Connect with us

E-Business

The Mobile Malware Landscape in 2022, of Spyware, Zero-Click Attacks, Smishing and Store Security

Published

on

Kindly share this post

By Pankaj Bhula

Cyberattacks are increasing in number all the time. Indeed, our 2022 Mid-Year Report revealed a 42% global year-on-year increase in attacks and according to the World Economic Forum’s 2022 Global Risk Report, 95% of cybersecurity issues are traced back to human error.

This should be a red flag for all organizations, especially with the transition to remote and hybrid working, where employees are using mobile devices more often. These devices now have access to sensitive company data and direct connectivity to the enterprise network.

Combine that with the key ‘human error’ ingredient and you’ll see why mobile devices are such a prime target for cybercriminals.

Despite this, many corporate cybersecurity strategies tend to focus only on traditional endpoints, such as laptops. Do you know if all the mobile devices in your organization are safe from malware? Perhaps you have Mobile Device Management (MDM) and think that’s enough?

Advertisement

Unfortunately, MDM does not provide intrusion detection or scan for malware. And with the mobile threat landscape constantly evolving, it’s never been more important to have a robust solution in place. Let’s take a look at the current landscape and what you need to know to stay protected in 2022.

Thriving spyware marketplace

The current mobile malware landscape is a minefield with more and more vulnerabilities being exploited and spyware software being deployed.

In our last security report, we noted that NSO Group’s notorious spyware, Pegasus, was wreaking havoc after it was discovered gaining access to the mobile devices of government officials and human rights activists.

Unfortunately, 2022 was no different, with Pegasus found to have compromised the devices of Finland’s Ministry of Foreign Affairs, Spain’s Prime Minister as well as multiple devices of UK officials.

Advertisement

In July, Apple introduced a ‘lockdown mode’ for its devices to protect against Pegasus hacks. Even though this mode will increase the security of the users who will use it, but it will also significantly reduce the user experience and limit the functionality of iPhones.

However, while Pegasus is one of the most powerful tools currently on the market, the surveillance vendor ecosystem has also become more competitive.

For example, Predator, a spyware produced by commercial surveillance company Cytrox, infected iPhones towards the end of 2021 via single click links sent over WhatsApp.

As of today, the reach of these tools, let alone their mechanisms, is not yet fully understood by the cyber community despite extensive research efforts.

Zero Click Attacks

Advertisement

In terms of techniques, this year we have seen a surge in discovered zero-click attacks. As the name suggests these attacks require no input from the victim before deploying malware.

This is because they exploit existing vulnerabilities in already installed apps, allowing threat actors to sneak past verification systems and begin their attack unnoticed.

This technique is particularly focused on applications that accept and process data, for example, instant messaging and email platforms.

We saw this in action in April when a new zero-click iMessage exploit leveraged to install Pegasus on iPhones was discovered, running on some early iOS versions.

The exploit named HOMAGE was used in a campaign against Catalan officials, journalists and activists.

Advertisement

It’s important to emphasize however, that this technique isn’t just a threat to world leaders but to the everyday person and organizations.

Our phones are hubs of confidential data, both personal data such as banking information as well as business data, with many employees now connected to their company’s networks and data via their mobiles, which multiplied over the pandemic with thousands working from home. Cybercriminals are utilizing this silent and persistent practice to gain as much access as possible.

Smishing attacks on the rise

In addition to Zero Click attacks, we have also observed a continuous uplift in the spreading technique known as “Smishing” (SMS Phishing), which uses SMS messages as the attack vector for malware distribution.

These attempts often imitate trusted brands or personal contacts to entice the victim to click on a link or share personal details in confidence.

Advertisement

This method has proven particularly successful as after one device has been compromised, its entire contact list is up for grabs, creating an endless cycle of possible victims.

This is how the infamous Flubot was commonly deployed. Since its emergence in December 2020, it has been considered the fastest growing Android botnet ever seen.

