E-Business
Africa: 2023 Cyberthreats Landscape, Next Year Predictions

By Yusuph Kileo
In recent years, of African countries are working hard to adopt 2030 African digital transformation agenda. Finance, education, agriculture, government, security, and manufacturing, are actively adopting digital technologies and transitioning their operations to online platforms.

As we advance in technology throughout the continent, nations need to remember, cybersecurity and personal data protection are fundamental principles in the implementation of the digital transformation project in order to minimise the challenges that come along with the technology.
The year 2023 was filled with countless cyberattacks across many countries — Some of these attacks targeted critical infrastructure, financial institutions, governments and other companies.
As African countries are now pushing for digital transformation and experiencing rapid economic development, cybersecurity remains a pressing concern for businesses across Africa.
Unfortunately, some of the African countries indicate inadequate security measures to fight off cybercrime, leaving them highly susceptible to cyberattacks — They have weak prevention mechanisms to combat cyber threats and poor intrusion detection systems, thereby placing sensitive transactions at significant risk.
There is an increase in the volume and sophistication of cyberattacks in financial institutions.
According to the 2023 Africa Financial Industry Barometer, 97% of surveyed leaders of financial institutions in Africa rank cybercrime and regulatory constraints on cybersecurity as the leading threat to the financial services industry alongside worsening economic conditions.
These massive cyberattacks in the region threatens the security of the growing economy and critical infrastructure.
MTN Nigeria, lost $53 million from its mobile money service which forces them to sue several banks in the Nigeria, financial institutions and e-citizen portal where halted by distributed denial of service attack in Kenya, South Africa there is an increase in backdoor and spyware attacks with an alarming 106,000 recorded attempts.
There are many similar cybersecurity incidents in other African countries and there is a need of urgent action to strengthen protection measures.
Failure to counter cyberthreats can have serious consequences for individuals, businesses and the socio-economic development of the continent.
Africa is not alone in this, In September alone other part of the world experience massive cyberattacks — To mention few notable cyberattacks; On September 6, the travel booking company Sabre experienced a serious ransomware attack where by 1.3 terabytes of data were stolen by Dunghill and just few days letter, on September 11th another ransomware attack on save the children lead to the loss of 6.8 terabyte of data and entertainment company MGM Resorts also suffered a cyberattack which was made public on X saying that the security incident severely impacted its business operations.
The following day on September 12, Hong Kong-based cryptocurrency exchange platform, CoinEx, saw the loss of US$70 million in cryptocurrency following a cyberattack launched against it.
In 2023, the most common cyberthreats in Africa includes Insider threats, Social Engineering, Software update supply chain attacks, Phishing attacks, Mobile malware, online shopping fraud, Ransomware, Man-in-the-middle (MitM) attack, Cryptojacking attacks, IoT botnet DDoS attacks and Malware attacks among others.
According to the year 2023 Positive technology report, the most targeted organizations with cyberattacks were those in the financial sector (18%), followed by telecommunications companies (13%), government agencies (12%), and organizations from the trade (12%) and industrial (10%) sectors.
The impact brought by these growing cyberattacks includes, Loss of customer/business, Loss of organisation critical data, Threat to organisation/National Security, Damage of goodwill and Reputation, Loss of Revenue — Economic Losses, Temporary or permanent closure, Lawsuits and arbitrations, Danger of terrorism, Time wastage and System down time — reduce productivity.
2024 cyberthreats prediction
Many report shows Africa being the most targeted region with cyberattacks, the year 2024 new techniques of cyberattacks will likely emerge, such as the increase in AI usage, hacktivism and targeting of smart home tech.
