Close Menu
  • Homepage
  • News
  • Cloud & AI
  • ECommerce
  • Entertainment
  • Finance
  • Opinion
  • Podcast
  • Contact

Subscribe to Updates

Get the latest technology news from TechFinancials News about FinTech, Tech, Business, Telecoms and Connected Life.

What's Hot

SARB Holds Repo Rate Steady in Cautious Monetary Policy Decision

2026-01-29

Alleged R1 Billion International Scam Syndicate Members Arrested

2026-01-29

How Many Smart ID Cards Were Issued In South Africa in 2025

2026-01-29
Facebook X (Twitter) Instagram
Trending
  • SARB Holds Repo Rate Steady in Cautious Monetary Policy Decision
Facebook X (Twitter) Instagram YouTube LinkedIn WhatsApp RSS
TechFinancials
  • Homepage
  • News
  • Cloud & AI
  • ECommerce
  • Entertainment
  • Finance
  • Opinion
  • Podcast
  • Contact
TechFinancials
Home»Opinion»Comprehensive Preparation Will Contain The Fall-Out From Ransomware Attacks
Opinion

Comprehensive Preparation Will Contain The Fall-Out From Ransomware Attacks

One should also consider whether it is necessary to brief public relations firms (through your attorneys) to explain the incident to data subjects and to ensure that what is said is both legally sufficient and expressed in a way that best protects the company’s reputation.
ContributorBy Contributor2023-10-24No Comments4 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Hackers
Masked Hacker. Gorodenkoff / Shutterstock.com
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Ransomware attacks have been rising and it is companies that have a high level of preparedness who are weathering the storm. The Sophos State of Ransomware in South Africa 2023 report found that 78% of South African organisations surveyed had experienced an attack in the preceding year, up from 51% in the 2022 survey.

Ransomware attacks introduce malicious software into a company’s systems.

“The usual pattern our clients experience is that late on a Friday evening or a Saturday morning, company management is notified by the IT department that the Company has lost access to essential files, and has received a demand for money, usually in the form of bitcoin, to release the files,” says Blom.

“Typically, up to six months before the event, a hacker has accessed the company’s system and stored a virus that gathered confidential information. Once enough information has been accumulated, the hacker locks down the files.”

Tembedza urges companies to put a three-step strategy in place. The first is to mitigate the risk before any event occurs, the second is to manage an event, and the third step is to review controls and processes regularly, given that technology and threats are constantly evolving.

Mitigation

Tembedza says companies should ensure they have taken reasonable steps to protect their systems, taking into consideration the particular types of breaches to which they are susceptible. The Protection of Personal Information Act (POPI) requires companies to have appropriate, reasonable, and technical organisational measures in place. This involves assessing access controls, policies relating to the utilisation of IT infrastructure and procedures for regular maintenance and review of safety systems.

Organisations must have a plan to deal with a data breach (in this case, a ransomware attack) that sets out how employees should act, who they must notify and how the organisation will approach the Information Regulator and affected data subjects to notify them of the incident.

Blom says a highly regulated entity operating in a sector such as banking, financial service, health care and even education may have to comply with requirements specific to that sector, in addition to POPI.

Two other laws apply along with POPI in the event of a ransomware incident, he says. The first is the Prevention and Combating of Corrupt Activities Act (PRECCA), which requires a company to notify the South African Police Services (SAPS) when certain crimes like fraud or extortion, with a value of over ZAR 100 000, are committed. The second relevant law is the Cyber Crimes Act. A financial institution or telecommunications network operator that suffers any cybercrime (which could be a broad range of crimes from fraud to extortion) must report the crime to the SAPS (although this requirement is currently suspended).

Management

If a data breach has occurred (arising out of the ransomware attack), POPI requires that certain steps be taken, primarily relating to notification, says Tembedza. This includes notifying:

(i)            affected data subjects; and

(ii)           the Information Regulator,

as soon as reasonably possible following the event.

Employees must follow the company’s procedures when making any notifications.

The company should notify its insurers, assuming it has insurance in place to cover cyber-attacks.  Where insurance is in place, the company must ensure that it adheres to the terms of its policy.

It is important to take legal advice on what actions are permissible to recover your information and systems following a ransomware attack.  While often unlikely, certain actions may create further liability for a victim (for example, making payment of a ransomware amount to an attacker in a sanctioned country or attempting to pursue a ‘vigilante-type’ response.

One should also consider whether it is necessary to brief public relations firms (through your attorneys) to explain the incident to data subjects and to ensure that what is said is both legally sufficient and expressed in a way that best protects the company’s reputation, says Blom.