The group is known to be particularly innovative and continuously seeking to improve its variants, having claimed tens of thousands of victims.

As such, in June, an international law enforcement operation involving 11 countries led to its infrastructure being taken down and rendering the malware inactive.

Evidently, Flubot’s position could not remain vacant for too long, as a new Android malware operation called MaliBot emerged in the wild soon after. MaliBot is targeting online banking and cryptocurrency wallets in Spain and Italy, looking to replicate the success of its predecessor.

Advertisement

At the time of writing, MaliBot is already the third most prevalent mobile malware worldwide, despite being so new, with AlienBot taking the top spot.

Safety on the App Store?

Many users turn to application stores to help keep their devices secure, however, unfortunately there are apps that claim to help manage security risks but which often contain malware themselves.

The most secured stores like Google Play Store and Apple App Store have thorough review processes to investigate candidate applications before they are uploaded and are held to high security standards once they are admitted onto the platforms.

A recent report stated that throughout 2021, Google blocked 1.2 million suspicious applications and Apple blocked 1.6 million.

Advertisement

Resourceful cybercriminals continually try to bypass these security measures, though, with different tactics such as manipulating their code to pass through the filters or introduce initially benign applications and add the malicious elements at a later stage.

So, it’s not surprising to still find malicious applications hiding in these stores. In fact, these platforms remain the main infection vectors in mobile threats.

For example, Check Point researchers recently analyzed suspicious applications on the Google Play Store and found a few of them masquerading as genuine Anti-Virus solutions, while in reality, once downloaded the apps installed an Android Stealer called SharkBot which steals credentials and banking information.

And in February, an Android banking Trojan called Xenomorph was spotted lurking behind a fake productivity application on the Google Play Store. There were over 50,000 downloads.

It must also be noted that due to the pandemic fueling increased use of mobiles for work purposes over the last two years, leveraging mobile phones for work purposes suddenly became the new normal for many users and enterprises, which meant targeting the mobile devices became also the new normal for cybercriminals.

Advertisement

Unfortunately, the general awareness of the users of mobile phones with regards to cybersecurity attacks is much lower, and even though, many of them have started leveraging their personal or work-provided mobiles for work purposes, many still do not view it as a sensitive corporate environment, being less careful of malicious emails or links they receive.

Unfortunately, the threat landscape is evolving rapidly, and mobile malware is a significant danger to both personal and enterprise security, especially as mobile devices are vulnerable to several attack vectors, from the application to the network and OS layers.

To combat this risk, organizations should also be looking to instill proactive strategies that can keep staff and corporate data safe from a potential attack. This must be a continuous journey as cybercriminals are relentless, always adapting and improving on their tactics.

For mobile users themselves, we recommend additional safety measures such as downloading applications only from certified Google and Apple stores, and even while downloading them there – review the recommendations, and number of downloads of a certain application, to verify that the applications is legitimate.

Mobile users should adopt on their mobile phones, the same rules they have as on their desktop devices such as not clicking on links from unknown senders, whether it comes via email, SMS message or messaging applications, and not to download files from untrusted sources.

Advertisement

For some businesses it may be beneficial to employ the help of tools that fortify endpoint resilience and secure remote users. Check Point Harmony  for instance, uses real-time threat intelligence to actively guard against zero-day phishing campaigns, and URL filtering to block access to known malicious websites from any browser.

It also enforces conditional access, ensuring that if any device does become infected it will be unable to access corporate applications and data.

Harmony Mobile achieves all of this – and more – without disrupting employees or hampering their productivity.

