Skip to content

All the news that matters, in plain English.

Latest
  1. India delivers right of reply to Shehbaz Sharif's UNGA speech — warns "terrorism by Pakistan will have consequences"
  2. Pentagon HR breach exposed unencrypted personal data of up to 4 million US military personnel
  3. SpaceX lines up Crew-13 and Falcon Heavy NROL-97 on a same-day Oct 1 doubleheader
  4. Anti-migrant activist Daniel Thomas arrested on suspicion of criminal damage after Channel dinghy slashing
  5. US cities take on the FCC over its plan to override local broadband rules
  6. Glasgow City Council to sack and rehire more than 20,000 staff in pay row
  7. Judge declines to approve $110bn Paramount–Warner Bros merger settlement and demands more answers
  8. NHS staff to be suspended on the spot if suspected of snooping on patient records

Technology

Ransomware hits South Africa's air traffic agency — staff collusion not ruled out

South Africa's Air Traffic and Navigation Services has brought in forensic investigators after a ransomware attack on the operational technology behind its weather-related air traffic services — an incident the agency says could have halted commercial aviation.

An air traffic control tower overlooking a runway, with a commercial aircraft on approach in the distance.
Photo: The Citizen

South Africa’s Air Traffic and Navigation Services (ATNS) has brought in forensic investigators to probe the source of a ransomware attack on its systems — one it says could have halted the country’s commercial aviation.

A preliminary investigation found its operational technology environment supporting weather-related air traffic services came under ransomware attack. If compromised, it could critically disrupt flight planning, visibility data and communication lines between meteorological providers and control towers, according to the Sunday Times.

Network monitoring indicated possible data exfiltration to external IP addresses in China. ATNS said internal teams had implemented containment and malware removal, “however, a comprehensive forensic investigation is required to determine the root cause, extent of compromise, and any remaining risks.”

The agency has not ruled out employees collaborating with hackers. Internal reports suggested staff may have unlawfully accessed and exfiltrated personal information without authorisation — but initial investigations could not substantiate the allegations, and an independent probe has been ordered. The mandate is corroborated by an official ATNS tender for a digital forensic investigation provider, published on 18 September and closed on 25 September (tender record).

Spokesman Khulu Phasiwe said the attack took place this financial year and ATNS was “currently unable to comment on the nature or extent of any potentially compromised data until the forensic investigation has been concluded.”

The stakes are high: ATNS manages more than 6% of the world’s airspace and employs more than 1,000 staff across 21 aerodromes, while supporting aeronautical satellite communication across 33 states.

Sources

More on this topic: all Technology stories

Get Flip News by email

This opens your email app — we add you manually. No account, no spam, no third parties.