New botnets and rootkits will also likely appear, and hacker-for-hire services might increase, as will supply chain attacks, which might be provided as a service on cybercriminals’ underground forums.
According to Kaspersky, Advanced Persistent Threats (APT) is expected to expand surveillance efforts to include more smart home technology devices, such as smart home cameras and connected car systems.
This is particularly interesting for attackers because those devices are often uncontrolled, not updated or patched and subject to misconfigurations. This is also a concern because more people work from home nowadays, and their companies could be targeted via weak points in the home worker devices.
More hacktivism is expected affect many parts of Africa. Hacktivists will run Distributed Denial of Service attacks, increasingly use tools for Deepfakes and impersonation/disinformation. In addition, destructive and disruptive operations can be done. T
he use of wipers in several current political conflicts or the disruption of power in Ukraine are good examples of both types of operations.
Cybercriminals are also expected to develop new methods for automating cyberespionage. One method could be to automate the collection of information related to victims in every aspect of their online presence: social media, websites and more, as long as it relates to the victims’ identity.
State-sponsored cyberattack numbers also have the potential to surge, amid increasing geopolitical tensions. These attacks will likely threaten data theft or encryption, IT infrastructure destruction, long-term espionage, and cyber-sabotage.
The generative AI tools usage will increase, this will facilitate the mass production of spear phishing email content, which is often used as the initial vector of infection when targeting organizations. The messages written by the tools are more persuasive and well-written compared to the ones written by cybercriminals. It might also mimic the writing style of specific individuals.
The widespread use of technology, combined with insufficient cybersecurity measures, lack of right skillset, inadequate legislation in the field of information security, and a low level of public awareness concerning information security, creates favorable conditions for cybercriminals. Moreover, many African countries are facing economic constraints, making it difficult to allocate sufficient funds for cybersecurity.
African governments must develop, implement and regularly update national cybersecurity policies and strategies, involving a wide range of stakeholders in the process.
Establishing a dedicated national institution (Cybersecurity authority) to coordinate cybersecurity activities, respond to cyber incident, monitor threats and help organizations recover from major cyberattacks should be a top priority for governments.
Governments should work on creating and implementing legislation for the protection of personal data. This legislation should combat cybercrime, guarantee the protection of personal data, and maintain the digital security of citizens and organizations.
Regular cybersecurity awareness should be conducted. People should be educated on potential privacy risks when working in virtual environments.
Governments should identify critical information infrastructure, disruption of which could cause non-tolerable events at the level of industries and countries.
Collaboration between governments and industry peers is also recommended to enhance collective defense against cyberattacks and exchange best practices and thoughts.
Organisations should implement best practices in safeguarding personal and corporate data.
Organizations should have an up to date incident response plan that will help in case of cyberattack. The plan should contain steps to take, as well as a list of people and services to reach in case of emergency. This plan should be regularly tested by conducting attack simulations.
Network segmentation might limit an attacker’s exploration of compromised networks. Critical systems in particular should be totally isolated from the rest of the corporate network.
Establishing continuous vulnerability assessment and triage as a basement for effective vulnerability management process
Implementing strict access controls is highly recommended. The principle of least privilege should always be in use for any resource. Multifactor authentication should be deployed wherever possible.
Mr Yusuph Kileo is an award-winning Cyber security and Digital Forensics Expert
E-Business
UNN to Partner Firm on AI, Smart Mobility Innovation Centre

