Telecom
Sophos Detects How Cyberattackers Are Exploiting Apache Log4Shell Vulnerability to Exploit Unpatched Systems

Following the reporting of the Apache Log4Shell vulnerability, Sophos has provided new threat intelligence on how cyberattackers are already exploiting or attempting to exploit unpatched systems.

The threat intelligence as detailed in the SophosLabs Uncut report, Log4Shell Hell: Anatomy of an Exploit Outbreak, shows that Sophos is seeing a rapid uptick in attacks exploiting or attempting to exploit this vulnerability, with hundreds of thousands of attempts detected so far.
The report also indicated that Cryptomining botnets are among the earliest “attack” adopters; botnets focus on Linux server platforms, which are particularly exposed to this vulnerability.
Sophos has also seen attempts to extract information from services, including Amazon Web Services keys and other private data.
The company said it observed that attempts to exploit network services start by probing for different types.
Around 90 percent of the probes Sophos detected were focused on the Lightweight Directory Access Protocol (LDAP.) A smaller number of probes targeted Java’s Remote Interface (RMI,) but Sophos researchers noted that there seem to be a larger variety of unique RMI-related attempts
Sophos said it expects adversaries to intensify and diversify their attack methods and motivations in the coming days and weeks, including the possibility of leveraging for ransomware.
According to Sean Gallagher, senior threat researcher at Sophos, in the SophosLabs Uncut report issued on Dec. 9, Sophos has detected hundreds of thousands of attempts to remotely execute code using the Log4Shell vulnerability.
“Initially, these were Proof-of-Concept (PoC) exploit tests by security researchers and potential attackers, among others, as well as many online scans for the vulnerability. This was quickly followed by attempts to install coin miners, including the Kinsing miner botnet.
“The most recent intelligence suggest attackers are trying to exploit the vulnerability to expose the keys used by Amazon Web Service accounts.
“There are also signs of attackers trying to exploit the vulnerability to install remote access tools in victim networks, possibly Cobalt Strike, a key tool in many ransomware attacks.
“The Log4Shell vulnerability presents a different kind of challenge for defenders. Many software vulnerabilities are limited to a specific product or platform, such as the ProxyLogon and ProxyShell vulnerabilities in Microsoft Exchange. Once defenders know what software is vulnerable, they can check for and patch it.
“However, Log4Shell is a library that is used by many products. It can therefore be present in the darkest corners of an organization’s infrastructure, for example any software developed in-house. Finding all systems that are vulnerable because of Log4Shell should be a priority for IT security.
“Sophos expects the speed with which attackers are harnessing and using the vulnerability will only intensify and diversify over the coming days and weeks. Once an attacker has secured access to a network, then any infection can follow.
“Therefore, alongside the software update already released by Apache in Log4j 2.15.0, IT security teams need to do a thorough review of activity on the network to spot and remove any traces of intruders, even if it just looks like nuisance commodity malware”, Gallagher added,
New and additional information on how Log4Shell works is also available in the Sophos Naked Security article, Log4Shell Explained – How it Works, Why You Need to Know, and How to Fix It, by Paul Ducklin.
According to Paul Ducklin, principal research scientist at Sophos: “Technologies including IPS, WAF and intelligent network filtering are all helping to bring this global vulnerability under control.
“But the staggering number of different ways that the Log4Shell ‘trigger text’ can be encoded, the huge number of different places in your network traffic that these strings can appear, and the wide variety of servers and services that could be affected are collectively conspiring against all of us.
“The very best response is perfectly clear: patch or mitigate your own systems right now. Our article provides practical advice that explains how the vulnerability works, why it works, what it can do, and how to fix it.”
Sophos threat intelligence experts are continuing to monitor Log4Shell.
Telecom
GITEX Nigeria to spotlight Africa’s $1trn AI economic potential

Nigeria is strengthening its position as a leading digital economy in Africa as it prepares to host the second edition of GITEX Nigeria, against projections that the continent’s artificial intelligence (AI) economy could generate up to $1 trillion in economic value by 2035.

