Story image

Uganda data centre raided, operator ‘held hostage’

09 Jul 2018

A major data centre in Kampala, Uganda has allegedly been pillaged by government officials.

The concerning news comes at a time when data protection and privacy is a hot issue.

Uganda’s Daily Monitor managed to get a copy of a letter of complaint sent from MTN Uganda (a local telco company) to the government’s Internal Security Organisation (ISO).

The letter implied that the company’s data centre had been trespassed by security men purporting to be from ISO who accessed their servers before disconnecting four of them.

This came after a man who had physical access to the MTN IT Data Centre was ‘kidnapped’.

According to the letter, Huawei Uganda data facilities manager Moses Keefah Musasizi was seized at 5pm on July 2 before being held hostage at the ISO headquarters until 9pm when he was taken to the MTN data centre and coerced to provide access.

“We are yet to determine the extent of interruption to our network activities and the financial impact. It is also possible that some data have been tempered with or illegally accessed and taken from the premise,” the letter reads in part.

“The intrusion into the data was properly captured by our closed circuit television (CCTV cameras.”

Following the breach, MTN Uganda reported the case to the local police and stressed that they had received no warning.

“We await police investigation to determine the nature and motive of the above officers. It is important we had not received search warrant, court order or a request for information that not been attended to, warranting the above action,” the letter reads.

“This incident poses a serious security risk to telecommunication infrastructure and customer data which are protected under the Uganda Communication Act 2013. Our servers have been off since yesterday and are yet to be reconnected. As a result, MTN is currently unable to offer some services such as processing of call data records, resolution of customer queries and Mobile Money Micro-lending.”

According to MTN, the letter was copied to Minister of ICT and National Guidance, Minister of Security, Minister of Internal Affairs, Inspector General of Police, and the head of Chieftaincy of Military Intelligence.

Avi Networks: Using visibility to build trust
Visibility, also referred to as observability, is a core tenet of modern application architectures for basic operation, not just for security.
Privacy: The real cost of “free” mobile apps
Sales of location targeted advertising, based on location data provided by apps, is set to reach $30 billion by 2020.
Myth-busting assumptions about identity governance - SailPoint
The identity governance space has evolved and matured over the past 10 years, changing with the world around it.
Forrester names Crowdstrike leader in incident response
The report provides an in-depth evaluation of the top 15 IR service providers across 11 criteria.
Slack doubles down on enterprise key management
EKM adds an extra layer of protection so customers can share conversations, files, and data while still meeting their own risk mitigation requirements.
Security professionals want to return fire – Venafi
Seventy-two percent of professionals surveyed believe nation-states have the right to ‘hack back’ cybercriminals.
Alcatraz AI to replace corporate badges with AI security
The Palo Alto-based startup supposedly leverages facial recognition, 3D sensing, and machine learning to enable secure access control.
Unencrypted Gearbest database leaves over 1.5mil shoppers’ records exposed
Depending on the countries and information requirements, the data could give hackers access to online government portals, banking apps, and health insurance records.