Connect with us

E-Business

Digital Economy Will Make Nigeria Globally Competitive – NITDA DG

Published

on

Kindly share this post

Kasheem Inuwa, Director General of the National Information and Technology Development Agency, NITDA says the digital economy when implemented will make Nigeria globally competitive.

Inuwa made the remark at the opening ceremony of the Information Assurance Workshop organized by the national Information Technology and Development Agency, NITDA in conjunction with the Office of the Secretary to the Government of the Federation, SGF.

He said the digital economy is estimated at 22.5% of the world’s economy and yet has not been fully exploited, even as the Digital investments have growth multiplier effect in national GDP, where it increases the national economic output.

He however, added that the growth and potential of the digital economy depends on the trust on the Internet and in cyberspace

The NITDA boss, who was represented by the Director of Information Technology and Infrastructure Solutions Department, ITIS, Dr. Usman Gambo Abdullahi noted that the increasing use of digital technologies is continually exposing sensitive information and critical systems to risks and threats in the cyberspace.

Advertisement

And for this reason, Cyber criminals not only try to gain control over our infrastructure, they also try to steal personal information, official data and mislead citizens with fake news.

‘‘Government and industries migrate online and find effective ways of reaching out to citizens and finding efficient ways of carrying out their businesses. These activities are majorly dependent on use of data; it’s either data is created, collected, stored or analyzed. Data is a critical asset to the digital economy as such a critical target for cyber criminals.

‘‘The boom in digital economy is delicately balanced with equivalent threats that could bring organisations and nations to their knees with colossal damage arising from financial and reputational losses to cybercriminals; hence government and industries need to enhance their cybersecurity in the wake of these evolving threats to online activities.

‘‘The Nigerian digital economy is known to account for up to 13.8% of the nation’s GDP. It is therefore obvious that the digital economy is a platform to increase the growth of the national economy. Little wonder the Federal Government in its proactive nature repositioned the Federal Ministry of Communications to tap into this growth possibility with the expansion of its portfolio to cover all activities that would harness the full potential of Nigeria’s digital economy.

‘‘The digital economy leverages on cyberspace, characterized with evolving cyber threats. Thus, cybersecurity is key to enable the growth and progress of the digital economy .Security privacy and trust are critical issues for a thriving digital economy. Government and industries need to employ measures enlist the trust and confidence or all stakeholders: the government, private sector and Individuals.

Advertisement

“This is one of the platforms for ensuring that everybody puts in the required amount of effort and commitment to ensuring trust building and dissuading the negatives of the criminals in a digital economy.’’

He said the workshop was planned to bring together efforts of all Government organisations to combat one of the growing threats to economies, personal and national security globally.

To address the growing cybersecurity threat, he said NITDA is using a multi-faceted approach: implementing new regulations, inspecting and examining regulated entities, providing support to its Constituents, collaboration with relevant stakeholders, sensitizing and educating both the industry and the public, conducting research and leveraging on collaborations to issue guidance on trending cybersecurity matters and mitigation strategies. In terms of collaboration,

Inuwa said the agency has established MOUs with national and international stakeholders including; Seoul National University and Cybersecurity Malaysia, KPMG and British High Commission, to mention a few.

Also, a multi-stakeholder collaborative initiative for the implementation of the National Cyber Security Strategy, Plan and Act in MDAS is being embarked upon, at the instance of the Minister, Federal Ministry of Communications and Digital Economy.

Advertisement

He called on all MDAs to commit to comply with the circular issued by the Secretary to the Government of the Federation (SGF) on the implementation of one of the regulations by MDAS; the National Information Systems and Network Security Standards, all in a bid to ensure the security of data and technology systems in line with global best practices, and also to ensure a thriving digital economy where all stakeholders would have confidence and trust on.

In his presentation, Cybersecurity Expert, Dr. Kenneth Okereafor called for the establishment of a single Coordinating Unit of all Cybersecurity activities in Nigeria such that this body can help in the operationalization and be held accountable when necessary.

