E-Business
IDC Warns Firms to be Wary of Cybercrimes
The International Data Corporation (IDC) has said that cybercrimes are clear and present dangers which must be taken seriously by individuals, governments and organizations.
Lise Hagen, research manager, Software & IT Services, IDC (Africa), told Nigeria CommunicationsWeek that findings on cybercrimes showed that that are “politically driven” and that targets have been on high value assets / institutions.
She said that IDC researches showed that availability of “criminal services” is growing and rising forces of “hacktivism”.
Upon that corporations are still foot-dragging with regards making enough budgetary allocations to tackling IT security matters.
“There are widening budget gaps when compared to the threats. I think the focus should also embrace devising new strategies to tackle the problems. And that will be dependent on how claver you invest. It is a combination of investment and building of skills presently for the future. It is not just about the work place, we have to start educating people, even in schools; it is a programme for the whole society. The essence is for people to get into the web space and get the required skills. The other part of it is for companies to be strict about the implementation of their set standards or security policies. And that implies not being defensive,” she added.
Commenting on IT heads convincing management on budgets, Hagen said, “First and foremost, if you can give them business value; for instance letting them know the impact attacks will have on the business, the loses and delays, the general risks assessments, they will definitely respond. People compare notes. Unfortunately, most companies would wait until there is a major damage before they realize you are not just crying wolf.
“In other words, as an IT head do not relent in educating the executive not just to invest, rather continue to highlight the impact if disaster occurs. It is also important to get one key stakeholder that defends you at board level. If you can change the mind of one person on senior executive level if you have gotten an advocate; he will keep on banging the drums. And we must realize it is not just IT issue rather it is a business issue”.
Meanwhile, at the recent IDC road show, it has been revealed that greater percentage of IT breaches now stem from internal threats.
“Like one of the stakeholders stated during the road show you do not give people in an organisation any right to disrupt the system. You do not allow them access to the internet or to do anything. That is actually a very defensive-protection measure and in some industries it may work. But on the whole, it is not a viable option, because the world is changing too fast, especially now emphasis is shifting to Bring Your Own device (BYOD).
“So, I will still suggest educating the workforce and doing predictive analysis on your workforce. During the process, the Human Resources person should be linked up with what the IT is doing. For instance, if someone has resigned they is probably a chance he did for not been happy with the company, just control it. It cannot always be a big brother thing, depending on how you handle it, internal IT security threats can be mitigated.
“And some software companies not tackling issues related to security breaches right from the time of developing the software contribute to the headaches people are having. However, we also have to look at where the software is situated for usage. At the same time, we should be careful about how we apply the software, particularly when the issue of intellectual property is involved. Thus, some of the software companies really have to demonstrate value before people will be willing to pay a premium for their products.
“Part of the education has to start with the government. They have to be strict and ensure that before a company is given certificate or licence to develop software credibility has to be one of the criteria. When they do that, or set example with erring ones others will seat up. That will create room for expertise to shine and heighten the value that will stimulate the IT industry in Africa,” the IT research expert added.
E-Business
MacOS Users Report More Cyber Threats than Windows Users – Survey Reveals

Kaspersky’s latest survey highlights a protection gap between macOS and Windows based devices. While macOS has long been regarded as the more secure operating system, 12% of its users reported malware infections compared with 9% of Windows users. Moreover, only 35% of macOS owners install dedicated security software, versus 42% of Windows users.

