NITDA warns Nigerians against new email-based attacks

The National Information Technology Development Agency (NITDA), has warned Nigerians about a cyber threat that involves a new email-based attack from Solarwindhackers.

In a statement signed by the Head Cooperate and External Affairs Department, Mrs Hadiza Umar noted that Microsoft, a world-renown multinational technology company uncovered a widespread malicious email campaign undertaken by the hacking group- NOBELIUM and warned Nigerians not to fall for it.

According to NITDA, “The cybercriminals leveraged the legitimate mass-mailing service, to masquerade as a US-based development organisation and distribute malicious URLs to a wide variety of organisations especially government organisations, non-government organizations (NGOs), think-tanks, military, IT service providers, health technology and research, and telecommunications providers.

“Their antics involve the use of emails claiming to be an alert from USAID about new documents published by former President Donald Trump about ‘election fraud.’ Once users click the link in the email, the URL would direct them to the legitimate Constant Contact Service and then redirect to Nobelium-controlled infrastructure through a URL that delivers a malicious ISO file. This, in turn, enables the criminals to execute further malicious objectives, such as lateral movement, data exfiltration and delivery of additional malware.”

The NITDA, therefore, advised Nigerians to be wary of such criminals masquerading as USAID and follow the following recommendations;

“Turn on cloud-delivered protection in Microsoft Defender Antivirus or the equivalent to cover rapidly evolving attacker tools and technique; Run EDR in block mode to enable antivirus to block malicious artefacts (EDR in block mode works behind the scenes to remediate malicious artefacts that are detected post-breach; enable network protection to prevent applications or users from accessing malicious domains and other malicious content on the Internet; enable investigation and remediation in full automated mode to allow antivirus take immediate action on alerts to resolve breaches

“Also use device discovery to increase your visibility into your network by finding unmanaged devices on your network and onboarding them; enable multifactor authentication (MFA) to mitigate compromised credentials; block all Office applications from creating child processes.”

To report an incident, users are advised to contact NITDA CERRT via email support@cerrt.ng or via telephone +2348178774580.

Felix Oloyede

Felix Oloyede is a Mass Communication graduate with 19 years experience in journalism. He has worked with TheWeek Magazine; Mirror Newspapers; West Africa BusinessNews and BusinessHallmark Newspaper. Oloyede has covered different news beats ranging from crime; arts; politics; commerce and industries to finance and economy. He is an alumnus of Bloomberg Media Initiative Africa. He has also attended different trainings on Media Communication at the Lagos Business School. He is an alumnus of Bloomberg Media Initiative Africa. He has also attended different trainings on Media Communication at the Lagos Business School.

Recent Posts

US authorities slam Air Peace boss, Onyema, with fresh fraud charges

The Chief Executive Officer of Air Peace, Allen Onyema, has been hit with new charges…

2 years ago

Report: NUPRC has not approved $1.3bn Shell Renaissance deal

  Contrary to reports in a section of the media that the Nigerian Upstream Petroleum…

2 years ago

There’s a plan to derail Tinubu’s petroleum industry revolution

Tajudeen Suleiman It was a pleasant shock for me to read the National Bureau of…

2 years ago

NNPCL’s acquisition of OVH: Reps member, Miriam Onuoha, slams Atiku, says oil and gas sector should not be politicised

  A member of the House of Representatives, representing Isiala Mbano / Onuimo / Okigwe…

2 years ago

Fidelity Bank affirms commitment to data protection, strong corporate governance

  Leading financial institution in Nigeria, Fidelity Bank Plc, has assured its customers of unwavering…

2 years ago

NGX rates Fidelity Bank highest on corporate governance

  Fidelity Bank Plc complies with the highest corporate governance standards as the leading commercial…

2 years ago

This website uses cookies.