‘‘This programme is a proposal to government to implement policies that will make our cyber space more secure. The reason is because in other climes, it is very easy to detect when attacks are coming in. We are looking at a situation where Nigeria as a country has a framework in place to detect cyber security breaches. Beyond that to also respond proactively.

‘‘One of the ways to do that is to have a single coordinating unit. Though, we may be having an agency regulating IT and Cybersecurity, it is also important to have people we can hold accountable such that these bodies can help in the operationalization around him. People are not aware of the various exposures that we have in terms of cybersecurity. And the only way to do that is to have constant training and retraining in cyber security,’’ said Okereafor.

‘‘Agencies of government need now to take cybersecurity education and awareness more seriously and because of the complexity of the data space that we operate in and enlargement and embrace of technology in so many areas, it now becomes imperative for agencies of government to be aware of the exposures and then take proper actions.

Advertisement

‘‘Legislation and for supporting cybersecurity can never be too much. We also as a country need to look into legislation to legitimize all the regulations that need to be applied in cybersecurity. To that extent, it is necessary for government to consider having more legal frameworks to backup other areas of cybersecurity.

‘‘We as a country need to define, develop and institutionalize frameworks to protect data each of these areas. We have a lot of frameworks, but we can harmonize them and begin to use them as a people. The Cybersecurity law though is in place needs to be strengthened,’’ he added.

In his own remarks, the Head of CyberSecurity Unit at NITDA, Dr. Wariowei Dimie explained that the Information Assurance Workshop was jointly organized by SGF and NITDA to educate heads of public institutions on the need to keep the confidentiality and integrity of all public information whenever and whoever that intends to have access to it.

He said, ‘‘We discovered that in public service the world over, cyber criminals are working very hard to steal information because there is value attached to data. Because the value of data is so importance, we are putting up this workshop to make sure that whatever data generated and made available in public service is kept safe from hackers.

‘‘We would make sure that there are certain regulations put in place are adhered to by MDAs, as stated in the circular circulated by the SGF.’’ On implementation, he said, ‘‘there is plan for monitoring and evaluations. ‘Circulars generated by SGF and HOS are usually structured in such a way that compliance can be monitored from the end of the organization and as well as the generating agency.’’

Advertisement

Kindly share this post

Dear Reader, Your support matters. But we believe that technology makes life more exciting and helps improve the lives of people around Nigeria and indeed the world. That is why, we have devoted our energy to independent reportage of technology and finance and how they affect lives. Our incisive and analytical view of how technology news affects the daily life help individuals and organizations make up their minds. Quality journalism costs money. Today, we're asking that you support us to do more. Kindly support our effort to deliver technology and finance journalism to everyone in the world. Donate as little as N1,000. Bank transfers can be made to: UBA Plc 1017156876 Communication Week Media Ltd

E-Business

Kaspersky Uncovers Cyber Threats Defining the First Half of 2026 in Nigeria, Others

Published

on

Kindly share this post

Kaspersky’s Global Research & Analysis Team (GReAT) reveals key cyber threat trends for the first half of 2026 at the recent Cyber Security Weekend for the Middle East, Turkiye and Africa region (META).

As the cybersecurity landscape continues to evolve, cyberthreats are becoming increasingly diverse and sophisticated. The rapid adoption of artificial intelligence (AI), coupled with ongoing geopolitical and economic instability, is contributing to the rise of cybercrime and the growing complexity of cyberattacks.

According to Kaspersky’s telemetry, online threats exploiting vulnerabilities in websites, emails and web services continued to affect millions of users across the META region during the first half of 2026.

Specifically, Kaspersky detection systems stopped 1,6M attacks from various online resources in Nigeria. Turkiye recorded the highest percentage of users affected by web-based threats at 22.8%, followed by Kenya (21.2%), Qatar (19.3%), Nigeria (18.4%) and South Africa (17.2%). In contrast, Saudi Arabia, Jordan and Pakistan registered the lowest share of users targeted by web-borne attacks in the region.

AI is transforming attacker operations

Advertisement

Kaspersky experts report that threat actors are increasingly integrating AI into different stages of their operations. Large language models are already being used to generate phishing emails, malicious code and supporting operational content.

