The South African Health Products Regulatory Authority (SAHPRA) has alerted stakeholders to phishing emails circulating with the subject lines “Urgent” and “Follow-Up”.
SAHPRA confirmed that some stakeholders have already clicked on links contained in these emails.
Stakeholders who receive an unexpected or suspicious email purporting to come from SAHPRA should not click on any links or open any attachments. They should verify the authenticity of the email through a trusted communication channel, particularly where it contains an unusual or unexpected request. Once confirmed as illegitimate, the email should be deleted.
The authority did not state how many stakeholders have been affected, whether any data has been compromised, the specific content or requests contained in the phishing emails, the email addresses from which they originated, or what technical measures SAHPRA is implementing beyond general cybersecurity strengthening.
Sources
- Primary: South African Health Products Regulatory Authority (SAHPRA) — https://www.sahpra.org.za/important-notice-on-cybersecurity-threats/