E-Business
What the Retail and E-commerce Sector Should Expect in 2026 in Era of AI-driven Shopping and Privacy

In 2025, the retail and e-commerce sector continued to face intense pressure from cybercriminals. According to Kaspersky data, 14,41%* of users in the global retail sector encountered web-based threats, while 22,20% were affected by on-device attacks.

Ransomware remains a serious concern for the industry. Last year, 8,25% of retail and e-commerce companies experienced ransomware incidents, and the number of unique B2B users in the sector affected by ransomware detections rose by 152% compared to 2023, signalling a sharp escalation in targeted attacks.
Phishing also continues to be a major threat vector. Kaspersky identified 6.7 million phishing attacks targeting users of online stores, delivery services, and payment systems in 2025. More than half of these attacks (50,58%) were aimed specifically at online stores, underscoring cybercriminals’ focus on e-commerce platforms as high-value targets for fraud and data theft.
A look at 2025 cybersecurity for retail & e-commerce: Trends and what happened
A stealer with a taste for pizza delivery. Shopping and food ordering via mobile apps are routine user behaviours. However, 2025 demonstrated that even downloading a seemingly legitimate app from an official app store does not guarantee safety, nor does it ensure that user data and financial credentials will not be compromised.
Ransomware detections in the B2B sector increased due to a single dominant actor. The number of unique users in the Retail & E-commerce sector who encountered ransomware detections increased by 152% in 2025 compared to 2023 (Nov 2024 – Oct 2025 vs. Nov 2022 – Oct 2023).
The most significant growth occurred during the 2024-2025 period and is largely attributable to the rapid spread of the Trojan-Ransom.Win32. Dcryptor family, which became highly prevalent across the retail and e-commerce sector in some of the analysed markets. This malware is a trojanised ransomware variant that leverages the legitimate DiskCryptor utility to encrypt disk partitions on victim systems.
Phishing activity in the online retail segment stood out. Despite being a long-established attack technique, phishing remains highly prevalent in the context of online purchasing.
From November 2024 through to October 2025, Kaspersky products blocked 6,651,955 attempts to access phishing links targeting users of online stores, payment systems, and delivery services. Of these attempts, 50.58% targeted online shoppers, 27.3% impersonated payment systems, and 22.12% targeted users of delivery companies.
Sales seasons continue to do the work for attackers. Seasonal peaks in online shopping consistently provide attackers with predictable opportunities to scale user-focused attacks.
Periods of heightened promotional activity lower user vigilance and allow familiar phishing and spam scenarios to blend into legitimate marketing traffic, increasing their overall effectiveness.
Predictions: What retail & e-commerce cybersecurity might face in 2026
Chatbots are likely to become a common product discovery tool across online marketplaces. Unlike traditional search, conversational interfaces encourage users to share more detailed, natural-language requests, revealing preferences, constraints, and contextual information.
This shift expands the privacy attack surface, as platforms accumulate richer user profiles through chat interactions. As a result, chatbot logs may become as sensitive as transactional data, increasing the risks of over-collection, misuse, or exposure of personal information.
“Search itself is changing, including how people look for products online. In 2025, there was a gradual shift from simple keyword queries to more conversational and visual ways of finding what to buy. As these models rely on broader user input, careful handling of the data involved will remain an important consideration for maintaining user trust,” comments Anna Larkina, Web data and privacy analysis expert at Kaspersky.
Changes in taxes and trade rules might be exploited in online fraud. Modifications in taxes, import duties, and cross-border trade rules are likely to be used as lures in phishing campaigns and fraudulent online stores, promoting unrealistically cheap offers or claims of avoided fees.
As pricing and fee rules continue to evolve across markets, it may lower vigilance, increasing the effectiveness of such schemes, particularly against small and mid-sized retailers.
AI-powered shopping assistants are expected to increasingly operate outside retail platforms, embedding themselves into browsers, mobile apps, and third-party services. While designed to simplify navigation and price discovery, these tools shift data collection beyond the retailer’s perimeter, creating new and less visible privacy risks.
To function effectively, external AI shopping agents require continuous access to user behaviour, including browsing activity, search intent, location context and product interactions across multiple sites.
This enables the aggregation of detailed behavioural profiles outside the direct control of both users and retail platforms, increasing the risks of over-collection, opaque data usage, and unintended exposure.
Image-based product search might become a new challenge in privacy risks. Previously, the main privacy concern around user images in e-commerce was limited to photos voluntarily shared in product reviews.
However, image-based product search is expected to make photo uploads a routine part of the shopping experience across major retail platforms. While this feature improves product discovery, it also increases the risk of unintended exposure of personal data.
User-submitted images may contain faces, home environments, or sensitive details, such as names, phone numbers, or addresses visible on shipping labels or packaging, making secure processing, data minimisation, and limited retention critical requirements for retailers.
E-Business
Nigeria Leads Africa in Online Gambling Regulation – GCI

