Share

SA banks hit by ransom attacks

Local banks have been hit by a wave of cyber attacks, the South African Banking Risk Information Centre (Sabric), on behalf of the banking industry, said in a statement on Friday.

The wave of ransom-driven Distributed Denial of Service (DDoS) attacks, targeting various services across multiple banks, started on Wednesday. A DDoS attack is an attempt by criminals to crash a website by overwhelming it with a flood of fake traffic or digital requests.

"These attacks started with a ransom note which was delivered via email to both unattended as well as staff email addresses, all of which were publicly available.

"Threat intelligence which has surfaced has revealed that this is a multi-jurisdictional attack with entities from several countries being targeted and should therefore not be viewed as a targeted attack on South African companies only." 

The City of Johannesburg was hit by a similar attack on Thursday night, with a group calling themselves the Shadow Kill Hackers demanding a ransom payment in bitcoin, Business Day reported. In a tweet, the City said it had detected a network breach "which resulted which resulted in an unauthorised access to our information systems". 

The city shut down its website, e-services and billing system in reaction to the attack.

"We must emphasise that DDoS attacks like this one do not involve hacking or a data breach and therefore no customer data is at risk. It does however, involve increased traffic on networks necessary to access public facing services. This may cause minor disruptions," Sabric said. 

"Robust defensive strategies have been invoked across the industry and we are confident that customer impact will be kept to a minimum."

"Despite our banks' preparedness and resilience, we will continue to monitor this situation very closely and respond as required," says Sabric acting CEO, Susan Potgieter.

FNB did not answer specific questions, but endorsed Sabric's comments. 

Standard Bank similarly did not answer specific questions, but said an interruption to its banking services on Thursday had not been caused by "an external cyber event that reportedly impacted the provision of public e-services".

Capitec told Fin24 that although the bank sees "increased attempted criminal activity" around paydays every month, its systems can detect this kind of activity and was not affected. 

ABSA confirmed to Fin24 via email that it informed its customers on Wednesday that it experienced technical difficulties impacting its internet banking services for a brief period due to the DDoS attack, and not a hack. 

"We do experience adverse cyber incidents of some form or another on a regular basis, and these are dealt with in the normal course. To date, we have not experienced an instance where the bank’s own and customer information protection systems were breached," ABSA said. "Our defensive strategies were invoked across our systems and networks, and customer impact was kept to a minimum. We continue to monitor and are responding in real time as needed."

Nedbank CEO Mike Brown also confirmed to Fin24 that the bank and other members of the SA banking industry experienced the DDos attack. "We must emphasise that DDoS attacks such as this one do not involve hacking or a data breach and therefore no customer data is at risk," he said.

"The attack had no impact on local clients who were able to access the bank’s websites and apps.

"Clients accessing our sites from international locations may have experienced intermittent service due to the attack.We continuously invest in our IT security to effectively deal with attacks of this nature and our working assumption is that they will continue across the industry," Brown said. 

*This article was updated at 15:15 on Friday October 25, 2019 to include comments from banks. 

We live in a world where facts and fiction get blurred
Who we choose to trust can have a profound impact on our lives. Join thousands of devoted South Africans who look to News24 to bring them news they can trust every day. As we celebrate 25 years, become a News24 subscriber as we strive to keep you informed, inspired and empowered.
Join News24 today
heading
description
username
Show Comments ()
Rand - Dollar
19.21
-0.3%
Rand - Pound
23.92
-0.4%
Rand - Euro
20.47
-0.4%
Rand - Aus dollar
12.34
-0.3%
Rand - Yen
0.12
-0.4%
Platinum
948.60
-0.2%
Palladium
1,020.50
-0.9%
Gold
2,381.38
+0.1%
Silver
28.30
+0.3%
Brent Crude
87.11
-0.2%
Top 40
66,831
-0.5%
All Share
72,881
-0.5%
Resource 10
63,032
-0.4%
Industrial 25
97,705
-0.7%
Financial 15
15,436
-0.3%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on News24.

LEARN MORE
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders