TheCitizen - It's all about you
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials
No Result
View All Result
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials
No Result
View All Result
TheCitizen - It's all about you
No Result
View All Result

Nigerian hackers steal $3bn worldwide – Reports

The Citizen by The Citizen
June 19 2017
in Financial Crimes
A A
0

Nigerian hackers and cyber criminals are being accused of masterminding a grand theft of information and money running into billions of dollars, worldwide.

According to experts, the Nigerians are able to carry out the heist by sending phishing emails to commercial organizations and industrial enterprises, which they later steal dry.

The FBI estimates that these phishing attacks have cost companies over $3 billion. The number of affected companies exceeds 22,143.

Kaspersky Labs, an internet security company said it has found over 500 companies that are under attack in at least 50 countries.

Those under attack are mostly industrial enterprises and large transportation and logistics corporations, based in Germany, UAE, Russia and India.

In a blog post, Kaspersky said the cyber-criminals managed to steal technical drawings, floor plans and diagrams showing the structure of electrical and information networks.

Researchers said that all indications are that these were business email compromise (BEC) attacks that have come to be associated with Nigerian cyber-criminals.

Emails received by victims looked authentic enough to fool people. Some had attachments with names such as “Energy & Industrial Solutions W.L.L_pdf”, “Woodeck Specifications best Prices Quote.uue” and “Saudi Aramco Quotation Request for October 2016”.

These are well crafted emails that look legitimate and are crafted to make the victim open the malicious attachment.

The emails ask the recipients to check information as soon as possible, clarify product pricing or receive goods specified in the delivery note attached. The malicious attachments contain RTF files with an exploit for the CVE-2015-1641 vulnerability.

They may also contain archives of different formats containing malicious executable files or macros and OLE objects designed to download malicious executable files.

Kaspersky discovered that the malicious files are intended to steal confidential data and install stealthy remote administration tools on infected systems.

Using Whois services, Kaspersky found that the domains used to host the malware were registered to residents of Nigeria. Once in, the hackers compromise a legitimate email and change the banking account details.

The malware used in these attacks belonged to families that are popular among cyber-criminals, such as ZeuS, Pony/FareIT, LokiBot, Luminosity RAT, NetWire RAT, HawkEye, ISR Stealer and iSpy keylogger.

”The phishers selected a toolset that included the functionality they needed, choosing from malware available on cyber-criminal forums. At the same time, the malware was packed using VB and .NET packers – a distinct feature of this campaign. To evade detection by security tools, the malicious files were regularly repacked using new modifications of the same packers,” said the researchers.

At least eight different Trojan-Spy and Backdoor families were used in the attacks.

Further research found that the domain names of some of the malware command-and-control servers used by the attackers mimicked domain names used by industrial companies – “more proof that the attacks were primarily targeting industrial companies,” said researchers.

They added that most domains used for malware C&C servers were registered to residents of Nigeria.

Researchers warned that it would be very dangerous if, because of an infection, cyber-criminals were able to gain access to computers that are part of an industrial control system (ICS). “In such cases, they can gain remote access to the ICS and unauthorised control over industrial processes,” said researchers.

Owen Connolly, vice president services (EMEA) at IOActive, told SC Media UK that this attack is not actually targeting industrial control systems or operational technology. “It’s just targeting users that work for large companies. The fact that those companies may also have OT systems could just be coincidence, not correlation,” he said.

Mark James, security specialist at ESET, told SC Media UK that scammers are opportunistic. They understand they need to adapt and will change their tactics to get the best result.

“With the 419 scams being so synonymous with the public, the scope for business users being victims is massive. We also need to consider the scope for larger, single successful attacks reaping the benefits much quicker than the smaller, and often much harder, sells through the public,” he said.

Javvad Malik, security advocate at AlienVault, told SC that organisations dealing with industrial control systems may not be as savvy to scams as financial services, so it could be that the success rate of targeted emails is higher.

“Allowing criminals to make quick money. On the other hand, it could allow criminals to implant malware on industrial control systems, or at least on systems that support the ICS. This can then be allowed for further nefarious purposes such as deploying ransomware – or selling on the access to other criminals or ever nation states,” he said. – Vanguard.

Previous Post

NNPC crashes diesel price nationwide by 42%

Next Post

Police, car dealers to create database for vehicle sales

Related Posts

Police detain officer over alleged ₦10,000 extortion in Lagos
Financial Crimes

Police detain officer over alleged ₦10,000 extortion in Lagos

April 22 2026
EFCC decries murder of officer, labels suspect as armed Internet fraudster
Financial Crimes

EFCC alerts Nigerians to rise in impersonation scams, fake raids

April 21 2026
NDLEA intercepts Europe-bound cocaine consignments
Financial Crimes

NDLEA secures 974 drug convictions

April 18 2026
Financial Crimes

El-Rufai gets bail, court adjourns to April 21

April 14 2026
Immigration boss suspends Lagos-Seme border commanders over extortion allegations
Financial Crimes

Immigration boss suspends Lagos-Seme border commanders over extortion allegations

April 10 2026
EFCC debunks ‘wanted’ poster of comedian Sabinus
Financial Crimes

EFCC debunks ‘wanted’ poster of comedian Sabinus

April 9 2026
Next Post
Police IG orders removal of illegal revenue roadblocks nationwide

Police, car dealers to create database for vehicle sales

N-Power: 2017 graduate applicants now 753,307

N-Power: 2017 graduate applicants now 753,307

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

FROM THE GRASSROOTS

Service Chiefs: Let the changes count – Punch

Tinubu approves ₦17bn grassroots devt fund for 8,804 wards

by The Editor
April 22 2026
0

...