The University of Nigeria (UNN) is set to partner with The Roxettes Group to establish a research and innovation centre focused on artificial intelligence (AI), smart and green mobility, and digital technologies, in a move aimed at strengthening research, entrepreneurship and technology-driven industrial development.

Chairman of The Roxettes Group, Arc. Dr. Kaycee Orji-Kelechi, announced the proposed partnership while delivering his acceptance speech after receiving an Honorary Doctor of Business Administration (Honoris Causa) during the university’s convocation ceremony.
The proposed facility, to be known as the Dr. Kaycee Orji Centre for Artificial Intelligence, Smart/Green Mobility and Digital Innovation, is expected to provide a platform for research, innovation and collaboration between academia and industry, with a focus on developing commercially viable solutions to local and continental challenges.
Orji-Kelechi said the initiative was conceived as a long-term investment in human capital and technological advancement rather than simply another physical infrastructure project.
He said the vision was to position the University of Nigeria among Africa’s leading institutions in artificial intelligence, smart mobility and digital innovation through research, entrepreneurship and technology development.
According to him, the centre will house five specialised laboratories covering artificial intelligence and machine learning, smart and green mobility, robotics and the Internet of Things (IoT), digital finance and financial technology, as well as cloud computing and advanced data centre technologies.
He also announced plans for the proposed Kaycee Orji Founders Innovation Challenge, an annual programme intended to identify, mentor and support innovative ideas from students, researchers and academic staff with the potential to become scalable businesses.
“Every student of this University should know that a great idea conceived in a classroom should have a pathway to becoming a patent, a startup, a global enterprise, and a solution that transforms society,” he said.
Orji-Kelechi disclosed that preliminary conceptual work on the project had commenced, with architectural and engineering designs being prepared by K.KH Contractors Ltd., a subsidiary of The Roxettes Group.
He added that discussions with the university would begin on identifying a suitable site for the project, while a comprehensive proposal containing architectural drawings, engineering designs and an implementation framework would be submitted after completion of the design phase.
Reflecting on his career, Orji-Kelechi said Africa must move beyond consuming innovation to creating it through investment in manufacturing, technology and entrepreneurship.
“We have pursued one simple vision: that Nigeria and Africa must move from consumption to production; from importing innovation to creating it; and from waiting for opportunities to building them,” he said.
He urged graduating students to see their education as a foundation for solving societal challenges through innovation, leadership and enterprise, adding that he remained committed to promoting industrial development, youth empowerment and sustainable economic growth.
The proposed collaboration forms part of broader efforts to strengthen university-industry partnerships, which are increasingly seen as critical to improving research commercialisation, innovation capacity and technology-led economic development in Nigeria.
E-Business
NPC Opens 131 Births, Deaths Registration Centres in Anambra

National Population Commission (NPC) has announced commencement of full digital registration of births and deaths through the VitalReg platform, which became operational nationwide on July 1, 2026.

Chidi Ezeoke, federal commissioner representing Anambra, disclosed this in Awka during a press conference to announce commencement of full digital birth and death registration under the Electronic Civil Registration and Vital Statistics (E-CRVS) system and the marking of World Population Day commemorated every July 11.
He revealed that a total of 131 registration centres had been opened in the 21 local government headquarters and several communities in the state, adding that more centres would be opened later.
Ezeoke described the initiative as a major milestone in Nigeria’s Civil Registration and Vital Statistics (CRVS) system, to ensure every birth and death in the country was captured through a digitally enabled registration platform.
“It builds on the launch of the E-CRVS system and the inauguration of the National Coordination Committee on Civil Registration and Vital Statistics by President Bola Tinubu on Nov. 8, 2023.
“A total of 4,011 functional registration centres has been established across the 774 LGAs of the federation and the commission iswas working to expand the number to about 8,000.
“In Anambra, 131 registration centres have been opened in the 21 local government headquarters and several communities. More centres had been proposed for the state,” he said.
According to the Commissioner, the VitalReg platform would provide faster registration services, 24-hour online access, digital certificate issuance where applicable, reduced paperwork and waiting time, improved data validation and a more secure national CRVS database.
While noting that the platform would serve as a foundational database to support other national data systems and strengthen interoperability across Nigeria’s digital identity ecosystem, Ezeoke urged Nigerians and other stakeholders to support the initiative by ensuring prompt registration of all births and deaths.
Speaking on the 2026 World Population Day themed, “Realising the Hopes and Aspirations of Young People – Today and for the Future”, the Commissioner called for greater investment in education, healthcare, skills development, decent employment opportunities and youth participation in governance for sustainable national development.
Earlier, Mr Obiakonwa Okagwu, state director, NPC, said the occasion served as a reminder of great opportunities provided to harness young people’s capabilities, which he said would shape the future of the country when adequately harnessed.
He called on residents to take registration of births and deaths as national responsibility, just as he urged the media to take the message on civil registration to all parts of the State.
E-Business
Report Says Cybercriminals Deploy Malware to Hijack Crypto Wallets, Monitor Browsers Telegram

Cybersecurity researchers at Kaspersky have uncovered a sophisticated malware framework, dubbed OkoBot, that is targeting cryptocurrency users by stealing wallet recovery phrases, browser credentials and other sensitive information through a multi-stage attack campaign spanning more than 25 countries.

