Legal updates and opinions
News / News
The major cyber security risks to your business
by Ahmore Burger-Smidt, Head of Data Privacy Practice
Online security is one of the most important things to consider in today’s business world. Much is made of how individuals need to be aware of cyber security risks, but businesses, which hold so much of our private data, need to take equal care.
The potential threat of cyber-attacks can impact any industry or business. With the current influence the internet has on our lives, it’s important to be proactive when it comes to online security.
Cyber criminals don’t just hack emails. They can corrupt entire databases, steal the most sensitive information, and take down your entire website with the click of a button. That’s why it’s so important that business owners and decision makers understand what website security is, the latest cybersecurity risks, and know how to protect themselves from falling victim.
Defined as an incident where data is disclosed to an unauthorised party, what are the major risks for a data breach?
According to Verizon’s 2019 Data Breach Investigations Report Research survey based on 41 686 global security incidents, hacking attacks are the most prevalent of tactics used to access data 52% of the time. Social attacks (via unauthorised access to social media accounts) are present 33% of the time, while malware is used in 28% of incidents. Errors, such as employees leaking data by mistake, are a factor in 21% of breaches.
When it comes to an analysis of the biggest categories of victims, interestingly small businesses are the most frequent victims at 43% of breaches. This is followed by 16% in public sector entities, 15% in the healthcare sector and 10% in the financial industry.
The report also looks at motivations behind breaches. Unsurprisingly 71% were driven by financial motivation while 25% were driven by an attempt to gain a strategic business advantage or corporate espionage. While risks abound, the good news is that by working with an expert in IT security, many of these risks can be mitigated or at least flagged early. Conducting security risk assessments, reviewing policies and employee education as well as vulnerability scanning can go a long way towards reducing cyber threats.
Latest News
Out with the Old: South Africa’s Proposed Overhaul of Exchange Controls and the Inclusion of Crypto Assets
by Janice Geel (Associate) and Azraa Sidat (Candidate Attorney), reviewed by Natalie Scott (Director and Head of Sustainability) On 17 [...]
Do not call me I’ll call you …… South Africa’s 2026 CPA Amendment Regulations: operationalising the national opt‑out regime for direct marketing and shifting day‑to‑day anti‑spam responsibility to the National Consumer Commission
by Ahmore Burger-Smidt, Director and Head of Regulatory The Consumer Protection Act Amendment Regulations, 2026 deliver the long‑awaited operational framework [...]
Business Rescue Applications Under Scrutiny: business rescue orders are not there for the taking!
by Eric Levenstein, Director and Head Insolvency & Business Rescue and Amy Mackechnie, Senior Associate This article considers the recent decision in [...]
The AI Arms Race and what it means for Competition Law: A new era or new focus
by Ahmore Burger-Smidt, Director and Head of Regulatory We are not in the habit of writing breathless technology briefings. That [...]
The AI Governance Stack and South Africa’s Draft National AI Policy: An Operational Gap in Search of a Framework
by Ahmore Burger-Smidt, Director and Head of Regulatory Author's Note I am presently reading Noah M Kenney's Governing Intelligence: Law, [...]
Speak now or forever hold your peace. The draft AI policy has been published and parties have 60 days to comment
by Ahmore Burger-Smidt, Director and Head of Regulatory On 10 April 2026, South Africa's Department of Communications and Digital Technologies [...]