AI is also beginning to play a larger role in malware development. Modern language models are capable of generating substantial portions of malicious software, from initial code scaffolding to functional modules.

Researchers have already observed AI-assisted malware development in campaigns linked to the FunkSec group, which deployed Rust-based malware capable of data theft, encryption and process manipulation. Similarly, during the RevengeHotels campaign in 2025, threat actors used large language models to generate portions of the infector and downloader code.

“We expect AI to remain one of the key factors shaping the threat landscape in 2026, as we already see how it is reshaping attacker workflows and accelerating their operations,” said Sergey Lozhkin, Head of Global Research and Analysis Team in APAC and META regions at Kaspersky. “By lowering the time and cost required to develop and adapt malicious tools, AI allows threat actors to iterate faster and scale their efforts. Defenders should be prepared for quicker shifts in tactics.”

Emerging trends shaping the cyber threat landscape

Advertisement

In addition to the growing use of AI by cybercriminals, Kaspersky experts identified several trends that organisations should monitor closely:

  • AI-driven malware evolution: generative models can rewrite malware in different languages or architectures, making malicious code harder to detect, and faster to deploy at scale.
  • Cloud-based data exfiltration: attackers increasingly route stolen data through legitimate cloud and file-sharing services to blend in with normal traffic.
  • Ransomware targeting operations: some groups disrupt production and business processes, not just encrypt data, to increase pressure for payment.
  • AI agents as persistence mechanisms: some AI agent solutions are granted broad or even full system access. If compromised, attackers could modify the system prompt or the agent’s configuration, for example, causing it to download a payload on every startup.
  • Malicious AI skills become a new attack vector: as AI agents gain broader access to enterprise systems, attackers start to exploit compromised skills to manipulate agent behaviour, steal sensitive data, execute unauthorised actions, and establish persistent access. This creates a new layer of risk where trusted AI tools can be turned into powerful mechanisms for cyberattacks.

As cyberthreats continue to evolve alongside emerging technologies, Kaspersky recommends that organisations strengthen their cybersecurity posture through continuous vulnerability management, timely patching, employee awareness training, threat intelligence, and advanced security solutions like Kaspersky Next, capable of detecting sophisticated and AI-assisted attacks.

 

Kindly share this post
Continue Reading

E-Business

Kaspersky Uncovers New Mirage Kitten Malware Used in Cyber-espionage Campaign Across Africa, Others

Published

on

Kindly share this post

Kaspersky Global Research and Analysis Team (GReAT) has discovered a previously undocumented malware set used by Mirage Kitten APT. The findings were revealed at its annual Kaspersky Cyber Security Weekend for the Middle East, Turkiye and Africa (META).

The malicious tools were used in a targeted campaign aimed at maintaining long-term access to victim networks and stealing sensitive data.

The company’s researchers have identified victims of this campaign across the Middle East and Africa, including organisations in Egypt, small and medium-sized businesses and government entities in Jordan and Tanzania, aviation organisations in Pakistan, telecommunications companies in Ethiopia and financial-sector entities in Burkina Faso.

The toolset consists of three custom programs. At its core is NightLedger, a newly discovered Windows backdoor attributed to the group based on code and behavioural similarities to its previously known malware, which gives the attackers remote control over infected machines: they can run commands, explore and transfer files and capture screenshots.

It is complemented by two covert tunneling tools, ArcBridge and BridgeHead, which effectively turn a compromised computer into a relay node: the attackers run their tools on their own servers, while all the resulting traffic is quietly funneled through the victim’s machine, as if it originated from inside the victim’s network.

Advertisement

This lets them slip past network defences and preserve long-term access without drawing attention. The first of these tools was identified in April 2026 in activity targeting victims in the Middle East.

While the initial access vector remains unclear in most cases, Kaspersky GReAT researchers observed BridgeHead being deployed during post-compromise activity in victim environments in Egypt and at an aerospace and aviation organisation in Pakistan. In those cases, the intrusion activity followed targeted spear-phishing attempts consistent with the group’s known methods.