According to Kaspersky’s latest global survey*, Windows users report a higher adoption rate for most security measures, while macOS users show a modest advantage in a few privacy‑focused actions. At the same time, during the past year macOS users reported higher percentages than Windows users for a number of cybersecurity incidents.
The largest gap in cybersecurity approaches appears in the habit of not opening suspicious emails or links, with 62% of Windows users following this practice compared to 51% of macOS users.
What’s more, when it comes to cybersecurity software installation, macOS users are also lagging behind. While among Windows users 42% reported using digital‑life‑protection software, for macOS this rate is only 35%, what Kaspersky security experts call a worryingly low figure.
It is noteworthy that 12% of macOS respondents said they fell victim to phishing (fake emails, websites or messages) over the past year compared with 9% of Windows users. Moreover, during this period macOS users faced more scams and investment frauds (16% vs 13%), privacy violations (11% vs 8%) and thefts of personal data (12% vs 7%).
To counter these specific threats, robust anti-malware and anti-phishing protection is essential. Malware authors put a lot of effort into developing new, more powerful and stealthier versions of stealers, spies and other classes of malicious payloads, while relying on phishing techniques that allows them to get access to user’s data.
Dedicated security solutions add a crucial layer of real-time detection and defence that complements macOS’s built-in protection – and independent tests have repeatedly shown that effective options, such as Kaspersky Premium for macOS, deliver strong protection. In 2025, AV-TEST recognised it as the top-performing macOS security solution based on consistent, reliable results across a full year of evaluations.
When it comes to credentials and passwords safety, Windows users also show better security practices’ adoption rates. They lead in using a unique password for each account (38% vs 35%) and complex passwords (52% vs 45%), two‑factor or multi‑factor authentication (51% vs 46%).
Adopting a dedicated password manager becomes a logical next step. Such tools store all credentials in a secure vault protected by a single master password, eliminating the need to remember hundreds of passwords while keeping them safe from breaches.
They also support modern authentication methods like passkeys, enabling seamless, single-tap sign-in across all devices through secure synchronisation – capabilities offered by solutions such as Kaspersky Password Manager.
“There are entrenched stereotypes that macOS is inherently more secure because its user base is smaller, leading cyber‑criminals to deem it a lower‑value target, or because the platform itself includes many robust security features. While these observations are not entirely unfounded, the threat landscape has evolved dramatically.
Attackers actively employ phishing and commit supply chain attacks, which often allow them to affect users of any operating system in a single malware campaign. Moreover, mac specific malware is not rare and there are many malware families that target macs exclusively. Consequently, any device with an Internet connection, regardless of its operating system or form factor, requires cybersecurity software to defend against a wide range of cyber threats,” comments Sergey Puzan, cybersecurity expert at Kaspersky.
E-Business
Cyber Resilience a Critical Priority for Manufacturing Amid Rapid Digitalization – Report Shows

As 60% of manufacturers race toward full digitalisation, cyber risk is increasingly manifesting as a business risk, according to a new global report by Kaspersky and VDC Strategy.

This means cybersecurity is not merely a compliance function, it is a cornerstone of production assurance, safeguarding uptime, quality, and operational continuity.
Manufacturers are modernising to deliver safer, more consistent and more cost-effective production and digitalization is moving fast: just 9% of organisations describe themselves as fully digital today, but 60% expect to get there within two years, according to the joint report by Kaspersky and VDC, titled ‘Cyber Resilience, Built for Manufacturing’.
That shift links shop-floor equipment, production lines and site operations to platforms such as Manufacturing execution systems (MES), Supervisory control and data acquisition (SCADA) and historians, turning many plants into cyber-physical systems (CPS), where a digital disruption doesn’t stay digital. It can slow production lines, quarantine work in progress, invalidate traceability records, or halt production outright.
What’s driving manufacturing digitalization?
Manufacturers are digitising for measurable operational gains, not novelty. Survey respondents identified the primary drivers of their digital transformation strategy as:
- Improving production output or efficiency (24%)
- Reducing operational or production expenses (15%)
- Enabling new strategic opportunities (14%)
- Improving cyber resilience (13%)
The same connected systems that unlock these gains, including MES, IIoT sensors, automated material handling, remote engineering access, also become the systems that determine whether production can be trusted to keep running.
Cyber risk is now a business risk
Cyber risk has evolved from a mere IT concern to a direct threat to revenue generation, as environments transform into cyber-physical systems. In these integrated settings, digital disruptions like malware no longer just affect data, they can cause unsafe operations, scrapped batches, and halted production on the plant floor. This shift highlights the urgent need to treat cybersecurity as a key part of operational resilience.
According to the report, nearly 60% of manufacturing organisations estimate that cyber incidents cause damages exceeding $1 million per event, with an average disruption of 15.3 hours. The most significant losses often result from production halts, missed delivery commitments, and penalties, rather than just forensic costs.
In this context, downtime links cybersecurity risks to overall business performance. Cyber incidents can reduce Overall Equipment Effectiveness (OEE), strain staffing, and disrupt supply chains. Recovery involves more than system restore, it requires re-establishing confidence in process parameters, quality records, and traceability before resuming operations.
Mature cybersecurity programs now incorporate OT security into governance, focusing on metrics valued by production leaders such as time to restore, backup confidence, legacy asset coverage, and safe degraded operation. This alignment ensures cybersecurity supports continuous production and resilience, not just IT compliance.
However, challenges remain due to split ownership. While 59% of organisations’ IT departments manage security policies, these often overlook plant realities. Managing many security tools (44%) and OT patching issues (38%) show that cybersecurity must be embedded into daily routines of production, engineering, and quality teams. Only through such integration can cybersecurity effectively enhance operational reliability and defend against evolving threats.
“As manufacturing environments become increasingly interconnected, cybersecurity shifts focus from merely adding protective layers to ensuring the availability, resilience, and integrity of production processes. The goal is to minimise operational impact and speed up recovery, rather than solely preventing intrusions.
“Kaspersky offers a unified ecosystem that integrates IT, OT, and IIoT security, empowering manufacturers to pursue digital transformation securely. This strategy helps maintain operational continuity and reduces long-term cybersecurity costs,” comments Andrey Strelkov, Head of Industrial Cybersecurity Product Line at Kaspersky.
To implement this strategy, manufacturing companies can leverage solutions from the Kaspersky OT Cybersecurity Ecosystem, centered around Kaspersky Industrial CyberSecurity (KICS), a native Extended Detection and Response platform designed for critical infrastructure protection. KICS enables centralised detection and response to complex attacks across the entire industrial network, ensuring comprehensive visibility and security.
E-Business
NDPC Probes UNILAG, Lotus Bank, Hackerbella over Alleged Students’ Data Misuse

