logo

South African Government Pension Data Leak Fears Spark Probe

ID: 537df149-269b-5c66-aa35-a1aa64d0377a

STIX ID: report--537df149-269b-5c66-aa35-a1aa64d0377a

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2024-03-18

Date Updated: 2026-04-21

Author: John Leyden, Contributing Writer

...
...

Alleged LockBit ransomware operators claim they stole and publicly leaked 668GB of sensitive Government Pensions Administration Agency (GPAA) data, potentially impacting the South African Government Employees Pension Fund (GEPF) which covers ~1.2M employees and ~473k pensioners; GPAA says it acted to secure systems and is investigating, while observers note the claim may relate to an earlier Feb.16 incident and follows law enforcement disruption of LockBit (Operation Cronos). The report provides context on LockBit's rapid adaptation, likely tactics (account compromise and public-facing app vulnerabilities), potential impact, and recommended mitigations such as MFA, tested backups, endpoint detection, and securing management interfaces.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.