GITEX Nigeria
GITEX Nigeria, described as West Africa’s largest technology, AI and startup event, is scheduled to hold in Abuja and Lagos from Aug. 31 to Sept. 3, under the patronage of President Bola Tinubu.
The event is supported by the Federal Ministry of Communications, Innovation and Digital Economy in collaboration with the National Information Technology Development Agency (NITDA), endorsed by the Lagos State Government and organised by KAOUN International.
With the theme, “Beyond Connectivity: The Bridge to Sovereign Innovation,” the 2026 edition is expected to bring together global technology companies, investors, policymakers, regulators, startups and other stakeholders to advance Nigeria’s digital transformation agenda.
According to the organisers, the event will focus on strengthening digital resilience, scaling AI infrastructure, attracting strategic investments and building partnerships to support digital sovereignty across Nigeria and West Africa.
Nigeria’s progress in digital skills development is expected to feature prominently at the event, with the Federal Government’s 3 Million Technical Talent (3MTT) programme highlighted as a major intervention.
The programme has recorded 1.87 million registrations across all 774 local government areas, while more than 135,000 Nigerians have been trained through three cohorts.
The programme has also extended learning opportunities to more than 300,000 people through community resources and created 15,000 job and opportunity pathways, according to figures released by the organisers.
Another key initiative, Project BRIDGE, is aimed at expanding Nigeria’s national ICT backbone and improving connectivity in underserved communities.
The project is expected to create up to 20,000 direct jobs and more than 150,000 indirect jobs, train 5,000 Nigerian youths, raise internet penetration above 70 per cent and extend high-speed connectivity to millions of households, businesses, schools and hospitality establishments.
Dr Bosun Tijani, Minister of Communications, Innovation and Digital Economy, said Nigeria’s objective was to build the foundations for digital sovereignty and a globally competitive AI-powered economy.
“Building on the momentum forged through the implementation of Project BRIDGE, our national blueprint for expanding digital infrastructure and connecting communities across Nigeria, our aspiration ahead of this year’s edition is clear: to solidify the foundations Africa needs for digital sovereignty, technological self-determination, and a globally competitive AI-powered economy,” Tijani said.
He said Nigeria was seeking to promote equitable access, accelerate cross-continental progress and position the country as a producer and exporter of digital technologies and AI solutions.
The GITEX Nigeria Government Leadership and AI Summit will open in Abuja on Aug. 31, bringing together ministers, governors and regulators to discuss digital public infrastructure and other issues shaping West Africa’s digital economy.
The GITEX Nigeria Tech Expo and Future Economy Conference, as well as the Startup Festival, will also return for the second consecutive year.
A new component, FDX Nigeria by GITEX, will focus on finance and digital asset exchange, with the organisers describing it as a platform designed to promote financial inclusion and connect emerging technology with global capital.
Gov. Babajide Sanwo-Olu of Lagos State said the state remained central to Africa’s digital transformation, noting its role in attracting talent, capital and innovation.
He said hosting GITEX Nigeria would further support Lagos’ ambition of becoming a smarter, more connected and globally competitive economy.
Kashifu Inuwa Abdullahi, Director-General of NITDA, said Nigeria’s digital future would depend not only on technology adoption but also on resilience, trust and effective governance frameworks.
“GITEX NIGERIA seamlessly complements this mandate, creating a unique environment for the dialogue needed to accelerate responsible AI adoption, develop a secure digital economy, and unlock new opportunities for innovation and economic growth,” Abdullahi said.
He said the expertise, investment and partnerships generated through the event would contribute to building an AI ecosystem that was secure, inclusive and capable of supporting Nigeria and West Africa’s long-term competitiveness.
The organisers said Nigeria’s National AI Strategy, 3MTT programme and Project BRIDGE were among initiatives strengthening the country’s capacity in talent development, digital infrastructure, investment attraction and responsible AI adoption.
They said GITEX Nigeria would provide an avenue for global stakeholders to establish partnerships and develop solutions capable of accelerating the region’s digital transformation.
Trixie LohMirmand, CEO of GITEX, said the event was intended to demonstrate that West Africa was ready to convert technological ambition into economic growth, resilience and global competitiveness.
She said GITEX Nigeria would facilitate strategic conversations and partnerships aimed at strengthening regional competitiveness and unlocking scalable growth across Nigeria and West Africa.
Telecom
NCC, Enugu Sign Deal to Operate Digital Industrial Park, Learning Centre

Nigerian Communications Commission (NCC) and the Enugu State Government have signed an agreement for the operational lease of the NCC Digital Industrial Park and NCC Learning Centre in Enugu.

