors accessing the personal details of millions of South Africans, to IT company Advanced revealing that it had been the victim of a ransomware attack in August 2022. Even though the company quickly reacted to the threat, it […]
There are many different ways to approach cybersecurity. Some organisations have built internal IT and cybersecurity resources. Others outsource some elements of their cybersecurity and some businesses choose to have a fully managed service. In our experience however, even if an organisation outsources some of its cybersecurity and functionality to a partner, digital forensics are […]
When we first engage with companies, many leadership teams believe their cybersecurity is adequate. It’s often only after a cyber event or breach that it becomes clear just how sophisticated cybercriminals are – and how quickly the landscape keeps changing. Unfortunately, according to research conducted by Surfshark, South Africa is among the top 10 countries […]
Digital evidence is any information that is stored or transmitted in binary form that may need to be presented in a judicial proceeding.
What happens when an employee leaves your business? Are they taking sensitive data with them? What about if they have been fired or retrenched?
The Protection Of Personal Information Act (POPIA) has been fully in effect for the past 12 months. Most South African businesses have taken steps to comply with POPIA, specifically around the following areas to ensure they are on the right side of the law: • Reviewing and updating all customer, supplier and third-party agreements • Implementing technical and organisational measures to protect and prevent unauthorised access to and obtaining of personal information • Preparation of consent documentation and private notices • Implementing measures for identified boundary flow of personal information • Developing a culture of privacy by training staff, updating and implementing policies and procedures, and implementing awareness campaigns • Implementing a data breach and incident response plan and policy • Implementing a data access management system for the data subject in accordance with POPIA and the Promotion of Access to Information Act (PAIA) legislation
The Protection Of Personal Information Act (POPIA) has been fully in effect for the past 12 months. Most South African businesses have taken steps to comply with POPIA, specifically around the following areas to ensure they are on the right side of the law:
• Reviewing and updating all customer, supplier and third-party agreements • Implementing technical and organisational measures to protect and prevent unauthorised access to and obtaining of personal information • Preparation of consent documentation and private notices • Implementing measures for identified boundary flow of personal information • Developing a culture of privacy by training staff, updating and implementing policies and procedures, and implementing awareness campaigns • Implementing a data breach and incident response plan and policy • Implementing a data access management system for the data subject in accordance with POPIA and the Promotion of Access to Information Act (PAIA) legislation
It’s 2am. I’ve just answered a frantic call from the CEO of a large local corporation. He has just received a ransomware demand, requesting the equivalent of R50 million in cybercurrency or all the personal data of the company’s clients will be released on the dark web. He informs me that his IT team have already identified the breach and deleted it, but he still needs assistance with the ransomware demand.
It’s 2am. I’ve just answered a frantic call from the CEO of a large local corporation. He has just received a ransomware demand, requesting the equivalent of R50 million in cybercurrency or all the personal data of the company’s clients will be released on the dark web.
He informs me that his IT team have already identified the breach and deleted it, but he still needs assistance with the ransomware demand.
Employees leave businesses for a multitude of reasons, from leaving to start their own businesses to leveraging a new opportunity, to moving to a new city or country. There are also less amicable ‘breakups’, such as when an employee is dismissed following a breach of contract or disciplinary action.
Digital forensics experts inspect, identify, analyse, and preserve digital evidence, and use it to help them investigate crimes related to technology.
By Professor Danny Myburgh, Managing Director at Cyanre, The Digital Forensic Lab On Friday night 25 March 2022 the hacking group known as N4ughtysecTU, re-released massive quantities of previously leaked private information of South Africans. Between all the data breaches that have taken place in South Africa over the past two to three years we […]
Unfortunately, with businesses so reliant on technology and data to operate, it’s no longer a case of ‘if’ you will experience a cybersecurity breach, but when… and more importantly, what happens when you do.
One of the biggest benefits that migrating to the cloud offers enterprises is cost-related, thanks to a flexible ‘pay as you use’ model and reduced infrastructure costs, not to mention the increased collaboration, efficiencies and productivity related to the cloud.
