Multiple African countries feature in the global rankings for cyber-attacks
Check Point® Software Technologies Ltd. (NASDAQ: CHKP), a leading AI-powered, cloud-delivered cybersecurity platform provider, has published its Global Threat Index for July 2024. This month, the analysis reveals a concerning rise in cyber threats across the African continent, with several countries now among the most attacked globally. The recent exploitation of a security flaw in the CrowdStrike Falcon sensor has further underscored the vulnerabilities faced by organisations in the region, particularly as cybercriminals increasingly target Africa.
Alarming Shifts in Cybersecurity Trends in Africa
Cybersecurity threats are intensifying across Africa, with multiple countries prominently featured in the global rankings for cyber-attacks. According to Check Point's latest data:
· Ethiopia holds the top spot among all the countries surveyed with a Normalised Risk Index of 78.9, highlighting its vulnerability to cyber threats.
· Zimbabwe ranks as the third most attacked country globally, with a Normalised Risk Index of 80.4.
· Nigeria has seen a sharp rise in its risk ranking, placing 19th globally with a Normalised Risk Index of 76.2.
· Kenya and Ghana have also experienced significant increases, ranking 11th and 15th, respectively, indicating the growing cyber threats across the continent.
· South Africa has moved up in the rankings, now placing 59th globally with a Normalised Risk Index of 72.1, reflecting the escalating cyber risks faced by organisations across the country.
· Other African countries placed in the Top 20 most vulnerable to malware attacks are Maldives (4th), Angola (5th) and Mauritius (9th).
"These rankings highlight the urgent need for enhanced cybersecurity measures for African businesses and organisations. The evolving threat landscape, coupled with recent vulnerabilities like the CrowdStrike Falcon sensor exploit, continues to pose significant risk," says Issam El Haddioui, Head: Security Engineering, EMEA – Africa.
The Most Prevalent Malware in Africa
In July 2024, the top malware families impacting Africa included:
· FakeUpdates (SocGholish): The most prevalent malware globally, FakeUpdates remains a significant threat in Africa, employing fake browser update prompts to install Remote Access Trojans (RATs) like AsyncRAT.
· Remcos: Following the CrowdStrike update issue, Remcos has emerged as a prominent threat, particularly in Africa, where it has been used to gain unauthorised access to systems.
· Qbot: Continues to pose significant risks, targeting organisations in South Africa and beyond with credential theft and ransomware deployment.
· Phorpiex: Known for orchestrating large-scale spam campaigns, Phorpiex has been particularly active in Zimbabwe and Mozambique.
· Vidar: An infostealer malware operating as malware-as-a-service, Vidar has been increasingly observed across African networks, collecting sensitive data from browsers and digital wallets.
Top-Attacked Industries in Africa
The sectors most affected by these rising threats include:
1. Government/Military: High-value targets requiring robust defence mechanisms to protect national security interests.
2. Finance/Banking: Financial institutions continue to face persistent threats, jeopardising sensitive data and critical operations.
3. Utilities: The utilities sector remains vulnerable, with potential disruptions to essential services.
4. Communications: A key target for cyber adversaries, threatening both infrastructure and data.
5. Education/Research: Educational institutions and research organisations are increasingly targeted, risking the loss of sensitive information.
Strategic Insights and Recommendations
Maya Horowitz, VP of Research at Check Point Software, emphasizes the importance of a multi-layered security strategy, "The continued rise of malware like Remcos, driven by security flaws, highlights the opportunistic nature of cybercriminals. Organisations in Africa must adopt robust endpoint protection, vigilant monitoring, and comprehensive user education to mitigate these growing threats."
"As cyber threats continue to increase across Africa, it is imperative for organisations to invest in advanced security solutions and foster a culture of cyber resilience. By staying proactive and informed, businesses can better defend against the increasing number of cyber threats and safeguard their digital assets," El Haddioui concludes.
Follow Check Point via:
LinkedIn: https://www.linkedin.com/company/check-point-software-technologies
X: https://www.twitter.com/checkpointsw
Facebook: https://www.facebook.com/checkpointsoftware
Blog: https://blog.checkpoint.com
YouTube: https://www.youtube.com/user/CPGlobal
About Check Point Software Technologies Ltd.
Check Point Software Technologies Ltd. (www.checkpoint.com) is a leading AI-powered, cloud-delivered cyber security platform provider protecting over 100,000 organisations worldwide. Check Point leverages the power of AI everywhere to enhance cyber security efficiency and accuracy through its Infinity Platform, with industry-leading catch rates enabling proactive threat anticipation and smarter, faster response times. The comprehensive platform includes cloud-delivered technologies consisting of Check Point Harmony to secure the workspace, Check Point CloudGuard to secure the cloud, Check Point Quantum to secure the network, and Check Point Infinity Core Services for collaborative security operations and services.