CYBER CRIME & CYBER SECURITY TRENDS IN AFRICA 33 Figure 10. Percentage of Attacks Originating from Africa with Global Comparison—2016 Anonymous open proxy activity detected 97% 3% Bash CGI Environment Variable CVE-2014-6271 Attack 1% 99% Generic SSH Brute Force Attack 1% 99% Fake Scan Webpage <1% 99% Microsoft Windows LSASS Buffer Overrun Attack 97% 3% DNS Amplification Attack 1% 99% OpenSSL TLS 'heartbeat' Extension Information Disclosure 1% 99% Generic Wordpress Multiple Security Vulnerabilities 1% 99% Wordpress Arbitrary File Download <1% 99% Unix/Linux HTTP Server Security Bypass 1% 99% 0% 20% 40%  Africa 60% 80% 100%  Rest of the World Top Attacks Targeting Africa During the reporting period, there were 1.9 million attack incidents over 378 different attack signatures targeting Africa. This accounted for 1% of the global attacks. The top attack targeting Africa during the reporting period was the Microsoft Windows .lnk file code execution attack with 255,408 incidents, accounting for 13% of the total (see Table 9 and Figure 11). The Microsoft Windows .lnk file code execution attack signature detects attacker’s attempts to exploit a known vulnerability in Microsoft Windows when handling LNK or PIF files. Successful exploits could allow an attacker to completely compromise the affected computer. Table 9. Top 10 Attacks Targeting Africa—2016 ATTACK RANK PERCENTAGE WITHIN AFRICA GLOBAL RANK GLOBAL PERCENTAGE Microsoft Windows .lnk file code execution 1 13% 16 1% Fake Scan Webpage 2 10% 5 5% Generic W32.Mabezat Attack 3 10% 53 <1% Fake Scan Webpage Attack 4 7% 1 21% Malicious JavaScript Redirection 5 5% 8 2% Fake Browser Update 6 4% 10 2% Mass Injection Website 7 4% 13 2% Nuclear Exploit Kit Redirect 8 4% 14 1% Malicious File Download Request 9 4% 6 4% Bash CGI Environment Variable CVE-2014-6271 Attack 10 3% 4 6%

Select target paragraph3