Nigeria has emerged as one of Africa’s most regulated online gambling markets, even as illegal operators continue to dominate the continent, according to a new report by Gaming Compliance International (GCI).

The report, the first comprehensive assessment of online gambling across all 54 African countries, showed that Africa’s online gambling Gross Gaming Revenue (GGR) reached $23 billion in 2025.
However, only $5.2 billion (23 per cent) was generated by licensed operators, while $17.8 billion (77 per cent) remained in the unregulated market.
In West Africa, total online gambling revenue rose to $4.8 billion in 2025 from $4.3 billion in 2024. Of the 2025 figure, regulated operators accounted for $1.5 billion (31 per cent), while $3.3 billion (69 per cent) flowed to unlicensed platforms, highlighting the region’s persistent enforcement challenges.
Nigeria stood out as the region’s strongest performer, recording the lowest unregulated market share at 56 per cent, compared with the West African average of 69 per cent and the African average of 77 per cent.
The study also found that online gambling participation across Africa increased from 198 million people (13 per cent of the population) in 2024 to 215 million (14 per cent) in 2025.
Despite this growth, GCI estimated that illegal operators deprived African governments of about $3.55 billion in tax revenue in 2025. The number of unlicensed gambling platforms targeting African consumers also rose to 4,129, up from 3,644 in 2024.
Commenting on the findings, Matt Holt, chief executive officer, GCI, said the report provides regulators with the first continent-wide benchmark for strengthening oversight and consumer protection.
Ismail Vali, president, GCI, urged governments to develop competitive and well-regulated markets that encourage consumers to patronise licensed operators, boost public revenue and attract greater investment.
Online gambling in Nigeria is regulated by the Nation Lottery Regulatory Commission.
E-Business
Kaspersky Warns Mobile‑data Buyers about Scammers Posing as Telecoms Operators

At the height of the Northern Hemisphere tourist season, demand for communications and mobile Internet services rises sharply. Kaspersky’s security experts have uncovered scams that target anyone purchasing mobile connections or SIM cards worldwide.

Fraudsters create counterfeit websites that look like the portals of major regional and international telecom providers to trick users into revealing their phone numbers, personal details or banking information.
Kaspersky is sharing several examples of these fake login pages that mimic legitimate telecom operator sites and giving recommendations on how not to be deceived.
In the first case, scammers exploit the brand name of an international telecommunications company operating services in Asia, Africa and Europe. Fake authentication pages encourage users to put in their phone number and credentials.
While the first example shows the different design, the second scam site closely mimics the original log in page, making it hard for users to tell the difference and spot a fake. Entering authentication or payment data on fraudulent web sites may result in money or data loss and become a reason for more frequent spam and fraudulent calls.
Another example is a scam page which poses as another international communications company, working in North Africa, the Middle East and Southeast Asia. In this scheme scammers encourage users to top up their mobile data/Internet plans by entering their personal information and bank cards details.
Kaspersky experts have also identified a scam when cyber criminals suggest users enter their personal data to check and pay a bill inquiry. Such scam schemes are usually aimed at gaining victims’ personal data for further fraud or account hacking and stealing money.
“Because of the active use of AI, scammers can now create fake pages with ever increasing accuracy and speed, targeting the most popular user interest areas. We constantly see scams revolving around sports events, music concerts, seasonal sales and holidays. Unfortunately, the telecoms industry is no exception.
To keep your data and money safe, be vigilant when purchasing mobile or Internet plans online. Using an eSIM – purchased through an official app – is one way to avoid fake telecom sites, as it eliminates the need to enter personal details on questionable web pages.
If you’re unsure about a site’s legitimacy, search for the brand name directly in a search engine and enable a security solution that blocks phishing links for you,” comments Tatyana Kulikova, cybersecurity expert at Kaspersky.
E-Business
NITDA, NAWOJ Partner to Advance Women’s Digital Inclusion, Digital Literacy

In a strategic push to bridge the gender digital divide, the National Information Technology Development Agency (NITDA) has partnered with the Nigeria Association of Women Journalists (NAWOJ) to advance women’s digital inclusion and drive the nation’s transformation agenda.