The researchers said the malware, active since April 2025, employs more than 20 malicious payloads and has evolved into an advanced cybercrime platform focused on compromising digital asset holders. According to Kaspersky’s Global Research and Analysis Team (GReAT), the campaign remains active and has already affected hundreds of users worldwide.
Kaspersky disclosed that one of the framework’s most dangerous components, known as SeedHunter, injects malicious code into legitimate cryptocurrency wallet applications, including Ledger Wallet, Ledger Live and Trezor Suite, before displaying fake recovery phrase prompts designed to trick victims into surrendering their seed phrases.
The security firm explained that once attackers obtain a victim’s recovery phrase, they gain complete control over the cryptocurrency wallet, enabling them to transfer digital assets with virtually no chance of recovery.
Commenting on the discovery, Dmitry Galov, security researcher at Kaspersky’s GReAT, said.
“This campaign has been running for more than a year and remains active. OkoBot is not just a single piece of malware but an extensible framework built primarily to compromise cryptocurrency users.”
Galov added that the malware is continuously maintained and enhanced, underscoring the attackers’ long-term focus on financial theft.
According to Kaspersky, victims are typically infected through ClickFix phishing attacks or malicious GitHub repositories masquerading as legitimate software downloads. In one instance, a fake Microsoft SQL Server Management Studio repository secretly installed a trojanized version of the Audacity audio editor embedded with malicious code.
Following the initial compromise, the attackers deploy a PowerShell downloader called TookPS,which establishes an encrypted SSH connection to attacker-controlled infrastructure.
The malware then harvests browser cookies, wallet files, stored credentials and system information before downloading additional malicious modules.
Among the additional payloads is OkoSpyware which monitors more than 100 applications, which includes cryptocurrency wallets and password managers—records user activity and captures keystrokes and video of application windows. Another module silently installs malicious browser extensions capable of stealing financial information and authentication tokens.
However, Kaspersky’s telemetry indicates that the largest concentrations of victims have been recorded in Brazil, Vietnam, Canada, Mexico and Türkiye, although the malware campaign has spread to users across more than 25 countries.
The cybersecurity firm advised cryptocurrency users never to enter wallet recovery phrases into prompts displayed by desktop applications or websites unless they have independently verified their authenticity.
Furthermore,It also urged users to download wallet software exclusively from official sources, enable multi-layered endpoint protection, and remain cautious of software offered through unofficial repositories or phishing websites.
Kaspersky noted that while hardware wallets themselves remain secure, attackers are increasingly exploiting the software that accompanies them, making user awareness a critical line of defence against evolving cryptocurrency-focused cyber threats.
E-Business1 day agoReport Says Cybercriminals Deploy Malware to Hijack Crypto Wallets, Monitor Browsers Telegram
Telecom1 day agoNCC, REA Partner to Cut Telecom Costs with Renewable Energy
Telecom1 day agoSubscribers, Telcos Warn FCCPC over Airtime Lending Enforcement
News1 day agoSee Verified 20 Countries Nigerian Passport Holders Can Travel Visa-Free
General News1 day agoAfDB, Nigeria Urge African Control of Mineral Resources
E-Business1 day agoNPC Opens 131 Births, Deaths Registration Centres in Anambra
General News1 day agoLagos Chamber Opposes 21 Percent Pension Contribution, Warns of Job Losses
Telecom1 day agoNigeria Pushes for United African Front Ahead of Global Telecoms Elections



