If it seems like everywhere you turn there is another large-scale cyberattack that has hit a global organisation, you’re not far wrong. Over the past few years cybercrime has become a lucrative – and organised – industry and businesses large and small are at risk. Each year, however, cybercriminals are evolving. Here are the 9 trends that we are keeping an eye on in 2022.
Most of us won’t be sorry to say goodbye to 2021, but with year-end parties finally on the go again, holiday plans not coming soon enough and general productivity in decline, it can be easy to forget about the cyber security risks that the year-end shutdown can mean for your business. Here are 5 ways to prepare for the holidays so that you can enjoy some much-deserved peace of mind over the festive period.
Most of us won’t be sorry to say goodbye to 2021, but with year-end parties finally on the go again, holiday plans not coming soon enough and general productivity in decline, it can be easy to forget about the cyber security risks that the year-end shutdown can mean for your business.
Here are 5 ways to prepare for the holidays so that you can enjoy some much-deserved peace of mind over the festive period.
By Prof. Danny Myburgh, Managing Director at Cyanre – The Digital Forensic Lab There are so many sophisticated ways for cybercriminals to infiltrate organisations today that it can be challenging to keep track of them – particularly when these threats are spoken about in abbreviations, such as BEC (Business Email Compromise) and MITM (Man in […]
Download (PDF, 810KB) By Prof. Danny Myburgh, Managing Director at Cyanre – The Digital Forensic Lab Between 2019 and 2020, South Africa went from being largely ignored on chat boards on the dark web to spiking in interest. Since these chat boards are where cyber criminals discuss and access ransomware and other software to attack [...]
By Prof. Danny Myburgh, Managing Director at Cyanre – The Digital Forensic Lab In 2014, South Africa was largely ignored by cyber criminals on the dark web. By 2016, mentions of South Africa were increasing, and by 2019, Accenture’s Insight into the cyber threat landscape in South Africa revealed that South Africa had the third-highest […]
It’s like a scene out of a movie – employees arrive at work (or, in today’s environment, log on to their laptops and company network), only to discover they’ve been locked out of the system and their files. A ransom-note pops up with one very clear message: You’ve been hacked, your files are encrypted, and […]
How much do your senior IT personnel know about your organisation? Most senior IT professionals are not only intimately familiar with your entire network, security protocols and IT infrastructure, but they know each staff member’s personal passwords as well and have multiple different ways to access your system.
Not too long ago, a local short-term insurer found itself in the middle of a racial social media storm that was entirely fabricated to damage the brand. On face value, it looked like an employee of the brand sent a racist email to fellow team members. A screen grab was taken of the email and […]
Cyanre The Digital Forensic Lab has assisted many local companies after they experienced data breaches. Like true Gentlemen, we keep our relationships a secret, but we can share a number of issues that we’ve seen, what trends we’ve noticed, and how we addressed these issues. Size doesn’t matter Smaller SMME owners will think implementing a […]
Johannesburg – Several of South Africa’s leading hospitals and health-care organisations have been targeted by cyber criminals during the Covid-19 pandemic. The cyber attacks against hospitals and related organisations could disrupt their systems and affect their ability to deliver care, and also endangers lives. With hospitals and health-care organisations around the country already under severe […]
It’s officially the season to be merry. December is a time of year where South Africans meet up to spend time with their family and friends. But before this can happen, most will be buying a present or two. This rush to e-commerce stores does mean that there are massive opportunities for cybercriminals to wedge […]
As 2020 marches on, and COVID-19 still rages in certain parts of the world, working remotely has quickly become the new norm. This being said, what data security trends does your IT department need to be looking at in 2021? We’ve compiled a list of the top trends that your IT department should be aware […]
The digital world is expanding at an alarming rate. And the need for digital forensics experts has never been greater. “On any day in the last 5 years, there were on average 640,000 people online for the first time.” – Sourced from Our World In Data This growth also means that the world of cybercrime […]
The modern world is highly automated. Where companies’ data security systems are being updated and reinforced daily, IT security is a top priority. But in this world of automation and data security, the biggest hole in any company’s IT infrastructure is its staff. Cybersecurity culture is something most employees just aren’t taught or interested in […]
If you’re looking at making your email account super secure, here are some tips to ensure you are following email security best practices.