Dr Aristotle Onumo and some NITDA staff, pose for a group photograph with the President of the National Association of Women Journalists (NAWOJ), Comrade Aisha Ibrahim, and members of the delegation following a strategic engagement at the Agency’s Headquarters in Abuja.
The partnership was cemented during a courtesy visit to NITDA Director General, Kashifu Inuwa, CCIE, by a NAWOJ delegation led by National President Comrade Aishatu Ibrahim, who introduced the agency to the forthcoming Women in Security (WINSEC) Summit & Awards 2026.
Inuwa, represented by Dr. Aristotle Onumo, the Director of the Stakeholders Management and Partnerships Department, assured the association that NITDA would not only participate in the conference, but also support the success of the conference.
Inuwa hailed the NAWOJ for creating a platform for peacebuilding, dialogue on security and women’s inclusion, which he described as one of the critical areas NITDA is focused on to ensure that more women obtain digital literacy and skills under the National Gender Inclusive Strategy.
Beyond NITDA’s plan to participate in the conference, the DG noted that a robust partnership between the organisations would engender meaningful opportunities and initiatives through which many more women can access digital literacy.
“Inclusivity is the key to everything we do at NITDA. We clearly defined that 40 per cent of our programmes must recognise the issue of gender. We ensure that women are adequately represented and positioned to benefit greatly from the programmes that we organise in the agency.
“We graciously accept to participate actively in that conference. Apart from acquiring skills among journalists themselves, partnership with NAWOJ will also serve as a platform through which we can also reach out to various women’s groups across the federation,” Inuwa said.
Earlier, Comrade Ibrahim commended the DG for his visionary and transformational leadership which has continued to position NITDA as the catalyst for Nigeria’s digital economy through its various programmes.
She explained that the Women in Security (WINSEC) Summit and Awards 2026 is an initiative of NAWOJ designed to promote collaboration among government institutions, security agencies, technology experts, the media, and other stakeholders to address contemporary security challenges.
According to Comrade Ibrahim, the association also aims to recognise outstanding individuals and institutions that have demonstrated excellence in security, governance, and innovation while fostering meaningful dialogue on the role of technology in building a safer and more resilient Nigeria.
“We deeply appreciate your exemplary leadership, passion for innovation, and unwavering commitment to building a digitally empowered Nigeria. We respectfully invite the agency to partner with NAWOJ in making this landmark initiative a success.
“We look forward to establishing a long-term partnership with NITDA that will empower women journalists with cutting-edge digital skills, support digital inclusion and contribute to innovation, digital literacy, and human capital development,” the NAWOJ president added.
Both organisations expressed optimism that the meeting would lay a solid foundation for a rewarding partnership agreement with specific and clearly defined objectives that will support digital inclusion and contribute to innovation, digital literacy, and human capital development.
General News3 days agoFG Launches C.L.I.C.K.D., Consumer Credit Scheme for Tech Devices
Telecom3 days agoAirtel Nigeria Expands Retail Footprint to Strengthen Customer Access Nationwide
News3 days agoNPC Opens Nationwide Digital Birth, Death Registration Platform
Telecom3 days agoMTN Nigeria Opens Applications for Next Afrobeats Star Season 2 with Bigger Prizes
Telecom3 days agoKaspersky Survey Highlights the Need for Smartphone Security
E-Business3 days agoOvaloop Technologies Unveils Digital Tools to Formalize SMEs Operations Across Africa
E-Financial3 days agoCBN Retains Interest Rate at 26.5% as Cardoso Cites Global Uncertainty Despite Inflation Drop
Telecom2 days agoCourt Dismisses Pan African Towers’ Bid to Halt Ex-CEO’s Suit, Awards ₦500,000 Costs














