Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Ghana’s power producers urge government to pay $1.4bn debt

    March 24, 2023

    Chad says it has nationalised all assets owned by Exxon Mobil

    March 24, 2023

    A deep dive into East Africa’s tech start-up ecosystem

    March 24, 2023
    Facebook Twitter Instagram
    • Home
    • About Us
      • Profile
      • The Team
      • Advertise
      • Media Kit
    • Contact Us
    • Regions
      • Ghana
      • Nigeria
      • Kenya
      • South Africa
      • Europe
      • United Kingdom
      • USA (North America)
    Trending
    • Ghana’s power producers urge government to pay $1.4bn debt
    • Chad says it has nationalised all assets owned by Exxon Mobil
    • A deep dive into East Africa’s tech start-up ecosystem
    • Female driver overtakes competition at Dakar race
    • Will Uganda’s anti-gay bill resonate across Africa?
    • UK and Kenyan ministers in first meeting to secure jobs and increase trade
    • Promoting equity: Three women who run Nestlé factories in Africa
    • African Media Agency and On Time join forces to launch the first women-owned lusophone press release distribution service in Africa
    0 Shopping Cart
    Facebook Twitter YouTube LinkedIn
    Africa BriefingAfrica Briefing
    Resources
    Support Us
    • News
    • Politics
    • Business
    • Energy
    • Technology
    • CryptoTech
      • Crypto News
      • Startups & Companies
      • Crypto Currencies
      • DeFi
      • Metaverse
      • NFTs
    • More
      • Videos
      • Opinion
    • Magazine
    Home » Cybercriminals target African countries with ransomware
    Featured

    Cybercriminals target African countries with ransomware

    Editorial StaffBy Editorial StaffDecember 23, 2016No Comments0 Views
    Facebook Twitter WhatsApp Telegram
    Share
    Facebook Twitter Telegram WhatsApp

    CHECK POINT, the largest global pure-play network cybersecurity vendor, has revealed that five African nations were among the top 10 most-attacked countries in November as cybercriminals made increasing use of ransomware attacks using the Locky and Cryptowall viruses.

    Botswana was the most-attacked country in Check Point’s list of 117 at-risk nations, followed by Malawi in second place, Namibia in fourth, Uganda in ninth and the Democratic Republic of Congo in tenth place. South Africa moved up to 31 on the list from 58th position in October, while Kenya dropped to 24th (from 22nd in October) and Nigeria climbed slightly to 108th position, from 116th the previous month.

    In its monthly Global Threat Index, a ranking of the most prevalent malware families attacking organisations’ networks, Check Point noted a 10 percent increase in the number of attacks using Locky and Cryptowall and found both the number of active malware families and number of attacks remained close to an all-time high as the number of attacks on business networks continued to be relentless.

    Locky spreads mainly via spam emails containing a downloader disguised as a Word or Zip file attachment, which then downloads and installs the malware that encrypts the user files. Locky was the no.1 malware family in the largest amount of countries (34 countries compared to Conficker, which was the top malware in 28 countries).

    The pattern highlights the growing threat posed to corporate networks by ransomware and suggests that many organisations are simply paying ransoms to secure the return of their files, making it an attractive – and lucrative – attack vector for cybercriminals.

    Once again Conficker retained its position as the world’s most prevalent malware, responsible for 15 percent of recognised attacks. Second-placed Locky, which only started its distribution in February of this year, was responsible for 6 percent of all attacks, and third-placed Sality was responsible for 5 percent of known attacks. Overall, the top ten malware families were responsible for 45 percent of all known attacks.

    Here are the most common malware families per country:

    Kenya

    1. Sality – Virus that allows remote operations and downloads of additional malware to infected systems by its operator. Its main goal is to persist in a system and provide means for remote control and installing further malware.

    2. Virut – Botnet used in DDoS attacks, spam distribution, data theft and fraud. The malware is spread through infected devices such as USB sticks as well as compromised websites and files.

    3. Mazben – Spam botnet targeting Windows platforms that allows a remote attacker to use the system as a proxy for sending spam messages.

    Nigeria

    1. Dorkbot – Backdoor bot agent that allows an attacker to access the compromised system and use it to send spam, send confidential information and conduct DDoS attacks.

    2. Virut

    3. Sality

    South Africa

    1. Virut

    2. Sality

    3. Conficker – Worm that allows remote operations and malware to be download. Infected machines are controlled by a botnet, which contacts its Command & Control server to receive instructions.