The Coronavirus (COVID-19) has/is whipping the world into a panicked frenzy – perfect conditions for phishing. While most think that the phishing trends take a while to be adopted locally, we’re here to inform you that these con-artists are always innovating and adapting their strategies.
Webinar: Investigations – first response / incident response
With hundreds of millions of Rands transferred across bank accounts every day in South Africa – cyber criminals are using advanced email hacking techniques to get their hands on your cash.
City Power customers were left fuming after the company was hit by a ransomware virus that encrypted its computer databases, applications and network – affecting those wanting to buy electricity.
With the first day of ITWeb’s 2019 Security Summit underway at the Sandton Convention Centre in Johannesburg, 50 young tech enthusiasts are participating in this years’ hackathon event sponsored by PWC.
We have tried technology in the past to stop piracy, but it has never really worked,” he said.”This technology sounds like it could help, especially if it can identify the distributors of pirated films.”Danny Myburgh, of computer forensics firm Cyanre, and chair of the South African Cyber Forensic Forum, said given how difficult piracy was to combat, any help in curbing it was welcome.
Our MD Danny Myburgh have been inundated with radio interviews and media enquiries regarding the #Liberty hack that has been trending this week. This incident is unfortunately just one of many examples of incidents that threaten your organisation
Liberty’s shares tumbled 4% yesterday as the insurer divulged little new detail of a data breach unlikely to result in a fine, even if it has fallen foul of information protection laws.
While it is unclear what information was taken from Liberty Life’s email server by hackers‚ some details contained in the emails could be used to commit crime‚ computer forensics company Cyanre CEO Danny Myburgh warned on Monday.
Watch Danny Myburgh – MD of Cyanre on KykNet’s, Ver Ander Dinge speaking about how we can protect ourselves online.
The US Federal Bureau of Investigation has ranked South Africa sixth and seventh on the cybercrime predator list, which means that there is an increasing amount of fraud being perpetrated from the country, says computer forensics company Cyanre CEO Danny Myburgh.
Divide and conquer with AD Lab. This proven tool helps you power through massive data sets, handle various data types and run multiple cases at the same time, all within a collaborative, scalable environment.
Too many organisations focus solely on investing in preventative security measures without paying equal attention to response protocol and proactive counter measures. By designing and implementing an effective Incident Response (IR) programme
Cybercrime has superseded all other criminal activity over the last couple of years. This can be ascribed to the fact that there will be an estimated 4.77 billion cellphone users worldwide by end of 2017
Independent forensic auditors have concluded that a racist and offensive email alleged to have originated from a MiWay staff member is a fake, the insurance firm said on Tuesday.
Many large corporates have internal legal counsel, who then work in tandem with their preferred external legal representatives. However, with the advent of information technology…
In the current environment, a cyber-attack or compromise is not just highly likely – it’s inevitable. According to the Mandiant 2017 Threat Report…
The WannaCry Ransomware is a malicious computer program which combines the capabilities of ransomware with a worm.
The tax season and the systems involved are prime targets for phishing and scams. All the right ingredients are there…
In 2016, there was a staggering increase in ransomware attacks. In fact, according to a recent report by SonicWall, the number of attempted attacks increased from 3.8 million…
This infographic is a summary of the security settings that you can use to protect yourself on the top 4 social media platforms in South Africa.
We have created this short infographic for your convenience. What you need to know about social media. The stats and the security stats!
We have all been warned about staying safe on social media and how there are various scams online. Very few people actually understand how these scams work.
The Internet can be a great way to find products and services that may not be readily available in your local area; however, it is important for you to determine whether or not a commercial website is legitimate before making any purchases.
Staying safe on social media is very important in the technology age. Keeping your children protected is even more important. Cyanre experts give you their top six tips to staying safe on social media.
Do not keep client data unnecessarily. Manage your risk, by outsourcing the data hosting or leaving it on the clients system and arrange access by your lawyers to the clients network.
What are you looking for?