News

NCC Warns Nigerians Of New Ransomware Attacking Organisational Networks

Spread the love
2 mins read

The Nigerian Communications Commission has warned members of the public that a cybercrime group has perfected a New Year scheme to deliver ransomware to targeted organisational networks.

The NCC said the new ransomware uncovered by security experts has been categorised, by the Nigerian Computer Emergency Response Team’s (ngCERT) advisory released over the weekend, as high-risk and critical.

NCC Director, Public Affairs, Dr. Ikechukwu Adinde, disclosed this in a statement on Saturday.

“According to the ngCERT advisory, the criminal group is said to have been mailing out USB thumb drives to many organisations in the hope that recipients will plug them into their PCs and install the ransomware on their networks. While businesses are being targeted, criminals could soon begin sending infected USB drives to individuals.

“Describing how the cybercrime group runs the ransomeware, the ngCERT advisory says the USB drives contain so-called ‘BadUSB’ attacks. The BadUSB exploits the USB standards versatility and allows an attacker to reprogram a USB drive to emulate a keyboard to create keystrokes and commands on a computer. It then installs malware prior to the operating system booting, or spoofs a network card to redirect traffic.

“Numerous attack tools are also installed in the process that allows for exploitation of personal computers (PCs), lateral movement across a network, and installation of additional malware. The tools were used to deploy multiple ransomware strains, including BlackBatter and REvil.

“According to ngCERT, the attack has been seen in the US where the USB drives were sent in the mail through the Postal Service and Parcel Service. One type contained a message impersonating the US Department of Health and Human Services and claimed to be a COVID-19 warning. Other malicious USBs were sent in the post with a gift card claiming to be from Amazon.

“However, ngCERT has offered recommendations that will enable corporate and individual networks to mitigate the impact of this new cyber attack and be protected from the ransomware.

“These recommendations include a call on individuals and organisations not to insert USB drives from unknown sources, even if they’re addressed to you or your organization. In addition, if the USB drive comes from a company or a person one is not familiar with and trusts, it is recommended that one contacts the source to confirm they actually sent the USB drive.

“Finally, ngCERT has advised Information and Communication Technology as well as other Internet users to report any incident of system compromises to ngCERT via incident@cert.gov.ng, for technical assistance,” the statement read in part.

Admin

Recent Posts

BREAKING: THE HATCHET PLAN OF THE ENUGU STATE APC TO TAKE OVER THE WARD POLITICAL STRUCTURE OF PDP AND USURP POWER IN 2027

It is a verifiable fact that the Honorable. Minister for Science and Technology, Chief. Engr.…

1 year ago

Outbreak: Phone accessories dealer commits suicide in Kogi

Two months after inferno ravaged the popularly GSM village in Lokoja, the Kogi State capital,…

1 year ago

Man shot dead in Anambra by policeman over N100

  A police operative attached to Otuocha Area Command, Anambra East Local Government Area of…

1 year ago

‘We can no longer feed’ – FCT residents cry out

Many residents of the Federal Capital Territory, FCT, say they are finding it difficult to…

1 year ago

Reps probe $2bn renewable energy grants, investment in Nigeria, invite stakeholders

Following an investigative hearing on the $2 billion renewable energy grants and investments in Nigeria,…

1 year ago

Court grants 76 #EndBadGovernance protesters N760m bail

Justice Obiora Egwuatu of the Federal High Court in Abuja has granted bail of N10…

1 year ago

This website uses cookies.