• Login
  • Register
Nairametrics
  • Home
  • Exclusives
    • Financial Analysis
    • Corporate Stories
    • Interviews
    • Investigations
    • Metrics
    • Economy
    • Nairalytics
  • Markets
    • Currencies
    • Cryptos
    • Commodities
    • Equities
      • Company Results
      • Dividends
      • Stock Market
    • Fixed Income
    • Market Views
    • Securities
  • Sectors
    • Agriculture
    • Aviation
    • Company News
    • Consumer Goods
    • Corporate Updates
    • Corporate deals
    • Corporate Press Releases
    • Energy
    • Entertainment
    • Financial Services
    • Health
    • Hospitality & Travel
    • Manufacturing
    • Real Estate and Construction
    • Renewables & Sustainability
    • Tech News
  • Business News
    • Budget
    • Public Debt
    • Funds Management
    • Tax
  • Financial Literacy
    • Career tips
    • Personal Finance
  • Lifestyle
    • Billionaire Watch
    • Profiles
  • Opinions
    • Blurb
    • Op-Eds
    • Research Analysis
  • Recapitalization
    • Access Holdings Offer
    • Fidelity Bank Offer
    • GTCO Offer
    • Zenith Bank Offer
  • Home
  • Exclusives
    • Financial Analysis
    • Corporate Stories
    • Interviews
    • Investigations
    • Metrics
    • Economy
    • Nairalytics
  • Markets
    • Currencies
    • Cryptos
    • Commodities
    • Equities
      • Company Results
      • Dividends
      • Stock Market
    • Fixed Income
    • Market Views
    • Securities
  • Sectors
    • Agriculture
    • Aviation
    • Company News
    • Consumer Goods
    • Corporate Updates
    • Corporate deals
    • Corporate Press Releases
    • Energy
    • Entertainment
    • Financial Services
    • Health
    • Hospitality & Travel
    • Manufacturing
    • Real Estate and Construction
    • Renewables & Sustainability
    • Tech News
  • Business News
    • Budget
    • Public Debt
    • Funds Management
    • Tax
  • Financial Literacy
    • Career tips
    • Personal Finance
  • Lifestyle
    • Billionaire Watch
    • Profiles
  • Opinions
    • Blurb
    • Op-Eds
    • Research Analysis
  • Recapitalization
    • Access Holdings Offer
    • Fidelity Bank Offer
    • GTCO Offer
    • Zenith Bank Offer
Nairametrics
No Result
View All Result
Home Sectors

Ransomware threat: Phobos Group targets Nigeria’s critical cloud providers

Rosalia Ozibo by Rosalia Ozibo
July 10, 2024
in Sectors, Tech News
ransomware
Share on FacebookShare on TwitterShare on Linkedin

The Nigerian Computer Emergency Response Team (ngCERT) has revealed that there is a significant increase in ransomware attacks by the Phobos ransomware group, targeting critical cloud service providers within Nigeria’s national cyberspace.

According to ngCERT, the attacks primarily will affect providers of information technology and telecommunication services, including managed cloud services.

The ngCERT said it is actively working with vulnerable and affected organizations to resolve incidents and prevent further escalation.

RelatedStories

cybersecurity jobs

IT leaders globally raise security concern over AI cybersecurity tools usage – Report 

January 31, 2025
Nigeria set to develop Indigenous blockchain “Nigerium” to foster data sovereignty 

NITDA alerts Nigerians on cybersecurity risks linked to Spotify exploits 

November 26, 2024

The report read in part; “We are actively collaborating with vulnerable and affected organizations to swiftly resolve these incidents and prevent further escalation.

“The most at-risk entities include providers of information technology and telecommunication services, such as managed cloud services, whose clients include critical government agencies, financial institutions, telecommunications, education, healthcare, service providers, and NGOs in Nigeria. It is essential for organizations to proactively implement the mitigation strategies outlined in this document to help prevent the spread of the malware.”

How the attackers operate

Phobos attackers usually break into networks in two main ways:

  1. Phishing Emails: These are fake emails that deceive victims into opening attachments or links that could be harmful. This gives the attackers access to the network.
  2. RDP Exploitation: They search for weaknesses in the Remote Desktop Protocol (RDP) functionality. If they find an unsecured RDP, they use tools to guess the password and break in.

Once inside, they:

  • Install more harmful software to control the system further.
  • Use special programs to hide their activities so they aren’t detected.
  • Steal important information like passwords and network details.
  • Use other programs to send the stolen information out of the network.

Signs that your system has been attacked

  • Email: The attackers use the email address finamtox@zohomail.eu.
  • Ransomware Group: The attacks are linked to a group called the Phobos Ransomware Group.
  • File Extension: Files that have been encrypted by the ransomware will have the extension .xshell added to them.
  • File Format: If the format of the renamed files follows this pattern filename.id[xxxxxx-xxxx].email.xshell, it’s an indication of compromise.

Consequences of a successful attack

  • Attackers are gaining control over your systems.
  • You could be forced to pay a ransom to regain access to your data.
  • Important files and systems could be encrypted or locked, making them inaccessible.
  • Sensitive information could be stolen and lost.
  • The attack can cause significant financial damage due to downtime, ransom payments, and recovery costs.
  • Your services could be disrupted, making them unavailable to users.
  • Attackers might use compromised systems for illegal activities.