Pankaj Bhula is Check Point’s EMEA Regional Director for Africa

 

Advertisement

Kindly share this post

Dear Reader, Your support matters. But we believe that technology makes life more exciting and helps improve the lives of people around Nigeria and indeed the world. That is why, we have devoted our energy to independent reportage of technology and finance and how they affect lives. Our incisive and analytical view of how technology news affects the daily life help individuals and organizations make up their minds. Quality journalism costs money. Today, we're asking that you support us to do more. Kindly support our effort to deliver technology and finance journalism to everyone in the world. Donate as little as N1,000. Bank transfers can be made to: UBA Plc 1017156876 Communication Week Media Ltd

E-Business

Nigeria Leads Africa in Online Gambling Regulation – GCI

Published

on

Kindly share this post

Nigeria has emerged as one of Africa’s most regulated online gambling markets, even as illegal operators continue to dominate the continent, according to a new report by Gaming Compliance International (GCI).

Nigeria Leads Africa in Online Gambling Regulation - GCI

The report, the first comprehensive assessment of online gambling across all 54 African countries, showed that Africa’s online gambling Gross Gaming Revenue (GGR) reached $23 billion in 2025.

However, only $5.2 billion (23 per cent) was generated by licensed operators, while $17.8 billion (77 per cent) remained in the unregulated market.

In West Africa, total online gambling revenue rose to $4.8 billion in 2025 from $4.3 billion in 2024. Of the 2025 figure, regulated operators accounted for $1.5 billion (31 per cent), while $3.3 billion (69 per cent) flowed to unlicensed platforms, highlighting the region’s persistent enforcement challenges.

Nigeria stood out as the region’s strongest performer, recording the lowest unregulated market share at 56 per cent, compared with the West African average of 69 per cent and the African average of 77 per cent.

Advertisement

The study also found that online gambling participation across Africa increased from 198 million people (13 per cent of the population) in 2024 to 215 million (14 per cent) in 2025.

Despite this growth, GCI estimated that illegal operators deprived African governments of about $3.55 billion in tax revenue in 2025. The number of unlicensed gambling platforms targeting African consumers also rose to 4,129, up from 3,644 in 2024.

Commenting on the findings, Matt Holt, chief executive officer, GCI, said the report provides regulators with the first continent-wide benchmark for strengthening oversight and consumer protection.

Ismail Vali, president, GCI, urged governments to develop competitive and well-regulated markets that encourage consumers to patronise licensed operators, boost public revenue and attract greater investment.

Online gambling in Nigeria is regulated by the Nation Lottery Regulatory Commission.

Advertisement

Kindly share this post
Continue Reading

E-Business

Kaspersky Warns Mobile‑data Buyers about Scammers Posing as Telecoms Operators

Published

on

Kindly share this post

At the height of the Northern Hemisphere tourist season, demand for communications and mobile Internet services rises sharply. Kaspersky’s security experts have uncovered scams that target anyone purchasing mobile connections or SIM cards worldwide.

Fraudsters create counterfeit websites that look like the portals of major regional and international telecom providers to trick users into revealing their phone numbers, personal details or banking information.

Kaspersky is sharing several examples of these fake login pages that mimic legitimate telecom operator sites and giving recommendations on how not to be deceived.

In the first case, scammers exploit the brand name of an international telecommunications company operating services in Asia, Africa and Europe. Fake authentication pages encourage users to put in their phone number and credentials.

While the first example shows the different design, the second scam site closely mimics the original log in page, making it hard for users to tell the difference and spot a fake. Entering authentication or payment data on fraudulent web sites may result in money or data loss and become a reason for more frequent spam and fraudulent calls.

Advertisement

Another example is a scam page which poses as another international communications company, working in North Africa, the Middle East and Southeast Asia. In this scheme scammers encourage users to top up their mobile data/Internet plans by entering their personal information and bank cards details.

Kaspersky experts have also identified a scam when cyber criminals suggest users enter their personal data to check and pay a bill inquiry. Such scam schemes are usually aimed at gaining victims’ personal data for further fraud or account hacking and stealing money.

“Because of the active use of AI, scammers can now create fake pages with ever increasing accuracy and speed, targeting the most popular user interest areas. We constantly see scams revolving around sports events, music concerts, seasonal sales and holidays. Unfortunately, the telecoms industry is no exception.

