SA cyber threat barometer released
SECURITY| Sept. 28, 2012, 9:11 p.m.
With over R2.6bn stolen in cybercrimes in SA in the past 18 months, a new report maps out the biggest cyber threats in the country.
The 2012/13 South African Cyber Threat Barometer was released by IT security firm Wolfpack Information Risk in Johannesburg today. Wolfpack Managing Director Craig Rosewarne said the report was the result of extensive research into the cyber threat landscape in South Africa.
“The report is intended to provide ongoing insight to support the Cabinet’s recently-approved National Cyber Security Policy Framework,” he said, and was researched and compiled with the support of the British High Commission.
Rosewarne said while the true cost of cyber crime was difficult to assess, conservative estimates showed that over R2.6 billion rand had been stolen in cyber crimes in the country in the past 18 months. With a recovery rate of up to 75%, much of the stolen money had been recovered, but the impact and additional costs of cyber crime were far greater than this, he noted. Relatively few cyber crimes are reported and successfully prosecuted in SA, Rosewarne said.
The report warned that the African continent as a whole is particularly vulnerable to cyber security threats. With cheaper and faster internet, more Africans will be ‘always on’ or continually connected, increasing the number of ‘new’ internet users who are not security-savvy, it said.
Rosewarne noted that cyber crime threatens everyone, and called on the public and private sector to work together to combat it. He said key issues identified in the research included poor threat management, with inadequate maintenance and management of audit logs; the lack of a national Computer Security Incident Response Team (CIRT) in SA and a lack of deep technical skills. He added that archaic processes and a lack of information security skills in law enforcement agencies made reporting and prosecution in cyber crimes difficult.
Collaboration between the public and private sector, specialised training and the establishment of a CIRT were among the recommendations made to combat the threats.
Stakeholders in key sectors were polled on what they saw as the greatest potential threats to their industries. The threat of denial of service (DoS) attacks and the unavailability of ICT were cited as the highest potential cyber threats against government and financial sectors and were ranked high in the telecoms sector.
Intrusions and economic fraud were ranked as the second-greatest cyber threats in SA.
On the question of what are seen as the services most likely to be targeted by cyber criminals in SA, respondents said internet banking, e-commerce web sites and social and entertainment web sites were likely targets. Respondents in government felt that critical information infrastructure was also at risk.
MORE SECURITY NEWS
Separating the attack that matters from the noiseIt has almost become the norm for a business to be compromised by a security attack. The emphasis today is thus more on how a business responds to the attack, that is how have they prepared for the breach and how do they communicate it? Read More
Enhancing your security posture to fight new ransomware threatsPetya ransomware is proving to be one of the top cybersecurity stories of 2016. Read More
Arbor stops malware in its tracksThere is always a substantial amount of banking trojan activity taking place, however, recent developments have intensified the threat landscape. Read More
Networks Unlimited certifies Fortinet partners in East AfricaValue-added distributor, Networks Unlimited is intensifying its footprint in East Africa, training its partners and customers in the region to become certified. Read More
Understanding the risk and cost of a DDoS attackThw Arbor Networks white paper, The business value of DDoS protections, says a continuing and growing threat to service availability is distributed denial of service (DDoS) attacks. Read More
Addressing the threat of cyber-crime in the digital eraGlobally-connected cyber-attacks require globally connected and seamlessly integrated cyber defences. Read More
DDoS attacks: An operational risk that should be included in enterprise risk assessmentsToday’s enterprises are increasingly motivated to formalise their IT security and place it firmly within the context of their enterprise risk management and business continuity planning. Read More
Arbor Networks report finds relentless threat environmentArbor Networks Inc., the security division of NETSCOUT (NASDAQ: NTCT), has released its 11th Annual Worldwide Infrastructure Security Report (WISR) offering direct insights from the global operational security community on a comprehensive range of issues. Read More
No More Excuses – Time to Get a Grip on Your Cloud SecurityNewfound optimism for the cloud inevitably means more critical and sensitive data is put into cloud services. And that means security is going to become a massive issue, says Intel. Read More
RSA research reveals blind spots in threat detectionRSA, The Security Division of EMC, has released the results of a new Threat Detection Effectiveness Survey. Read More
FEATURED STORYGovernment should encourage youths in ICT early
Youths should be given more encouragement to develop their ICT skills, an 11-year-old app developer told Kokumo Goodie.
BEST READ NEWS
IN DEPTHIBM Opens First Cloud Data Centre in South Africa
IBM is opening a new IBM Cloud Data Centre in Johannesburg, South Africa. The new cloud center is the result of a close collaboration with Gijima and Vodacom and is designed to support cloud adoption and customer demand across the continent.
COMPANY NEWSResolving the data centre disconnect
The disconnect between virtualised applications and physical storage is costing businesses time and money.Separating the attack that matters from the noise
It has almost become the norm for a business to be compromised by a security attack. The emphasis today is thus more on how a business responds ...