News
NCC uncovers Cyber Threats to Windows Platforms, Routers
Nasiru Yusuf
The Computer Security Incidents Response Team (CSIRT) set up by the Nigerian Communications Commission (NCC) for the telecoms sector, has discovered two new separate cyber threats targeting Windows Platforms and a particular kind of routers respectively.
KANO FOCUS reports that the discoveries were made known in two separate advisories released by the cyber-space protection team earlier this week.
The first cyber threat is a ransomeware known as ‘Lokilocker’, which is capable of wiping data from all version of Windows systems or platforms. It causes data loss, and denial of service (DoS), which reduces user’s productivity.
“Lokilocker”, is a relatively new ransomware that has been discovered by security researchers and belonging to the ransomware family. Lokilocker operates by encrypting user files and renders the compromised system useless if the victim does not pay the demanded ransom in time.
To hide the malicious activity, the ransomware displays a fake window update screen, cancel specific processes and services, and completely disables the task manager, windows error reporting, machine firewall and windows defender of the compromised system.
Sadly, it also has in-built processes that prevent data recovery as it deletes backup files, shadow copies, and removes system restore points. It also overwrites the user login note and modifies original equipment manufacturer (OEM) information in the registry of the compromised system.
Thus, the NCC CSIRT states: “To protect against infections by LokiLocker and similar ransomware, the best rule is to always have a backup copy of your data, which should be stored offline,” the advisory stated.
Additionally, according to CSIRT, “all downloads and email attachments should be opened with caution, even if they are from trusted sites or senders. Users should also ensure they attachments are scanned with an up-to-date antimalware solution, before opening.”
The second cyber threat discovered by the NCC CSIRT is a Botnet that targets the Microtik version of Routers. As CSIRT revealed, thousands of routers from Microtik which have been found to be vulnerable are being used to constitute what has been named one of the largest botnets in history
This botnet exploits an already-known vulnerability, which allows unauthenticated remote attackers to read arbitrary files and authenticated remote attackers to write arbitrary files, due to a directory traversal vulnerability in the WinBox interface. The vulnerability which was previously fixed allowed the perpetrators to enslave all the routers and then rent them out as a service.
In accordance with new research published by Avast, a cryptocurrency mining campaign taking advantage of the newly disrupted Glupteba botnet as well as the famed Trickbot malicious software were found to have been disseminated by the very same command-and-control (C2) server. The C2 server functions as botnet-as-a-service, which controls nearly 230,000 vulnerable MicroTik routers. The Botnet, however, has been linked to what is now called the Meris Botnet.
The threat types emanating from the botnet include bypass authentication, data loss, denial of service, remote code execution, sniff password and unauthorized access. These situations result in dangers to victims of this cyber threat including malware distribution, mining cryptocurrency, thereby increasing the use system resources, remote code execution and data theft.
To be protected against this botnet, NCC CISRT asdvised users to update or apply the latest patches to their routers early, set strong router passwords, disable the administration interface of the routers from the public, stay away from illegitimate or cracked software versions of legitimate applications, and use decent antivirus software with in-built web-filtering, and apply the latest patches as soon as they arrive.
SIGNED
Dr. Ikechukwu Adinde
Director, Public Affairs
Headlines
Road Accident: Governor Yusuf to Construct Bridge in Imawa, to Enhance Road Safety
Kano State Governor, Alhaji Abba Kabir Yusuf, has announced his decision to embark on the construction of a new bridge in the town of Imawa, located within Kura Local Government Area of the state.
In a statement issued by governor’s spokesperson Sunusi Bature Dawkin Tofa on Friday said the initiative is aimed at mitigating the frequent accidents that have plagued the area, particularly along the busy Kano-Zaria express way where such incidents have become all too common.
The decision to build the bridge follows a tragic accident in which a driver struck and killed three people, causing widespread devastation in the community.
The incident occurred shortly after the Friday Jumu’ah prayers, when a vehicle veered out of control and struck seven pedestrians.