Police launch manhunt for killers of Imo traditional ruler

Police launch manhunt for killers of Imo traditional ruler

by The Editor
April 11 2026
0

...

Lassa fever deaths rise in Nigeria

Lassa fever deaths rise in Nigeria

by The Editor
April 9 2026
0

...

Oyo govt installs Sen Alli, two Ibadan High Chiefs as monarchs in absentia

Oyo govt installs Sen Alli, two Ibadan High Chiefs as monarchs in absentia

by The Editor
April 3 2026
0

...

APPOINTMENTS

Tinubu appoints NECO, NBTE chairmen, names poly rector, renews library DG tenure

Tinubu appoints NECO, NBTE chairmen, names poly rector, renews library DG tenure

by The Editor
April 22 2026
0

...

416 nurses, midwives get automatic appointments in Yobe

416 nurses, midwives get automatic appointments in Yobe

by The Editor
April 8 2026
0

...

Tinubu renews Bugaje’s appointment as NBTE boss

Tinubu renews Bugaje’s appointment as NBTE boss

by The Editor
April 2 2026
0

...

Kwara governor congratulates new CAF General Secretary

Kwara governor congratulates new CAF General Secretary

by The Editor
April 1 2026
0

...

ODDITIES

Nigeria’s ambassador-designate dies before assumption of office

Nigeria’s ambassador-designate dies before assumption of office

by The Editor
April 22 2026
0

Bwala, Hasan and the art of the political interview

I had throat surgery after Al Jazeera interview – Daniel Bwala

by The Editor
April 11 2026
0

Robbers cut off teacher’s hand in Kano

Robbers cut off teacher’s hand in Kano

by The Editor
April 9 2026
0

GLOBAL NEWS

White House gunman was targeting Trump team, says official

White House gunman was targeting Trump team, says official

by The Editor
April 26 2026
0

...

Ghana summons South Africa’s envoy over attacks on foreigners

Ghana summons South Africa’s envoy over attacks on foreigners

by The Editor
April 26 2026
0

...

Mali defence minister dies as army, rebels clash

Mali defence minister dies as army, rebels clash

by The Editor
April 26 2026
0

...

US senator accuses Nigerian officials of complicity in killings of Christians

US senator accuses Nigerian officials of complicity in killings of Christians

by The Editor
April 22 2026
0

...

Iran warns US military vessels, others to avoid Strait of Hormuz

Iran military command closes Strait of Hormuz again

by The Editor
April 18 2026
0

...

State of the States

Ondo commences 2025 OSOPADEC scholarship, bursary for students

Ondo commences 2025 OSOPADEC scholarship, bursary for students

by The Editor
April 21 2026
0

...

Delta govt urges youths to join Army

Delta govt urges youths to join Army

by The Editor
April 11 2026
0

...

21,452 applicants jostle for 1,000 rural teaching Jobs in Nasarawa

21,452 applicants jostle for 1,000 rural teaching Jobs in Nasarawa

by The Editor
April 10 2026
0

...

Police begin statewide offensive after deadly Kebbi attacks

Police begin statewide offensive after deadly Kebbi attacks

by The Editor
April 10 2026
0

...

Plugin Install : Widget Tab Post needs JNews - View Counter to be installed
  • Trending
  • Comments
  • Latest
Opposition parties unveil plans to field one presidential candidate in 2027

Opposition parties unveil plans to field one presidential candidate in 2027

April 26 2026
Ex-Minister Tuggar declares for Bauchi guber race

Ex-Minister Tuggar declares for Bauchi guber race

April 26 2026
2027: Tinubu’s team unveils digital platform to strengthen grassroots mobilisation

2027: Tinubu’s team unveils digital platform to strengthen grassroots mobilisation

April 26 2026
NCC blames diesel disruption for poor telephone services in Abuja

NCC calls for effective protection of IP rights for economic growth

April 26 2026

EDITORIAL REVIEW

Curfew in Abuja today for LG council elections

Hidden cost of elections – Punch

by The Editor
April 17 2026
0

Oil prices jump back toward $100 on Mideast ceasefire doubts

As Nigeria moves away from oil dependency – Punch

by The Editor
April 13 2026
0

Easter gets bloodier – Punch

Easter gets bloodier – Punch

by The Editor
April 12 2026
0

Security chiefs’ discordant tunes – Punch

Security chiefs’ discordant tunes – Punch

by The Editor
April 10 2026
0

NASS: Withdraw MDPA amendment bill – Punch

NASS: Withdraw MDPA amendment bill – Punch

by The Editor
April 9 2026
0

Opinion

Even INEC admonishes the media?

Even INEC admonishes the media?

by The Editor
April 12 2026
0

...

Enugu: Gov Mbah presents N521.5bn budget for 2024

Mbah: From contested mandate to constructive governance in Enugu

by The Editor
April 9 2026
0

...

Tinubu finds his own demons

How will Tinubu campaign in Plateau State?

by The Editor
April 9 2026
0

...

Bwala, Hasan and the art of the political interview

Bwala, Hasan and the art of the political interview

by The Editor
April 6 2026
0

...

Plugin Install : Popular Post Widget need JNews - View Counter to be installed
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials

© 2026 TheCitizen Ng. All Rights Reserved.

No Result
View All Result
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials

© 2026 TheCitizen Ng. All Rights Reserved.