News
NCC uncovers Cyber Threats to Windows Platforms, Routers
Nasiru Yusuf
The Computer Security Incidents Response Team (CSIRT) set up by the Nigerian Communications Commission (NCC) for the telecoms sector, has discovered two new separate cyber threats targeting Windows Platforms and a particular kind of routers respectively.
KANO FOCUS reports that the discoveries were made known in two separate advisories released by the cyber-space protection team earlier this week.
The first cyber threat is a ransomeware known as ‘Lokilocker’, which is capable of wiping data from all version of Windows systems or platforms. It causes data loss, and denial of service (DoS), which reduces user’s productivity.
“Lokilocker”, is a relatively new ransomware that has been discovered by security researchers and belonging to the ransomware family. Lokilocker operates by encrypting user files and renders the compromised system useless if the victim does not pay the demanded ransom in time.
To hide the malicious activity, the ransomware displays a fake window update screen, cancel specific processes and services, and completely disables the task manager, windows error reporting, machine firewall and windows defender of the compromised system.
Sadly, it also has in-built processes that prevent data recovery as it deletes backup files, shadow copies, and removes system restore points. It also overwrites the user login note and modifies original equipment manufacturer (OEM) information in the registry of the compromised system.
Thus, the NCC CSIRT states: “To protect against infections by LokiLocker and similar ransomware, the best rule is to always have a backup copy of your data, which should be stored offline,” the advisory stated.
Additionally, according to CSIRT, “all downloads and email attachments should be opened with caution, even if they are from trusted sites or senders. Users should also ensure they attachments are scanned with an up-to-date antimalware solution, before opening.”
The second cyber threat discovered by the NCC CSIRT is a Botnet that targets the Microtik version of Routers. As CSIRT revealed, thousands of routers from Microtik which have been found to be vulnerable are being used to constitute what has been named one of the largest botnets in history
This botnet exploits an already-known vulnerability, which allows unauthenticated remote attackers to read arbitrary files and authenticated remote attackers to write arbitrary files, due to a directory traversal vulnerability in the WinBox interface. The vulnerability which was previously fixed allowed the perpetrators to enslave all the routers and then rent them out as a service.
In accordance with new research published by Avast, a cryptocurrency mining campaign taking advantage of the newly disrupted Glupteba botnet as well as the famed Trickbot malicious software were found to have been disseminated by the very same command-and-control (C2) server. The C2 server functions as botnet-as-a-service, which controls nearly 230,000 vulnerable MicroTik routers. The Botnet, however, has been linked to what is now called the Meris Botnet.
The threat types emanating from the botnet include bypass authentication, data loss, denial of service, remote code execution, sniff password and unauthorized access. These situations result in dangers to victims of this cyber threat including malware distribution, mining cryptocurrency, thereby increasing the use system resources, remote code execution and data theft.
To be protected against this botnet, NCC CISRT asdvised users to update or apply the latest patches to their routers early, set strong router passwords, disable the administration interface of the routers from the public, stay away from illegitimate or cracked software versions of legitimate applications, and use decent antivirus software with in-built web-filtering, and apply the latest patches as soon as they arrive.
SIGNED
Dr. Ikechukwu Adinde
Director, Public Affairs
Headlines
SFH appoints Dayyabu Yusuf to lead strategic health partnerships, RevoHealth HMO
Nasiru Yusuf Ibrahim
The Society for Family Health has appointed Dayyabu Mahmud Yusuf as Group Director, Impact Partnership and Engagement, as well as Managing Director of RevoHealth HMO Ltd., in a move aimed at strengthening healthcare access and sustainable health systems across Nigeria and Africa.
KANO FOCUS reports that the appointment was announced on the organisation’s official Facebook page on Saturday.
According to SFH, the new leadership appointment signals the beginning of a fresh phase focused on improving impact, expanding access to healthcare services, and advancing sustainable health transformation initiatives across the continent.
The organisation stated that the appointment reflects its commitment to building integrated health systems and promoting innovative platforms in healthcare financing, workforce development, advisory services, and sustainable health interventions.
SFH expressed confidence that Yusuf’s leadership would further strengthen the organisation’s impact and deliver lasting value to communities across Nigeria and beyond.
Yusuf is a seasoned public health professional with more than 18 years of experience in the design and implementation of public health, social marketing, and health systems strengthening programmes in Nigeria.
He is widely recognised as a health systems expert, health economist, programme management specialist, and community engagement practitioner, with extensive experience in reproductive, maternal, newborn and child health (RMNCH), HIV/AIDS, malaria, child survival, and nutrition interventions.
He has also built strong technical expertise across the family planning and maternal, newborn and child health continuum, while leading large and complex teams on multiple development programmes.
Yusuf possesses strong advocacy and stakeholder engagement skills, having worked closely with senior government officials, lawmakers, and influential traditional and religious leaders to drive institutional and behavioural changes that support effective programme implementation.
A seasoned trainer, Yusuf has trained various cadres of health professionals and is known for his practical expertise in participatory community engagement approaches.
He holds a degree in Microbiology and a Master’s degree in Health Economics from Bayero University Kano, as well as an MSc in Microbiology from University of Abuja.
Headlines
Kwankwaso commends IGP over probe into Dadiyata’s disappearance
Nasiru Yusuf Ibrahim
A former Governor of Kano State Dr. Rabiu Musa Kwankwaso, has commended the Inspector-General of Police, Olatunji Disu, for ordering a fresh investigation into the disappearance of activist and lecturer Abubakar Idris Dadiyata.
KANO FOCUS reports that Kwankwaso made the remarks in a statement posted on his Facebook page on Saturday following recent testimony by a former aide to an ex-state governor, who allegedly claimed that police officers were responsible for Dadiyata’s disappearance in Kaduna.
Dadiyata, a lecturer and social media commentator, was abducted in 2019, and his whereabouts have remained unknown since then.
According to Kwankwaso, he and his associates have consistently advocated for a thorough investigation into the incident and for those responsible to be brought to justice.
He described the Inspector-General’s directive for a comprehensive investigation as a “decisive and long-overdue action,” expressing hope that the process would uncover the truth behind the disappearance.
The former governor also urged police authorities to place individuals named in the allegations under close surveillance to prevent interference with the investigation.
Kwankwaso further called on the government to ensure that Dadiyata, if found alive, and his family receive adequate compensation for the trauma and hardship they have endured over the years.
He commended members of the public for sustaining advocacy efforts on the case and also praised Abba Hikima Fagge for what he described as his important role in the latest developments surrounding the investigation.
Kwankwaso expressed optimism that the renewed probe would ultimately deliver truth and justice in the case.
News
Cameroon telecom regulator visits NCC for benchmarking exercise
Nasiru Yusuf Ibrahim
The Director General of the Telecommunications Regulatory Board (ART) of the Republic of Cameroon, Philemon Zoo Zame, on Wednesday visited the headquarters of the [Nigerian Communications Commission (NCC) in Abuja for a benchmarking exercise aimed at strengthening regulatory collaboration and knowledge sharing between both countries.
KANO FOCUS reports that during the visit, the Cameroonian telecom regulator met with the Executive Vice Chairman and Chief Executive Officer of NCC, Aminu Maida.
A statement issued by Ayiabari A. Kigbara, Manager, Media Relations, Public Affairs Department of the NCC, said the engagement focused on exchanging ideas and best practices in telecommunications regulation, with emphasis on enhancing efficiency and development within the sector.