Sadly, three of the victims succumbed to their injuries, while the other four sustained varying degrees of injuries.
Governor Yusuf expressed his deep condolences to the families affected by this tragic event and emphasized the urgent need for infrastructure improvement to prevent further loss of life.
The construction of the bridge is expected to enhance road safety, ease traffic flow, and provide a safer passage for both pedestrians and motorists in the area.
“The Kano State Government remains committed to ensuring the safety and well-being of its citizens, and this project represents a significant step toward achieving that goal.”
Headlines
Governor Yusuf Reopens Kano Driving Institute After Eight Years of Neglect
Governor Abba Kabir Yusuf has officially reopened the Kano State Driving Institute, reinstating its academic and practical programme after eight years of neglect under the previous administration.
This was contained in a statement issued by governor’s spokesperson Sunusi Bature Dawkin Tofa on Friday.
Originally established during Dr. Rabiu Musa Kwankwaso’s second term as part of a broader strategic transport ecosystem, the institute was designed to produce professional and licensed drivers equipped with state-of-the-art training.
Unfortunately, the facility was shut down for the entirety of the last administration’s eight-year tenure, leaving it in a state of disrepair.
Speaking at the reopening ceremony, where 250 youths were offered enrollment forms, Governor Yusuf expressed his dismay over the impact of the institute’s prolonged closure.
He emphasized his administration’s commitment to revitalizing the centre, aiming to restore it as a premier institution for professional driver training and licensing.
“The Institute was conceived to create job opportunities for our youth, it was established by Dr. Rabiu Musa Kwankwaso to enhance road safety and provide young people with the skills to become professional drivers.” He said.
“Unfortunately, the previous administration abandoned it for eight years, causing significant harm to our youth who could have benefited from this initiative.” He added.”
Governor Yusuf further highlighted that the revitalized institute will not only teach safe driving but also contribute to reducing road accidents and boosting the state’s transportation sector.
He called on stakeholders in the transportation industry to support the institute by providing employment opportunities for its graduates.
He also assured that his administration would provide all necessary resources to ensure the institute’s success and urged the newly enrolled 250 youths to take full advantage of the opportunity, stressing the importance of responsibility and dedication in their training.
According to the governor, the reopening marks a new beginning for the Kano State Driving Institute, positioning it as a key player in the professional development of the state’s transportation workforce.
Headlines
Kano govt cautions private schools against excessive fees
Nasiru Yusuf Ibrahim
The government has introduced new guidelines for fee increment.
Kano State Government has prohibited private and voluntary schools from arbitrarily increasing fees and forcing parents to purchase materials directly from the schools.
KANO FOCUS reports that Executive Secretary of the Kano State Private and Voluntary Institution’s Board( KSPVIB,) Comrade Baba Abubakar Umar, gave the warning in an interview with journalists.
The Executive Secretary said that some schools have been taking advantage of parents through hidden charges and exorbitant fees.
He said to address this issue, the board has introduced new guidelines.
According to him, “Schools must convene a Parents-Teachers Association (PTA) meeting to discuss any fee increments”.
He also stated that school must then write to the board seeking approval for the increase, attaching the attendance sheet from the PTA meeting.
He added that”At least two-thirds of parents must be present at the PTA meeting”
Comrade Abubakar dated that, the board has received complaints from parents who were charged excessive fees or amounts different from what was initially agreed upon.
He therefore disclosed that despite the current economic situation, schools must be realistic and fair in their charges.
“The board will work with relevant authorities to prosecute schools that operate illegally or evade taxes”
He however maintained that the board is committed to ensuring that schools provide safe learning environments and employ qualified teachers.
“Parents are encouraged to report any schools with substandard teaching or unsafe conditions”
Comrade Abubakar emphasised that, new census forms will be distributed to private and voluntary schools to ensure accurate data collection and effective monitoring. Saying that the board remains open to dialogue and discussions with schools willing to comply with the law.
He commended Governor Abba Kabir Yusuf for his commitment to education, allocating 30% of the state’s budget to the sector and declaring a state of emergency.