TheCitizen - It's all about you
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials
No Result
View All Result
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials
No Result
View All Result
TheCitizen - It's all about you
No Result
View All Result

Nigerian hackers steal $3bn worldwide – Reports

The Citizen by The Citizen
June 19 2017
in Financial Crimes
A A
0
22
SHARES
734
VIEWS
Share on FacebookShare on Twitter

Nigerian hackers and cyber criminals are being accused of masterminding a grand theft of information and money running into billions of dollars, worldwide.

According to experts, the Nigerians are able to carry out the heist by sending phishing emails to commercial organizations and industrial enterprises, which they later steal dry.

The FBI estimates that these phishing attacks have cost companies over $3 billion. The number of affected companies exceeds 22,143.

Kaspersky Labs, an internet security company said it has found over 500 companies that are under attack in at least 50 countries.

Those under attack are mostly industrial enterprises and large transportation and logistics corporations, based in Germany, UAE, Russia and India.

In a blog post, Kaspersky said the cyber-criminals managed to steal technical drawings, floor plans and diagrams showing the structure of electrical and information networks.

Researchers said that all indications are that these were business email compromise (BEC) attacks that have come to be associated with Nigerian cyber-criminals.

Emails received by victims looked authentic enough to fool people. Some had attachments with names such as “Energy & Industrial Solutions W.L.L_pdf”, “Woodeck Specifications best Prices Quote.uue” and “Saudi Aramco Quotation Request for October 2016”.

These are well crafted emails that look legitimate and are crafted to make the victim open the malicious attachment.

The emails ask the recipients to check information as soon as possible, clarify product pricing or receive goods specified in the delivery note attached. The malicious attachments contain RTF files with an exploit for the CVE-2015-1641 vulnerability.

They may also contain archives of different formats containing malicious executable files or macros and OLE objects designed to download malicious executable files.

Kaspersky discovered that the malicious files are intended to steal confidential data and install stealthy remote administration tools on infected systems.

Using Whois services, Kaspersky found that the domains used to host the malware were registered to residents of Nigeria. Once in, the hackers compromise a legitimate email and change the banking account details.

The malware used in these attacks belonged to families that are popular among cyber-criminals, such as ZeuS, Pony/FareIT, LokiBot, Luminosity RAT, NetWire RAT, HawkEye, ISR Stealer and iSpy keylogger.

”The phishers selected a toolset that included the functionality they needed, choosing from malware available on cyber-criminal forums. At the same time, the malware was packed using VB and .NET packers – a distinct feature of this campaign. To evade detection by security tools, the malicious files were regularly repacked using new modifications of the same packers,” said the researchers.

At least eight different Trojan-Spy and Backdoor families were used in the attacks.

Further research found that the domain names of some of the malware command-and-control servers used by the attackers mimicked domain names used by industrial companies – “more proof that the attacks were primarily targeting industrial companies,” said researchers.

They added that most domains used for malware C&C servers were registered to residents of Nigeria.

Researchers warned that it would be very dangerous if, because of an infection, cyber-criminals were able to gain access to computers that are part of an industrial control system (ICS). “In such cases, they can gain remote access to the ICS and unauthorised control over industrial processes,” said researchers.

Owen Connolly, vice president services (EMEA) at IOActive, told SC Media UK that this attack is not actually targeting industrial control systems or operational technology. “It’s just targeting users that work for large companies. The fact that those companies may also have OT systems could just be coincidence, not correlation,” he said.

Mark James, security specialist at ESET, told SC Media UK that scammers are opportunistic. They understand they need to adapt and will change their tactics to get the best result.

“With the 419 scams being so synonymous with the public, the scope for business users being victims is massive. We also need to consider the scope for larger, single successful attacks reaping the benefits much quicker than the smaller, and often much harder, sells through the public,” he said.

Javvad Malik, security advocate at AlienVault, told SC that organisations dealing with industrial control systems may not be as savvy to scams as financial services, so it could be that the success rate of targeted emails is higher.

“Allowing criminals to make quick money. On the other hand, it could allow criminals to implant malware on industrial control systems, or at least on systems that support the ICS. This can then be allowed for further nefarious purposes such as deploying ransomware – or selling on the access to other criminals or ever nation states,” he said. – Vanguard.

Share9Tweet6
Previous Post

NNPC crashes diesel price nationwide by 42%

Next Post

Police, car dealers to create database for vehicle sales

Related Posts

DSS arrests two dismissed officers for impersonation, fraud
Financial Crimes

DSS arrests two dismissed officers for impersonation, fraud

October 15 2025
Detention: Dasuki seeks intervention of Olanipekun, Agbakoba, Falana, others
Financial Crimes

Court rejects DSS bid to re-admit rejected exhibits against Dasuki

October 15 2025
IMF warns Nigeria to curb inflow of illicit funds
Financial Crimes

IMF warns Nigeria to curb inflow of illicit funds

October 14 2025
Evans trial: Court permits virtual testimonies by witnesses
Financial Crimes

Lagos re-arraigns kidnapper Evans over police officers’ killing

October 13 2025
EFCC probes $6m, £53,000 cash movement at Lagos airport
Financial Crimes

EFCC probes $6m, £53,000 cash movement at Lagos airport

October 12 2025
Brig. Gen. Buba Marwa to deliver Realnews 10th Anniversary Lecture
Financial Crimes

NDLEA denies FG approval for cannabis export

October 9 2025
Next Post
Police IG orders removal of illegal revenue roadblocks nationwide

Police, car dealers to create database for vehicle sales

N-Power: 2017 graduate applicants now 753,307

N-Power: 2017 graduate applicants now 753,307

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

FROM THE GRASSROOTS

Olubadan unveils legal committee to tackle land grabbing

Olubadan unveils legal committee to tackle land grabbing

by The Editor
October 15 2025
0

...