To keep your data and money safe, be vigilant when purchasing mobile or Internet plans online. Using an eSIM – purchased through an official app – is one way to avoid fake telecom sites, as it eliminates the need to enter personal details on questionable web pages.

If you’re unsure about a site’s legitimacy, search for the brand name directly in a search engine and enable a security solution that blocks phishing links for you,” comments Tatyana Kulikova, cybersecurity expert at Kaspersky.

Advertisement

 

Kindly share this post
Continue Reading

E-Business

NITDA, NAWOJ Partner to Advance Women’s Digital Inclusion, Digital Literacy

Published

on

Kindly share this post

In a strategic push to bridge the gender digital divide, the National Information Technology Development Agency (NITDA) has partnered with the Nigeria Association of Women Journalists (NAWOJ) to advance women’s digital inclusion and drive the nation’s transformation agenda.

NITDA, NAWOJ Partner to Advance Women's Digital Inclusion, Digital Literacy

Dr Aristotle Onumo and some NITDA staff, pose for a group photograph with the President of the National Association of Women Journalists (NAWOJ), Comrade Aisha Ibrahim, and members of the delegation following a strategic engagement at the Agency’s Headquarters in Abuja.

The partnership was cemented during a courtesy visit to NITDA Director General, Kashifu Inuwa, CCIE, by a NAWOJ delegation led by National President Comrade Aishatu Ibrahim, who introduced the agency to the forthcoming Women in Security (WINSEC) Summit & Awards 2026.

Inuwa, represented by Dr. Aristotle Onumo, the Director of the Stakeholders Management and Partnerships Department, assured the association that NITDA would not only participate in the conference, but also support the success of the conference.

Inuwa hailed the NAWOJ for creating a platform for peacebuilding, dialogue on security and women’s inclusion, which he described as one of the critical areas NITDA is focused on to ensure that more women obtain digital literacy and skills under the National Gender Inclusive Strategy.

Beyond NITDA’s plan to participate in the conference, the DG noted that a robust partnership between the organisations would engender meaningful opportunities and initiatives through which many more women can access digital literacy.

“Inclusivity is the key to everything we do at NITDA. We clearly defined that 40 per cent of our programmes must recognise the issue of gender. We ensure that women are adequately represented and positioned to benefit greatly from the programmes that we organise in the agency.

Advertisement

“We graciously accept to participate actively in that conference. Apart from acquiring skills among journalists themselves, partnership with NAWOJ will also serve as a platform through which we can also reach out to various women’s groups across the federation,” Inuwa said.

Earlier, Comrade Ibrahim commended the DG for his visionary and transformational leadership which has continued to position NITDA as the catalyst for Nigeria’s digital economy through its various programmes.

She explained that the Women in Security (WINSEC) Summit and Awards 2026 is an initiative of NAWOJ designed to promote collaboration among government institutions, security agencies, technology experts, the media, and other stakeholders to address contemporary security challenges.

According to Comrade Ibrahim, the association also aims to recognise outstanding individuals and institutions that have demonstrated excellence in security, governance, and innovation while fostering meaningful dialogue on the role of technology in building a safer and more resilient Nigeria.

“We deeply appreciate your exemplary leadership, passion for innovation, and unwavering commitment to building a digitally empowered Nigeria. We respectfully invite the agency to partner with NAWOJ in making this landmark initiative a success.

Advertisement

“We look forward to establishing a long-term partnership with NITDA that will empower women journalists with cutting-edge digital skills, support digital inclusion and contribute to innovation, digital literacy, and human capital development,” the NAWOJ president added.

Both organisations expressed optimism that the meeting would lay a solid foundation for a rewarding partnership agreement with specific and clearly defined objectives that will support digital inclusion and contribute to innovation, digital literacy, and human capital development.

Kindly share this post
Continue Reading

Trending