Africa among regions with highest number of industrial systems under attack in the first half of 2023
Submitted by: MyPressportal TeamIn the first half of 2023 Africa had the highest percentage of ICS computers on which spyware was blocked (9,8%)
JOHANNESBURG, South Africa, September 21, 2023/ -- Malicious objects of all types were detected and blocked on 34% of Industrial Control System (ICS) computers in the first half of 2023, according to the ICS CERT landscape report (https://apo-opa.info/3LwG719) by Kaspersky (www.Kaspersky.co.za). In Africa over this period attacks were detected on 40,3% of ICS computers, placing it in first place among the other regions. The top industries under attack were energy (45,9%), engineering & integration (44%) and building automation (40%). All these attacks were blocked after detection.
ICS computers are used in oil & gas, energy, automotive manufacturing, building automation infrastructures and other spheres to perform a range of operational technology (OT) functions – from the workstations of engineers and operators to supervisory control and data acquisition (SCADA) servers and Human Machine Interface (HMI). Cyberattacks on industrial computers are considered to be extremely dangerous as they may cause material losses and production downtime for the controlled production line and even the facility as a whole. Moreover, industrial enterprises put out of service can seriously undermine a region’s social welfare, ecology and macroeconomics.
An analysis of the most significant and targeted threats detected on ICS computers in selected countries of Africa in the first half of 2023 shows that the threat landscape can vary between countries and between industries due to the differences in the security maturity of different countries/industries and the current focus of threat actors. In South Africa in the first half of 2023 malware was detected and blocked on 29,1% of ICS computers, in Nigeria on 32,6%, in Kenya on 34,5% of machines.
There are different types of cyberthreats that OT-related computers face – malicious scripts, spy trojans, worms, ransomware, and others. In the first half of 2023 Africa had the highest percentage of ICS computers on which spyware was blocked (9,8%). The Middle East and Southeast Asia had similarly high percentages (8,3% and 8,1%). The global average stands at 6,1%.
Africa was also the region with the highest percentage of ICS computers (14,8%) on which attacks from denylisted Internet resources were blocked (these are web resources associated with distributing or controlling malware). The global average is 11,3%.
Viruses and worms spread across ICS networks by means of removable media, shared folders, infected files, such as backups, and network attacks on outdated software. The percentage of ICS computers on which worms were detected was very high in Africa (7% vs. 2,3% global average), making this region the leader by percentage of ICS computers on which threats were detected after removable devices were connected.
“Africa's industrial landscape is diverse, ranging from large-scale mining operations to small-scale agriculture. This means that ICS cybersecurity solutions need to be adaptable to various sectors and technologies. In some regions, legacy ICS systems that lack modern security features are still in use. These systems are often more vulnerable to cyberthreats and require significant upgrades. Lastly, some critical infrastructure in Africa is located in remote areas with limited connectivity, which can make it difficult to monitor and secure ICS assets effectively,” comments Evgeny Goncharov, Head of Kaspersky ICS CERT. “By understanding these risks, organisations can make informed decisions, allocate resources wisely, and efficiently fortify their defenses. In doing so, they not only protect their bottom line but also contribute to a safer and more secure digital ecosystem for all.”
Read more about the ICS threat landscape in the first half of 2023 on the Kaspersky ICS CERT website (https://apo-opa.info/3LwG719).
To keep your OT computers protected from various threats, Kaspersky experts recommend:
- Conducting regular security assessments of OT systems to identify and eliminate possible cyber security issues.
- Establishing continuous vulnerability assessment and triage as a basement for effective vulnerability management process. Dedicated solutions like Kaspersky Industrial CyberSecurity (https://apo-opa.info/451Yguw) may become an efficient assistant and a source of unique actionable information, not fully available in public.
- Performing timely updates for the key components of the enterprise’s OT network; applying security fixes and patches or implementing compensating measures as soon as it is technically possible is crucial for preventing a major incident that might cost millions due to the interruption of the production process.
- Using EDR solutions such as Kaspersky Endpoint Detection and Response (https://apo-opa.info/3OsQQvs) for timely detection of sophisticated threats, investigation, and effective remediation of incidents.
- Improving the response to new and advanced malicious techniques by building and strengthening your teams’ incident prevention, detection, and response skills. Dedicated OT security trainings for IT security teams and OT personnel is one of the key measures helping to achieve this.
Distributed by APO Group on behalf of Kaspersky.
For further information please contact:
Nicole Allman | INK&Co.
This email address is being protected from spambots. You need JavaScript enabled to view it.
Social Media:
Facebook: https://apo-opa.info/3M3uy0L
Twitter: https://apo-opa.info/3OaLeGw
YouTube: https://apo-opa.info/41wO7V6
Instagram: https://apo-opa.info/42BZnRq
Blog: https://apo-opa.info/42Apbxn
About Kaspersky:
Kaspersky is a global cybersecurity and digital privacy company founded in 1997. Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services to protect businesses, critical infrastructure, governments and consumers around the globe. The company’s comprehensive security portfolio includes leading endpoint protection, specialized security products and services, as well as Cyber Immune solutions to fight sophisticated and evolving digital threats. Over 400 million users are protected by Kaspersky technologies and we help over 220,000 corporate clients protect what matters most to them. Learn more at www.Kaspersky.co.za.
SOURCE: Kaspersky
Latest from
- Warc: Podcasts are having a moment - but popularity not translating into ad revenue
- Major showdown in court over African Penguin's future
- Sisi Safety Wear wants to close mining gender gap
- National Basketball Association (NBA) Africa Creates Annual Dikembe Mutombo Humanitarian Award
- Two-Time Women's National Basketball Association (WNBA) All-Star and Basketball Analyst Chiney Ogwumike Named Basketball Africa League Ambassador
- President Cyril Ramaphosa arrives in Addis Ababa, Ethiopia leading the South African delegation to the African Union Summit
- European Union (EU) Awards TZS 17.8 Billion in Grants to Strengthen Civil Society in Tanzania
- Minister Londt welcomes extension of South African Social Security Agency (SASSA)-Postbank card replacement deadline, call for more service points
- Western Cape Department of Local Government helps in securing a safe space for the Nuwerus Crèche
- Disciplined cancer care boosts children's recovery
- Deadline for Sassa card transition extended to 20 March 2025
- 5 Practical small business finance tips for the new fiscal year
- Changes for Ogilvy EMEA and UK on eve of WPP 2024 results
- Samro embraces digital transformation with the new online appointment booking system
- Mall of Africa celebrates launch of new Bridget Jones film with beauty