The lures were highly tailored including recruitment-themed messages impersonating trusted brands and hiring platforms, as well as fake videoconferencing pages that redirected victims to malicious archive files hosted on third-party file-sharing services.

“Based on our latest findings, we conclude that Mirage Kitten continues to evolve its malware arsenal in support of targeted cyber-espionage operations across the Middle East and Africa.

“Another notable aspect of the campaign is the group’s continued reliance on tunneling utilities as part of its operational toolkit: in practice this enables attackers to bypass network controls, maintain covert access to compromised environments and significantly complicate detection efforts.

Advertisement

“Given the persistence and sophistication of these techniques, organisations and defenders should incorporate these findings into their threat assessments and strengthen their detection and response capabilities accordingly,” says Omar Amin, senior security researcher at Kaspersky GReAT.

 

Kindly share this post
Continue Reading

E-Business

NDPC Directs DCPMIs to Register with Agency or Face Legal Consequences

Published

on

Kindly share this post

Nigeria Data Protection Commission (NDPC) has directed all Data Controllers and Data Processors of Major Importance (DCPMIs), yet to register with the commission to do so immediately.

NDPC Directs DCPMIs to Register with Agency or Face Legal Consequences

This followed a Federal High Court judgment affirming NDPC statutory powers to designate and register such entities.

DCPMIs are entities operating in Nigeria that handle sensitive personal data or large volumes of information, requiring mandatory registration with the NDPC under the Nigeria Data Protection Act (NDPA).

In a statement issued on Tuesday by Babatunde Bamigboye, head of Legal, Enforcement and Regulations at the NDPC,  described the judgment as a major milestone for data accountability and regulatory oversight in Nigeria.

The commission said the ruling arose from a suit filed by Emmanuel Harunna against the NDPC in Emmanuel Harunna v. NDPC (FHC/L/CS/1116/2024), in which the applicant sought a declaration that Point of Sale agents were not Data Controllers or Processors of Major Importance under the Nigeria Data Protection Act and requested a perpetual injunction restraining the commission from registering them.

Advertisement

According to the statement, Justice F.N. Ogazi examined the commission’s Guidance Notice on Registration alongside Sections 5(d), 6(c), 44, 45 and 65 of the Nigeria Data Protection Act before concluding that the commission acted within its statutory powers in designating entities under the Major Data Processing – Ordinary High Level category as Data Controllers and Processors of Major Importance.

Quoting the judgment, the statement read, “The Nigeria Data Protection Act was enacted to promote accountability, transparency and responsible data governance. Registration enables the Respondent to identify entities engaged in significant data processing activities, monitor compliance.”

It added that the court held that, “Far from undermining the constitutional right to privacy, the registration framework is one of the statutory mechanisms designed to safeguard that very right by subjecting data controllers and data processors to effective regulatory oversight.”

The statement further quoted the court as saying, “Looking at the recitals of the Guidance Notice, there is every indication that the Guidance Notice is also aimed at protecting the privacy and security of data subjects, thus bringing the registration requirement of the Guidance Notice within the protective shield of Section 45 of the 1999 Constitution.”

According to the commission, the court also held that, “Remarkably, Section 63 of the Data Protection Act provides that the provisions of the Act shall prevail over any other law inconsistent with its provisions on matters relating to the processing of personal data.”

Advertisement

Reacting to the judgment, the commission described the decision as a significant boost to Nigeria’s data protection regime.

“The Commission appreciates the ground-breaking efforts of the court towards the advancement of the jurisprudence relating to data accountability in Nigeria, as eloquently demonstrated in this case,” the statement read.

Following the ruling, Vincent Olatunji, national commissioner and chief executive officer, had directed every Data Controller and Processor of Major Importance that had yet to comply with the registration requirement to register without delay.

The commission warned that entities failing to comply with the registration requirement could face legal consequences.

“Failure to register creates serious legal liabilities under the law, while compliance with registration requirements builds public trust and safeguards the fundamental rights and freedoms of data subjects in Nigeria,” the statement added.

Advertisement

 

Kindly share this post
Continue Reading

Trending