Kenyan sites at risk
SECURITY| July 24, 2012, 6:24 p.m.
By Semaj Itosno, Nairobi, Kenya
Use of free software without customization is exposing Kenyan websites to hackers.
A new report by Serianu, an IT security consulting firm, has revealed that more than 80% of local websites are built on open source software such as Wordpress, Joomla, Apache and MySQL whose security codes are available online for free.
According to William Makatiani, the managing director at Serianu Ltd, Government websites and banking institutions remain the most vulnerable targets since most of their website are developed externally but they rarely do a check on their security settings or update them.
“During our research, we came across a credit card shop that was selling credit card data issued by banks located in Kenya,” said Makatiani.
The study was done between the months of January and April this year and lists bank accounts, credit and debit card details as the most looked for data by cyber criminals.
Online fraud has been growing steadily in Kenya and commercial banks are estimated to lose Sh3 billion to cyber criminals annually.
Makatiani said unlike other proprietary software whose codes are only available to the vendor and the client, open source software source code is available to the general public for use and/or modification from its original design free of charge.
This provides an opportunity for cyber criminals to send software that has the ability to access computers and steal vital information such as business strategies or business plans, or confidential information from banks, insurance and telecommunication firms.
MORE SECURITY NEWS
Risks of cyber attacks hard to defineIt is extremely hard to apply to the risks caused by the myriad cyber threats out there, as they are hard to define, harder to prevent, and it is almost impossible to accurately assess the cost and damage of a breach once it has taken place, says Intact Software Distribution. Read More
Cyber Security Africa set for EthiopiaThe 2nd Annual Ethiopia Banking & ICT Summit will take place in November 21st, 2014 at Sheraton Hotel, Addis Ababa, Ethiopia. Read More
EFCC searches for $38m bank e-fraudsterNigeria's Economic and Financial Crimes Commission (EFCC) has started a manhunt for a 38-year-old bank worker over the alleged theft of $38 million from his employers by hacking into computer systems. Read More
Financial phishing skyrocketsKaspersky Lab’s experts have reported a substantial increase in the amount of financial phishing in spam globally. Read More
Fortinet: JP Morgan hack has the hallmarks of an APTThe coordinated hacks of JPMorgan Chase and a number of other banks, which was revealed in the global media yesterday, bear all the hallmarks of an APT attack, says Fortinet South Africa. Read More
McAfee names new Regional DirectorMcAfee, part of Intel Security, has announced the appointment of Trevor Coetzee as its new regional director, South Africa and Sub Saharan Africa. Read More
Security professionals slam govt, banks over securityNigeria’s Information Technology System and Security Professional (ITSSP) body says lenders are putting the cart before the horse by not first considering the security of applications before deploying them. Read More
Kaspersky Lab launches free app scanner for AndroidTo safeguard users against a number of Android vulnerabilities discovered in recent months, Kaspersky Lab has released a free mobile application for the platform. Read More
Police claim rise in cyber crimeBotswana Police have indicated that there is marked increase in crimes involving the internet in the country. Read More
Multi-layer security to combat social media attacksEnterprises are vastly underestimating the risk of social media, says Fortinet distributor Networks Unlimited. Read More
FEATURED STORYMFarmer SMS redefines market access for Ugandan farmers
Ugandan smallholder farmers are benefitting from an ambitious innovative ICT mobile phone initiative that offers weather reports and up-to-date market information about changes in prices for agricultural commodities, thus granting them lucrative returns from their farming ventures.
BEST READ NEWS
IN DEPTHiProcure delivers inputs to farmers’ doorsteps using ICTs
An innovation dubbed iProcure is already being used by several agro input firms which are now relying on it to distribute their products to farmers.
COMPANY NEWSSchneider Electric signs exclusive off-grid solar distribution agreement with Zimbabwean firm
Schneider Electric has announced the signing of an exclusive agreement with Samansco, a Zimbabwean renewable energy, back-up power and appropriate technology company.SAP Innovation Helps The Global Fund Fight AIDS, TB and Malaria in Africa
Extending a longstanding partnership, SAP is a founding member of The Global Fund’s new Innovation Coalition to support disease prevention and treatment.