The ransomware claim involves the National Credit Regulator (NCR) in South Africa, which is targeted by the threat actor Dragonforce. The attack potentially compromises the regulatorβs regulatory and consumer protection functions in South Africa. #SouthAfrica
Incident Details
- Victim: National Credit Regulator (NCR)
- Country: ZA
- Actor: dragonforce
- Source: http://z3wqggtxft7id3ibr7srivv5gjof5fwg76slewnzwwakjuf3nlhukdid.onion/blog/?post_uuid=86439ee0-fe94-4bf3-8cf7-056c60e87c1d
- Discovered: 2025-12-24 19:44:44.153925
- Published: 2025-12-24 19:24:07.319583
Information
- The National Credit Regulator (NCR) is the statutory body established under the National Credit Act 34 of 2005 to regulate the South African credit industry.
- The NCR is responsible for the registration of credit providers, credit bureaus, debt counsellors, payment distribution agents, and alternative dispute resolution agents.
- It monitors compliance with the Act, enforces regulations, and promotes consumer education.
- The aim is to ensure a fair, transparent, and accessible credit market.

Disclaimer: This post is based on public claims made by the ransomware group "dragonforce". I cannot confirm the accuracy of the information. However, I would be happy to share any official statement from the affected organization to provide clarification.