Nigeria: Rise in cyberattacks threatens critical infrastructure


The acceleration of digital transformation is increasingly exposing African countries to cyberattacks. The Nigerian Computer Security Incident Response Team (ngCERT) has published a note.

Nigeria is facing an intensification of cyber threats targeting its digital infrastructure. The ngCERT warned last week of a significant increase in distributed denial-of-service (DDoS) attacks, targeting both government platforms and private sector services.

These attacks, which involve overwhelming a system with a massive influx of traffic, can disrupt or render essential services unavailable. According to the agency, cybercriminals are now using more sophisticated methods, combining multiple attack vectors and exploiting networks of compromised devices, known as botnets. Some attacks also rely on amplification techniques to significantly increase the volume of malicious traffic directed at their targets. This evolution makes the attacks more difficult to detect and contain.

“These attacks are increasingly multi-vector and can be associated with other malicious activities, which poses significant risks to national resilience and economic stability,” said ngCERT.

This surge in DDoS attacks is raising increasing concerns. Service disruptions can affect strategic sectors such as finance, telecommunications, and public services, with direct consequences for economic activity and user trust. They can also serve as a diversion for more complex cyberattacks, such as data theft or system intrusions.

Beyond DDoS attacks, Deloitte warned in its “Nigeria Cybersecurity Outlook 2026” report, published in January, of an expected increase in ransomware and phishing attacks this year. The firm attributes this trend to the democratization of tools once reserved for experienced cybercriminals, now accessible to less skilled attackers. SMEs, schools, hospitals, and public administrations are particularly vulnerable, especially when cybersecurity budgets remain limited.

In response to these threats, ngCERT recommends that organizations activate their incident response procedures, collaborate with their internet service providers to filter malicious traffic, and deploy anti-DDoS solutions. The agency also emphasizes the importance of updating systems, including applying patches for several known vulnerabilities, strengthening infrastructure, and continuously monitoring traffic. ngCERT further recommends that all incidents be reported to it.

According to the International Telecommunication Union (ITU), Nigeria was in the Tier 3 category of the global cybersecurity index in 2024, with a score of 82.4 out of 100. However, the country has since multiplied its initiatives and strategic partnerships to improve its posture in this area.

Source: Agence Ecofin

Back