Steps organizations can take to protect themselves

ngCERT urges organizations to implement the following measures to prevent the spread of ransomware and protect critical infrastructures.

  • Secure RDP ports to prevent abuse.
  • Prioritize fixing known exploited vulnerabilities.
  • Introduce Endpoint Detection and Response (EDR) solutions.
  • Disable unnecessary command-line and scripting activities.
  • Segment networks to control traffic and restrict lateral movement.
  • Review domain controllers and workstations for new or unrecognized accounts.
  • Audit administrative user accounts and enforce the principle of least privilege.
  • Implement time-based access for high-level accounts.
  • Maintain multiple, physically separate backups of sensitive data.
  • Regularly update and enable real-time antivirus detection.
  • Disable unused ports and protocols.
  • Add email banners for external emails and disable hyperlinks in emails.
  • Ensure backup data is encrypted, immutable, and comprehensive.
  • Maintain offline backups and regularly test restoration processes.
What You Should Know
  • Ransomware attacks were the most prevalent form of cyberattack in 2023, accounting for 70% of total hits on businesses.
  • According to the Sophos Active Adversary Report, 90% of these attacks involved the abuse of remote desktop protocol (RDP).
  • Compromised credentials and exploited vulnerabilities remain the top root causes of these attacks.
  • Despite these threats, many organizations have yet to implement essential security measures like multi-factor authentication.
  • The report emphasizes the need for robust endpoint protection and careful management of remote services to mitigate risks.

Follow us for Breaking News and Market Intelligence.
Tags: cloud serviceCybersecurityngCERTNigeria's cyberspacePhobos ransomware groupransomware
Rosalia Ozibo

Rosalia Ozibo

Related Posts

cybersecurity jobs
Sectors

IT leaders globally raise security concern over AI cybersecurity tools usage – Report 

January 31, 2025
Nigeria set to develop Indigenous blockchain “Nigerium” to foster data sovereignty 
Sectors

NITDA alerts Nigerians on cybersecurity risks linked to Spotify exploits 

November 26, 2024
Shortage of cybersecurity skills threatens Nigeria’s digital economy—Adewale Obadare 
Sectors

Shortage of cybersecurity skills threatens Nigeria’s digital economy—Adewale Obadare 

November 18, 2024
Vodafone signs 10-year deal with Google to bring AI and cloud cybersecurity to Africa 
Sectors

Vodafone signs 10-year deal with Google to bring AI and cloud cybersecurity to Africa 

October 8, 2024
Nigerian bank customers risk financial losses by exposing ATM card numbers—Zecharia Akinpelu
Sectors

Nigerian bank customers risk financial losses by exposing ATM card numbers—Zecharia Akinpelu

September 21, 2024
U.S. opens special cybersecurity office in Abuja to boost collaboration with EFCC
Business

U.S. opens special cybersecurity office in Abuja to boost collaboration with EFCC

July 26, 2024
Next Post
Roosevelt Ogbonna

Access Bank targets top 20 status in the UK with $1 billion annual profit goal’- Ogbonna

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Emple
nlng
first bank








DUNS

Recent News

  • FG treats 30 million Nigerians with ivermectin in major push against tropical diseases 
  • World Bank disburses N3.8 billion to boost climate adaptation in Yobe communities 
  • NCC vs MTN: AGF to decide on criminal charges facing CEO Karl Toriola 

Follow us on social media:

Recent News

FG treats 30 million Nigerians with ivermectin in major push against tropical diseases 

FG treats 30 million Nigerians with ivermectin in major push against tropical diseases 

July 2, 2025
World Bank disburses N3.8 billion to boost climate adaptation in Yobe communities 

World Bank disburses N3.8 billion to boost climate adaptation in Yobe communities 

July 2, 2025
  • iOS App
  • Android App
  • Contact Us
  • Home
  • Markets
  • Sectors
  • Economy
  • Business News
  • Financial Literacy
  • Disclaimer
  • Ads Disclaimer
  • Copyright Infringement

© 2025 Nairametrics

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Social Media Auto Publish Powered By : XYZScripts.com
No Result
View All Result
  • Home
  • Exclusives
    • Financial Analysis
    • Corporate Stories
    • Interviews
    • Investigations
    • Metrics
    • Economy
    • Nairalytics
  • Markets
    • Currencies
    • Cryptos
    • Commodities
    • Equities
      • Company Results
      • Dividends
      • Stock Market
    • Fixed Income
    • Market Views
    • Securities
  • Sectors
    • Agriculture
    • Aviation
    • Company News
    • Consumer Goods
    • Corporate Updates
    • Corporate deals
    • Corporate Press Releases
    • Energy
    • Entertainment
    • Financial Services
    • Health
    • Hospitality & Travel
    • Manufacturing
    • Real Estate and Construction
    • Renewables & Sustainability
    • Tech News
  • Business News
    • Budget
    • Public Debt
    • Funds Management
    • Tax
  • Financial Literacy
    • Career tips
    • Personal Finance
  • Lifestyle
    • Billionaire Watch
    • Profiles
  • Opinions
    • Blurb
    • Op-Eds
    • Research Analysis
  • Recapitalization
    • Access Holdings Offer
    • Fidelity Bank Offer
    • GTCO Offer
    • Zenith Bank Offer
  • Login
  • Sign Up

© 2025 Nairametrics