The agreement was witnessed by Dr Aminu Maida, Executive Vice Chairman and Chief Executive Officer of the NCC, alongside members of the Commission’s Board and Management.
The development is expected to strengthen digital innovation, skills development and technology-driven opportunities in the state.
As part of the engagement, the NCC delegation also visited the Enugu Smart School Initiative, where technology is being integrated into teaching and learning.
The initiative is aimed at equipping young Nigerians with relevant digital skills and preparing them for future opportunities in an increasingly technology-driven economy.
The NCC said it remained committed to supporting initiatives that expand digital inclusion, strengthen innovation and develop the talent required to drive Nigeria’s digital transformation.
The Commission said partnerships with state governments and other stakeholders were critical to creating an enabling environment for digital skills development and technology adoption across the country.
Telecom
NCC Asks Telcos to Make Budgetary Provisions for Cybersecurity

Nigerian Communications Commission (NCC) has directed telecommunications operators to make dedicated budgetary provisions for cybersecurity as part of efforts to strengthen the resilience of Nigeria’s communications infrastructure against the growing wave of cyber threats.

The directive forms part of the Commission’s Cyber Resilience Framework for the Nigerian Communications Sector (CRF-NCS), which introduces new governance, risk management and operational requirements aimed at safeguarding the country’s critical telecommunications infrastructure from increasingly sophisticated cyberattacks.
Under the framework, all licensed telecom operators are expected to establish formal cybersecurity governance structures, dedicate adequate financial resources to cyber resilience programmes, and integrate cybersecurity into their enterprise-wide risk management processes.
The Commission said operators must ensure cybersecurity investments are no longer treated as optional operational expenses but as strategic business priorities necessary to protect network infrastructure, customer information and the country’s digital economy.
According to the NCC, licensees are expected to allocate sufficient budgets to support cyber risk assessments, security technologies, staff training, incident response capabilities, continuous monitoring and compliance with regulatory requirements.
The framework also requires operators to designate senior executives responsible for cybersecurity oversight.
At the same time, boards of directors are expected to provide strategic direction and ensure adequate funding for cyber resilience initiatives.
Speaking on the need for a stronger cybersecurity regime during the unveiling of the framework, Abraham Oshadami, executive commissioner, Technical Services, NCC, said, “Given the increasing digitalisation of services, the rapid growth of data exchange, and the sophisticated nature of modern cyber threats, the need for a robust, adaptive and inclusive cybersecurity framework has become more urgent.”
He added, “Both state and non-state actors are targeting essential sectors—including ours—through coordinated cyber and physical attacks. These attacks frequently target control systems and data integrity, underscoring the critical risks posed to operational technology (OT), especially in our sector.”
“As cyber threats evolve, they endanger not only system performance but also human safety, amplifying the severity and consequences of disruptions to vital communications infrastructure. Cybersecurity now encompasses human safety and must address the real risk to people’s lives when a system is attacked or compromised.”
The Commission further stated that operators are required to develop comprehensive cybersecurity implementation plans, conduct periodic risk assessments, establish business continuity and disaster recovery procedures, and regularly test their cyber defence capabilities.
In addition, the framework makes cyber incident reporting compulsory. Licensees must inform the NCC’s CSIRT of any major cybersecurity breach within four hours of discovery, and provide a thorough post-incident analysis after mitigation is complete.
E-Financial3 days agoAccess Holdings Deepens Sustainable Finance Impact, Expanding Green Assets to ₦92.14 Billion
News3 days agoOgbaga, Abuja Lawyer to Sue Telcos, DStv over Alleged Unfair Practices
Telecom3 days agoMTN Moves Closer to Full IHS Takeover
Telecom3 days agoAirtel Nigeria Unveils Hundreds of Retail Shops in Wide Expansion of Customer Touch Points
News3 days agoNAICOM Issues New Licences to 43 Recapitalized Insurers
E-Financial3 days agoNAICOM Revokes Nigeria Reinsurance’s Licence over Failure to Meet MCR
E-Financial3 days agoSEC Begins Full e-Registration for Capital Market Services
E-Financial3 days agoTeamApt, Awabah Partner to Bring Micro-Pension Contributions to POS Terminals Nationwide




















