10 June 2022
The Shoprite Group became aware of a suspected data compromise, impacting on a specific sub-set of data and which may affect some customers who engaged in money transfers to and within Eswatini and within Namibia and Zambia.
Affected customers will receive an SMS to the cell number supplied at the time of the transaction. An investigation was immediately launched with forensic experts and other data security professionals to establish the origin, nature, and scope of this incident.
Additional security measures to protect against further data loss were implemented by amending authentication processes and fraud prevention and detection strategies to protect customer data. Access to affected areas of the network has also been locked down. The data compromise included names and ID numbers, but no financial information or bank account numbers.
The Group has notified the Information Regulator.
Investigations are on-going. The Group is not aware of any misuse or publication of customer data that may have been acquired, however, web monitoring relating to the incident continues.
There is a possibility that the impacted customer data may be used by the unauthorised party and customers are advised to follow these precautionary measures:
Should any unauthorised activity be detected, customers should immediately notify the Group or relevant authorities.
The Group sincerely apologises to those affected.
Customers with any questions or concerns may contact 0800 01 07 09 or email consumer@shoprite.co.za.