    The Ramnit banking Trojan saw the largest increase in attacks globally in November, entering Check Point’s top 10 ranking for the first time as the sixth most common malware. It more than doubled its amount of infections since last October, and was mainly seen in Turkey, Brazil, India, Indonesia and the US Ramnit is used to steal banking credentials, FTP passwords, session cookies and personal data.

    For the eighth consecutive month, HummingBad remains the most common malware used to attack mobile devices globally.

    Mobile malware families continued to pose a significant threat to businesses. The three most common mobile families were:

    1. HummingBad – Android malware that establishes a persistent rootkit on the device, installs fraudulent applications and enables additional malicious activity such as installing a key-logger, stealing credentials and bypassing encrypted email containers used by enterprises.

    2. Triada – Modular Backdoor for Android which grants super-user privileges to downloaded malware, as helps it to get embedded into system processes. Triada has also been seen spoofing URLs loaded in the browser.

    3. Ztorg – Trojan that uses root privileges to download and install applications on the mobile phone without the user’s knowledge.

    Rick Rogers , Check Point’s area manager for East and West Africa  explained, ‘Ransomware attacks are still growing in volume for a simple reason – they work and generate significant revenues for the attackers. Organisations are struggling to effectively counteract the threat posed by this insidious attack form; many simply don’t have the right defences in place, and may not have educated staff on how to recognise the signs of a potential ransomware attack in incoming emails. This, of course, only makes it even more attractive to criminals.’

    He added, ‘Organisations must use advanced threat prevention measures on networks, endpoints and mobile devices to stop malware at the pre-infection stage, such as Check Point’s SandBlast™ Zero-Day Protection, Threat Extraction, and Mobile Threat Prevention solutions, to ensure that they are adequately secured against the latest threats.’

    Check Point’s threat index is based on threat intelligence drawn from its ThreatCloud World Cyber Threat Map, which tracks how and where cyberattacks are taking place worldwide in real time. The Threat Map is powered by Check Point’s ThreatCloudTM intelligence, the largest collaborative network to fight cybercrime, which delivers threat data and attack trends from a global network of threat sensors. The ThreatCloud database holds over 250 million addresses analysed for bot discovery, over 11 million malware signatures and over 5.5 million infected websites, and identifies millions of malware types daily.

    Share. Facebook Twitter Telegram WhatsApp

    Related Posts

    A deep dive into East Africa’s tech start-up ecosystem

    March 24, 2023

    Movate expands its operations in Mauritius with a new delivery centre

    March 22, 2023

    Nigeria launches $672 million tech fund for young investors

    March 15, 2023
    Add A Comment

    Comments are closed.

    Top Posts

    Sex tourism: The Gambia is fed up with UK grandmothers hunting for toy boys

    September 19, 20223,232

    Op-Ed: Qatar World Cup 2022 – prejudice, coordinated attacks and Western grandstanding

    November 4, 20222,437

    Ghanaian architect of UK’s Black History Month honoured by prestigious British university

    December 12, 20221,355

    Nigerian appointed director of UN disarmament

    October 25, 20221,099
    Don't Miss
    Energy

    Ghana’s power producers urge government to pay $1.4bn debt

    By Editorial StaffMarch 24, 202310

    GHANA’S independent power producers have rejected a government proposal to restructure a $1.4bn debt owed…

    Chad says it has nationalised all assets owned by Exxon Mobil

    March 24, 2023

    A deep dive into East Africa’s tech start-up ecosystem

    March 24, 2023

    Female driver overtakes competition at Dakar race

    March 24, 2023
    Stay In Touch
    • Facebook
    • Twitter
    • YouTube
    • LinkedIn
    About Us
    About Us

    AfricaBriefing is a monthly magazine designed to provide news and information on Africa to Africans at home and abroad, and the wider global audience that has a committed interest in the continent’s political, economic and social developments.

    Facebook Twitter YouTube LinkedIn
    Our Picks

    Ghana’s power producers urge government to pay $1.4bn debt

    March 24, 2023

    Chad says it has nationalised all assets owned by Exxon Mobil

    March 24, 2023

    A deep dive into East Africa’s tech start-up ecosystem

    March 24, 2023
    Most Popular

    Sex tourism: The Gambia is fed up with UK grandmothers hunting for toy boys

    September 19, 20223,232

    Op-Ed: Qatar World Cup 2022 – prejudice, coordinated attacks and Western grandstanding

    November 4, 20222,437

    Ghanaian architect of UK’s Black History Month honoured by prestigious British university

    December 12, 20221,355
    © 2023 AfricaBriefing. Designed by KMG.

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    SAVE & ACCEPT