Ghana's Cyber Security Authority (CSA) has cautioned journalists against publishing unverified claims about cyber criminals. The authority also warned against prematurely disclosing unresolved vulnerabilities in computer systems. This guidance aims to prevent disruptions to ongoing investigations and protect national security.
Alex Awere-Kyere, Senior Manager for Critical Information Infrastructure (CII) at the CSA, stated that media reports could inadvertently aid cybercriminals. He explained that publishing sensitive information might reveal security agencies' strategies or provide a roadmap for exploiting system weaknesses. This could happen before fixes are implemented, posing significant risks.
This directive fits into Ghana's broader effort to strengthen its digital defenses and protect vital economic sectors. The nation is increasingly reliant on digital systems, making cybersecurity a critical component of economic stability. Previous incidents have highlighted the potential for cyberattacks to disrupt essential services and financial operations.
Mr. Awere-Kyere made these remarks during a training session for media practitioners. The National Community Media Cyber Capacity Building Project (NCMCCBP) organized the event. He urged journalists to engage the CSA or other security agencies before publishing sensitive cyber incident information. He stated, “Where the security agencies advise that we hold on to certain information, the media should heed that advice.”
The implications of irresponsible reporting extend beyond individual organizations. A disruption to Critical Information Infrastructure (CII) could have widespread economic consequences. These sectors include banking, finance, energy, water, and health. They are vital for national security and economic function, meaning their compromise affects the entire economy.
Mr. Awere-Kyere also addressed the issue of mobile money fraud, urging the public to report suspected cases early. He highlighted that early reporting to the CSA, via toll-free number 292, could enable intervention before transactions complete. Once money is withdrawn, recovery becomes very difficult, he noted. This proactive approach is crucial for protecting citizens' finances and maintaining trust in digital payment systems.
Tackling mobile money fraud requires more than just pursuing perpetrators after the fact. It demands addressing how fraudsters obtain victims' personal information. This effort requires collaboration among the CSA, Data Protection Commission, and telecommunications operators. The Joint Cybersecurity Committee, established under Section 13 of the Cybersecurity Act, 2020 (Act 1038), facilitates this cooperation. This committee includes the Bank of Ghana and the Criminal Investigations Department of the Ghana Police Service.
The NCMCCBP training, implemented by the CSA, Africa Centre for Digital Transformation (ACDT), and the Government of the Czech Republic, aims to enhance journalists' capacity. It seeks to ensure they report on cybersecurity accurately and responsibly. The project launched in Accra on August 3, 2026, and will move to Kumasi in September. This initiative underscores the growing importance of media literacy in cybersecurity. Responsible reporting helps the public stay safe without inadvertently assisting cybercriminals. It also protects Ghana's economic infrastructure from potential threats.