Category Archives: Uncategorized

Three Years Undetected: What the Cisco SD-WAN Exploit Means for African Enterprises

When a vulnerability scores 10.0 on the Common Vulnerability Scoring System, it demands immediate attention. When exploitation may have been quietly underway for three years before anyone noticed, it demands something more: honest reflection about how we think about network security. Cisco recently confirmed that attackers have been exploiting a critical flaw in its Catalyst […]

ATM Jackpotting Is Back. And Banks Should Be Paying Attention.

Fifteen years ago, security researcher Barnaby Jack stood on stage at Black Hat and forced an ATM to dispense cash on command. It was a powerful demonstration of what was technically possible. In 2026, it is no longer a demonstration. According to a recent FBI bulletin, more than 700 ATM jackpotting attacks were recorded during […]

The Reprompt Reality: Why Your AI Assistant May Be the Next Insider Threat

On January 15, 2026, cybersecurity researchers at Varonis disclosed a sophisticated attack called Reprompt that shows how a single click on a legitimate Microsoft Copilot link can silently exfiltrate sensitive data. Security researcher Dolev Taler revealed that this attack requires no malware, no plugin, and no phishing form. Just one click transforms your AI assistant […]

Welcome to 2026: A Hacktivist Firework, an AI Era of Risk, and What Comes Next

The New Reality: AI Has Changed Everything About Cybersecurity Artificial intelligence is no longer a theoretical concern for security professionals. It’s actively being weaponised by threat actors and deployed by defenders in real time. The transformation happened faster than most organisations anticipated, and 2026 marks the year when preparedness separates the resilient from the vulnerable. […]

This Festive Season, Scammers Are Shopping Too: 6 Real Threats You Shouldn’t Ignore

December feels like a break. People are buying gifts, going on leave, catching flights, and spending more time on their phones than they do the rest of the year. That is exactly why it is peak season for cybercriminals. Scams have evolved far beyond the obvious. The tactics you are about to read are not […]

Silent Season, Loud Threats: Why December Is Prime Time for Cyber Attacks

As businesses wind down, attackers gear up. December is a high-risk month for many organisations. Not because of a spike in technical vulnerabilities, but because of human ones. Staff availability drops. Vendors close early. Security teams are stretched. Everyone is trying to close the year, not review configs or monitor alerts. And attackers know it. […]

The Security Illusion: Why Good Metrics Don’t Always Mean Strong Security

Every month, security teams report back with numbers. Phishing simulations show a drop in click rates. Patch cycles are improving. Endpoint coverage sits above 90 percent. On paper, things look solid. But then an incident happens. A credential gets reused. A business unit shares sensitive data with an unverified vendor. A ransomware attack enters through […]

Cybersecurity Fatigue: The Risk You’re Not Monitoring

While many organisations have spent the past few weeks investing in capabilities, refining playbooks, or assessing external partnerships, there is another risk quietly gaining ground. It does not show up in logs or dashboards, and it is not caused by external actors. It builds slowly, often invisibly, until response weakens and awareness begins to fade. […]

SS-Consulting and iGuard SA Partner to Deliver Real-Time Cyber Defence

The Risk is Real and ConstantCyberattacks are increasing in volume and sophistication. South African organisations face more than 1 100 attacks per week on average. For government and public entities, that number rises to over 3 400. These are not random events. They are calculated, persistent, and increasingly difficult to detect. Many companies already have […]

From Awareness to Ownership: What Happens After October?

October has been loud. Posters were shared. Phishing tests were run. Awareness campaigns went live. Employees were reminded to stay alert, report incidents, and think before they click. But what happens next? Because if the campaigns stop, if the training is archived, and if the conversations go quiet, then Cybersecurity Awareness Month becomes a missed […]