Birnin Gwari needs urgent federal intervention – Emir tells Tinubu

Birnin Gwari needs urgent federal intervention – Emir tells Tinubu

by The Editor
October 13 2025
0

...

Rivers court adjourns hearing on LG poll legitimacy

Rivers court adjourns hearing on LG poll legitimacy

by The Editor
September 16 2025
0

...

Osun households get free food items

Osun League of Imams & Alfas urges Tinubu to intervene in LG withheld funds

by The Editor
August 27 2025
0

...

APPOINTMENTS

Tinubu seeks Omidiran, 28 others’ confirmation as FCC members

Tinubu seeks Omidiran, 28 others’ confirmation as FCC members

by The Editor
October 15 2025
0

...

Okpebholo swears in 19 commissioners, warns against corruption

Okpebholo swears in 19 commissioners, warns against corruption

by The Editor
October 15 2025
0

...

Fubara drops Danagogo, appoints Anabraba as Rivers SSG

Fubara drops Danagogo, appoints Anabraba as Rivers SSG

by The Editor
October 13 2025
0

...

Savannah Energy signs agreement with Chadian govt for new renewable energy projects

Savannah Energy announces board changes, appoints two Nigerians as Independent Non-Executive Directors

by The Editor
October 9 2025
0

...

ODDITIES

Lagos to probe school over alleged sodomy

Father impregnates 15-year-old daughter in Ondo

by The Editor
October 17 2025
0

Court orders exhumation, autopsy of Afriland Towers fire victims

Court orders exhumation, autopsy of Afriland Towers fire victims

by The Editor
October 15 2025
0

Slain husband’s dad forgives Maryam Sanda, backs Tinubu’s pardon

Slain husband’s dad forgives Maryam Sanda, backs Tinubu’s pardon

by The Editor
October 14 2025
0

GLOBAL NEWS

Trump, Putin to meet in Budapest over Ukraine war

Trump, Putin to meet in Budapest over Ukraine war

by The Editor
October 17 2025
0

...

2026 Hajj: Saudi govt approves 66,910 slots for Nigeria

2026 Hajj: Saudi govt approves 66,910 slots for Nigeria

by The Editor
October 17 2025
0

...

Trump persuades India to stop buying Russian oil

Trump persuades India to stop buying Russian oil

by The Editor
October 16 2025
0

...

Former Kenyan Prime Minister Raila Odinga dies in India

Former Kenyan Prime Minister Raila Odinga dies in India

by The Editor
October 15 2025
0

...

US revokes visas of six foreigners for celebrating Charlie Kirk’s assassination

US revokes visas of six foreigners for celebrating Charlie Kirk’s assassination

by The Editor
October 15 2025
0

...

State of the States

21.8% North-East residents HIV positive – NBS …as 16,000 die from HIV complications in Borno

Adamawa records 8,850 new HIV infections in four years

by The Editor
October 17 2025
0

...

Zamfara APC condemns state govt’s mass sacking of civil servants

Zamfara APC condemns state govt’s mass sacking of civil servants

by The Editor
October 14 2025
0

...

Gov. Otti set to build modern fire station in Umuahia

Gov. Otti set to build modern fire station in Umuahia

by The Editor
October 7 2025
0

...

Senator denies bill to rename Kaduna to Zazzau State

Kaduna State pays ₦72,000 minimum wage

by The Editor
September 18 2025
0

...

Plugin Install : Widget Tab Post needs JNews - View Counter to be installed
  • Trending
  • Comments
  • Latest
End female genital mutilation – Punch

End female genital mutilation – Punch

October 17 2025
WAFCON: Gov. Otu gifts Super Falcons star, Miracle Usani, ₦50m, land

WAFCON: Gov. Otu gifts Super Falcons star, Miracle Usani, ₦50m, land

October 17 2025
Nigeria at critical juncture – Vanguard

Nigeria ranks 115th out of 125 countries on Global Hunger Index

October 17 2025
Trump, Putin to meet in Budapest over Ukraine war

Trump, Putin to meet in Budapest over Ukraine war

October 17 2025

EDITORIAL REVIEW

End female genital mutilation – Punch

End female genital mutilation – Punch

by The Editor
October 17 2025
0

Nnaji: Nigeria’s dodgy vetting processes – Punch

Nnaji: Nigeria’s dodgy vetting processes – Punch

by The Editor
October 16 2025
0

Vacations and governance: Why President Tinubu’s trip matters -Guardian

Tinubu, honour promise to ASUU – Punch

by The Editor
October 15 2025
0

The killings in the South East – Thisday

The killings in the South East – Thisday

by The Editor
October 14 2025
0

IOCs: Implement host communities’ projects – Punch

IOCs: Implement host communities’ projects – Punch

by The Editor
October 13 2025
0

Opinion

Tinubu finds his own demons

Next time, Umahi should go to NTA

by The Editor
October 16 2025
0

...

Objections over presidential pardon for grave offenders

Objections over presidential pardon for grave offenders

by The Editor
October 13 2025
0

...

1975 public service purge: What have we learnt?

1975 public service purge: What have we learnt?

by The Editor
September 30 2025
0

...

Tinubu finds his own demons

Nigeria’s state of weakness

by The Editor
September 18 2025
0

...

Plugin Install : Popular Post Widget need JNews - View Counter to be installed
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials

© 2024 TheCitizen Ng. All Rights Reserved.

No Result
View All Result
  • Home
  • Headlines
  • Latest News
  • Governance
  • Business
  • Financial Crimes
  • Opinion
  • Editorials

© 2024 TheCitizen Ng. All Rights Reserved.