Cybersecurity experts are raising concerns about a growing wave of cybercrime in South Africa, where criminals are increasingly using pirated software, weak mobile security and SIM swap fraud to steal sensitive information and money.
Researchers say these threats have become more sophisticated, with pirated software serving as a key entry point for malware and ransomware attacks.
According to cybersecurity firm Kaspersky, cybercriminals are embedding malicious software into illegally downloaded applications, exposing users to ransomware, spyware and password-stealing programs.
Maher Yamout, a lead security researcher at Kaspersky’s Global Research and Analysis Team, said pirated software has become a major cybersecurity concern across Africa, where many users turn to unlicensed applications to reduce costs.
Once installed, these infected programs can silently compromise a computer, steal login credentials and give attackers access to personal and business data.
Security experts warn that organisations are not immune to the problem. Employees may unknowingly install unlicensed software on company devices, creating security gaps that leave businesses vulnerable to cyberattacks.
Outdated software often misses critical security updates, making it easier for hackers to exploit known vulnerabilities. If customer or company information is exposed, businesses could suffer financial losses as well as reputational damage.
South Africa has long battled software piracy, with previous industry estimates suggesting that nearly one-third of installed software in the country is unlicensed.
Beyond malware, criminals are increasingly targeting smartphones.
Yamout said weak PIN codes make it easier for thieves to access stolen devices and retrieve saved passwords, banking details and other sensitive information. Once inside a device, attackers may gain access to email accounts, social media profiles and financial services linked to stored credentials.
Cybersecurity specialists recommend using strong alphanumeric passcodes, enabling biometric authentication and avoiding the storage of sensitive passwords without additional protection.
Another growing concern is SIM swap fraud, where criminals convince mobile network providers to transfer a victim’s phone number to a SIM card under their control.
Once successful, attackers can intercept one-time passwords (OTPs), phone calls and verification messages, allowing them to bypass two-factor authentication and access bank accounts or other online services.
Industry reports estimate that fraud affecting South Africa’s telecommunications sector cost the country around R5.3 billion in 2024, with SIM swap attacks among the most common methods used by criminals.
Cybersecurity experts recommend several simple steps to reduce the risk of falling victim to these attacks:
- Download software only from official websites or trusted app stores.
- Avoid installing pirated or cracked software.
- Use strong, unique passwords together with a password manager.
- Enable multi-factor authentication wherever possible.
- Protect smartphones with strong PINs or passphrases and biometric security.
- Contact your mobile provider immediately if you suddenly lose network service, as this could indicate a SIM swap attack.
As cybercriminals continue to adapt their tactics, experts say good digital security habits remain one of the most effective ways to protect personal information and financial assets.
Main Image: The Witness