In all cases, companies that fare the best in these situations are those who:

(i)            respond to the incident quickly;

(ii)           have taken reasonable precautions (such as implementing robust backup systems);

(iii)          hold appropriate insurance cover (and adhere to those terms);

(iv)          brief attorneys prior to notifying their insurers, affected data subjects and the Information Regulator; and

(v)           where necessary, brief forensic investigators and/or public relations experts through their attorneys.

Listen to Tembedza and Blom, dive into the alarming and rapidly evolving world of these cyber threats, here.

  • Wendy Tembedza & Karl Blom, Partners at Webber Wentzel

Cybercriminals data breach Hackers POPI ransomware attacks
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Contributor

Related Posts

South Africa Could Unlock SME Growth By Exploiting AI’s Potential Through Corporate ESD Funds

2026-01-28

How Local Leaders Can Shift Their Trajectory In 2026

2026-01-23

Why Legal Businesses Must Lead Digital Transformation Rather Than Chase It

2026-01-23

Directing The Dual Workforce In The Age of AI Agents

2026-01-22

The Productivity Myth That’s Costing South Africa Talent

2026-01-21

The Boardroom Challenge: Governing AI, Data And Digital

2026-01-20

Ransomware: What It Is And Why It’s Your Problem

2026-01-19

AI Can Make The Dead Talk – Why This Doesn’t Comfort Us

2026-01-19

Can Taxpayers Lose By Challenging SARS?

2026-01-16
Leave A Reply Cancel Reply

DON'T MISS
Breaking News

SARB Holds Repo Rate Steady in Cautious Monetary Policy Decision

In a world described as fractured and fragile, the South African Reserve Bank (SARB) has…

How Many Smart ID Cards Were Issued In South Africa in 2025

2026-01-29

Huawei Says The Next Wave Of Infrastructure Investment Must Include People, Not Only Platforms

2026-01-21

South Africa: Best Starting Point In Years, With 3 Clear Priorities Ahead

2026-01-12
Stay In Touch
  • Facebook
  • Twitter
  • YouTube
  • LinkedIn
OUR PICKS

How a Major Hotel Group Is Electrifying South Africa’s Travel

2026-01-29

Volvo C70: 30 Years Of The Car That Changed The Way Volvo Looked

2026-01-29

The EX60 Cross Country: Built For The “Go Anywhere” Attitude

2026-01-23

Mettus Launches Splendi App To Help Young South Africans Manage Their Credit Health

2026-01-22

Subscribe to Updates

Get the latest tech news from TechFinancials about telecoms, fintech and connected life.

About Us

TechFinancials delivers in-depth analysis of tech, digital revolution, fintech, e-commerce, digital banking and breaking tech news.

Facebook X (Twitter) Instagram YouTube LinkedIn WhatsApp Reddit RSS
Our Picks

SARB Holds Repo Rate Steady in Cautious Monetary Policy Decision

2026-01-29

Alleged R1 Billion International Scam Syndicate Members Arrested

2026-01-29

How Many Smart ID Cards Were Issued In South Africa in 2025

2026-01-29
Recent Posts
  • SARB Holds Repo Rate Steady in Cautious Monetary Policy Decision
  • Alleged R1 Billion International Scam Syndicate Members Arrested
  • How Many Smart ID Cards Were Issued In South Africa in 2025
  • How a Major Hotel Group Is Electrifying South Africa’s Travel
  • Volvo ES90 South Africa Launch: Pricing, Specs & Core, Plus, Ultra Trims
TechFinancials
RSS Facebook X (Twitter) LinkedIn YouTube WhatsApp
  • Homepage
  • Newsletter
  • Contact
  • Advertise
  • Privacy Policy
  • About
© 2026 TechFinancials. Designed by TFS Media. TechFinancials brings you trusted, around-the-clock news on African tech, crypto, and finance. Our goal is to keep you informed in this fast-moving digital world. Now, the serious part (please read this): Trading is Risky: Buying and selling things like cryptocurrencies and CFDs is very risky. Because of leverage, you can lose your money much faster than you might expect. We Are Not Advisors: We are a news website. We do not provide investment, legal, or financial advice. Our content is for information and education only. Do Your Own Research: Never rely on a single source. Always conduct your own research before making any financial decision. A link to another company is not our stamp of approval. You Are Responsible: Your investments are your own. You could lose some or all of your money. Past performance does not predict future results. In short: We report the news. You make the decisions, and you take the risks. Please be careful.

Type above and press Enter to search. Press Esc to cancel.

Ad Blocker Enabled!
Ad Blocker Enabled!
Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.