THE US$1.1 MILLION INSIDE JOB: How a 24-Year-Old MSU Intern Allegedly Hacked CABS in Massive Cybertheft Scandal
In the digital age, bank robbers no longer wear ski masks or carry shotguns—they wear lanyards, sit in cubicles, and weaponize lines of code. This is the chilling reality facing the Central Africa Building Society (CABS) following the discovery of a catastrophic security breach that hemorrhaged over US$1.1 million (roughly R18.7 million).
The suspect, Sabelo Malunga, appeared before Harare regional magistrate Francis Mapfumo facing severe hacking and fraud charges. Remanded in custody, Malunga is scheduled to make his highly anticipated bail application today, Monday, 31 August 2026. The State, led by prosecutor Blessed Songozo, alleges that the young IT intern systematically compromised the bank's digital fortress, maintaining illegal remote access to orchestrate a staggering wave of fraudulent ZIPIT transfers and international ATM withdrawals.
1. The Trojan Horse: Planting the Seed
Sabelo Malunga was engaged as an Information Technology intern at CABS from November 2025 to February 23, 2026. According to the State, he used this privileged position to lay the groundwork for a massive cyberattack.
2. Visa Sounds the Alarm
The heist first surfaced on the radar of investigators on March 27, 2026, when Visa flagged highly suspicious international ATM transactions involving CABS-issued debit cards.
3. Injecting Ghosts into Zimswitch
The internal audit discovered that the SUPREMO backdoor was just the beginning. The malware was actively being used to manipulate the local interbank transfer system.
4. The South African Forensics and The Court Battle
CABS hired MWR, a prominent South African digital forensics company, to contain the suspected malware, halt the financial bleeding, and determine the origin of the compromise.
The Ultimate Wake-Up Call for Zimbabwean Banks
The staggering US$1.1 million cybertheft at CABS is a terrifying indictment of the vulnerabilities lurking within Zimbabwe's financial institutions. When a 24-year-old university intern can allegedly embed remote-access software into a national bank's servers, hide it in plain sight, and siphon over a million dollars into mobile wallets like EcoCash and InnBucks without triggering immediate local alarms, the entire sector needs to urgently re-evaluate its internal threat protocols.
Banks spend millions fortifying their external firewalls against international hackers, but this heist proves that the most devastating breaches often come from the inside. The fact that the initial detection came from Visa—not CABS' own internal monitoring systems—highlights a lethal blind spot in the real-time tracking of Zimswitch and ZIPIT injections.
As Sabelo Malunga fights for bail today, the whereabouts of the US$1,136,179 remains a mystery. With zero funds recovered so far, this case is no longer just about prosecuting a rogue student; it is a glaring warning to every bank in the country. The call is coming from inside the house, and the cost of ignoring it is in the millions.
© Sona Headlines | National News & Cyber Crime Desk
What Do You Think? Join the Conversation
Have an opinion on this Zimbabwe News story, Breaking News, Politics, Business, Entertainment, Sport, or Community Affairs? Share your thoughts, ask questions or add your perspective below and join the Sona Headlines community.
Latest Stories from Sona Headlines
Match Panels to Inverter
Tips for optimal system performance.
3.5kVA Inverter Load Guide
Explore residential setup capabilities.
Best Solar Panels Zimbabwe
Analysis of performance and durability.
Solar Companies Zimbabwe
Customer service and reliability.
Best Solar Panel Brands
Guide for home and business solutions.
Solar Installers Zimbabwe
Professional and certified installers.
3kVA System Cost Guide
Get pricing information for Zimbabwe.
5kVA System Cost Guide
Budget requirements for systems.