
The Government Pensions Administration Agency
Data Breach on March 12, 2024
| Data Breach Report | ||
|---|---|---|
| Victim | gpaa.gov.za | |
| Threat Actor | LockBit | |
| Date Discovered | Mar 12, 2024 | |
| Description | The Government Pensions Administration Agency (GPAA) administers pensions on behalf of its primary clients, the Government Employees Pension Fund (GEPF) and National Treasury. | |
| Leak Size | Unknown |
Credential Exposure for gpaa.gov.za
We've indexed 141 @gpaa.gov.za accounts from external breaches, plus 10 credentials for gpaa.gov.za itself.
Last checked Aug 16, 2026
| @gpaa.gov.za addresses from external breaches | |
|---|---|
| Third-party breaches | 134 accounts · across 53 breaches · 121 with a plaintext password · most recent May 9, 2025 |
| Combo lists | 63 accounts · most recent Aug 7, 2026 |
| Passwords for gpaa.gov.za accounts | |
|---|---|
| Combo lists | 10 logins · most recent Aug 15, 2026 |
| Infostealer logs | 1 logins · 1 infected devices · most recent Nov 4, 2025 |
Logins may belong to customers or to staff, and the data doesn't say which. None of this is necessarily connected to the ransomware attack above.
Is your organization next?
The Government Pensions Administration Agency was breached. Check if your company's credentials have been exposed in this or other data breaches.
Check your exposure →Continuous dark web monitoring alerts you when we find leaked credentials or session tokens for your company.