Nigeria Data Protection Commission (NDPC) has commenced a forensic investigation into the University of Lagos (UNILAG), Lotus Bank and Hackerbella Ltd over alleged violations of data protection laws involving students’ personal information.

The investigation follows public complaints alleging that students’ personal data were used to open bank accounts without a lawful basis.
Dr Vincent Olatunji, national commissioner and chief executive officer of the NDPC, directed the investigation team to conduct a comprehensive assessment of the circumstances surrounding the collection, processing, use and disclosure of the affected students’ personal data.
The investigation will also determine the respective roles and responsibilities of UNILAG, Lotus Bank and Hackerbella in the alleged processing of the data.
According to the Commission, the investigation will assess the data protection compliance obligations of the parties under the Nigeria Data Protection Act, 2023 (NDP Act), as well as potential risks posed to the rights and freedoms of the affected data subjects.
The NDPC said the probe would cover several areas, including Data Protection Impact Assessments (DPIAs), the lawfulness and transparency of credit scoring or profiling activities, and the use of automated decision-making systems.
It will also examine the adequacy of privacy notices, data-sharing arrangements, lawful bases for processing, data minimisation and purpose limitation.
Other areas include data retention policies and the adequacy of technical and organisational measures put in place to safeguard the rights and personal data of affected students.
The Commission reiterated that institutions entrusted with the personal data of students, staff and other members of their communities have a heightened responsibility to ensure that such information is processed lawfully, fairly, transparently and securely.
The NDPC therefore warned educational institutions that are yet to comply with its existing data protection compliance directives to take immediate steps to achieve compliance.
The Commission said it would continue to exercise its regulatory mandate to protect the privacy rights of Nigerians and ensure that organisations processing personal data comply with the provisions of the Nigeria Data Protection Act, 2023.
Telecom2 days agoipNX Joins Calls for Innovation-Friendly Ecosystem and Stronger Local Opportunities at Regenesys AI Summit
E-Business2 days agoNDPC Probes UNILAG, Lotus Bank, Hackerbella over Alleged Students’ Data Misuse
News2 days agoPalmPay Reinforces Commitment to Youth Empowerment on International Youth Day
E-Financial2 days agoKudiWave Asks for Clarification over N750m Transfer from PalmPay Account
Telecom2 days agoNCC Reports over 5,000 Fibre Cuts in 6 Months
Telecom2 days agoGoogle Selects Six Nigerian News Creators for Emerging Voices Growth Lab
E-Financial2 days agoNigerians Borrow More to Buy Homes as Mortgage Demand Climbs – CBN
General News2 days agoNUPRC Warns of Counterfeit, AI-Generated Appointment Letters




















