Info Regulator to probe daring cyber-attack on SSA

Info Regulator to probe daring cyber-attack on SSA logo

The SSA, whose mandate is to “provide the government with intelligence on domestic and foreign threats”, was hacked days before the start of the BRICS summit in Johannesburg in August, according to a report in the Sunday World newspaper.

The Sunday World article made several damning allegations, including that sensitive and compromising information was leaked.

The newspaper quoted a senior official, speaking on condition of anonymity, who said it constituted treason and espionage. “They strongly suspect the hackers received a helping hand from people within the agency,” the source was quoted as saying. The source also claimed they were told to keep the whole incident a “top secret because it was embarrassing”.

Pansy Tlakula, chair of the Information Regulator, told the TechCentral Show (TCS) on Thursday that she is aware of the reports about the incident, and is now launching an “own-initiative investigation”. When asked whether she thinks the SSA matter merits a detailed investigation — and possible enforcement action — she said it’s too early to know.

We will simply have to wait for the Information Regulator to issue a formal media statement on the progress and outcome of this investigation.

Click here to read the full article:

https://techcentral.co.za/probe-cyberattack-state-security-agency/232959/

Relevance to Auditors, Independent Reviewers & Accountants:

  • POPIA is an important piece of legislation that your clients must comply with, and which you must assess compliance with.  If they don’t comply with the relevant laws and regulations, you have certain reporting obligations in terms of NOCLAR (Non-Compliance with Laws And Regulations) – this could include reporting to management, qualifying your audit opinion, reporting a Reportable Irregularity, etc.

  • As an auditor, independent reviewer and accountant, you also need to be aware of media statements, enforcement notices, etc. that have been issued by/about the Information Regulator and its Enforcement Committee.

Relevance to Your Clients:

  • An entity (company or close corporation) should be aware of media statements, enforcement notices, etc. that have been issued by/about the Information Regulator and its Enforcement Committee.

There are not comments for this article at the moment, check back later.
You must be logged in to add a comment, log in now.
Need Help ?

Explore Smarty