CYBER CRIME & CYBER SECURITY
TRENDS IN AFRICA
33
Figure 10. Percentage of Attacks Originating from Africa with Global Comparison—2016
Anonymous open proxy activity detected
97%
3%
Bash CGI Environment Variable CVE-2014-6271 Attack
1%
99%
Generic SSH Brute Force Attack
1%
99%
Fake Scan Webpage
<1%
99%
Microsoft Windows LSASS Buffer Overrun Attack
97%
3%
DNS Amplification Attack
1%
99%
OpenSSL TLS 'heartbeat' Extension Information Disclosure
1%
99%
Generic Wordpress Multiple Security Vulnerabilities
1%
99%
Wordpress Arbitrary File Download
<1%
99%
Unix/Linux HTTP Server Security Bypass
1%
99%
0%
20%
40%
Africa
60%
80%
100%
Rest of the World
Top Attacks Targeting Africa
During the reporting period, there were 1.9 million attack incidents over 378 different attack signatures
targeting Africa. This accounted for 1% of the global attacks. The top attack targeting Africa during the
reporting period was the Microsoft Windows .lnk file code execution attack with 255,408 incidents, accounting for 13% of the total (see Table 9 and Figure 11).
The Microsoft Windows .lnk file code execution attack signature detects attacker’s attempts to exploit a
known vulnerability in Microsoft Windows when handling LNK or PIF files. Successful exploits could allow an
attacker to completely compromise the affected computer.
Table 9. Top 10 Attacks Targeting Africa—2016
ATTACK
RANK
PERCENTAGE
WITHIN AFRICA
GLOBAL
RANK
GLOBAL
PERCENTAGE
Microsoft Windows .lnk file code execution
1
13%
16
1%
Fake Scan Webpage
2
10%
5
5%
Generic W32.Mabezat Attack
3
10%
53
<1%
Fake Scan Webpage Attack
4
7%
1
21%
Malicious JavaScript Redirection
5
5%
8
2%
Fake Browser Update
6
4%
10
2%
Mass Injection Website
7
4%
13
2%
Nuclear Exploit Kit Redirect
8
4%
14
1%
Malicious File Download Request
9
4%
6
4%
Bash CGI Environment Variable CVE-2014-6271 Attack
10
3%
4
6%