GRTech
DDoS attacks via IoT devices threaten the ongoing development of Fourth Industrial Revolution


Distributed Denial of Service (DDoS) attacks that use Internet of Things devices are a significant threat to the Fourth Industrial Revolution, and the potential it brings to revolutionise productivity and people’s lives in general.
This was proven during the late 2016 DDoS attack largely ascribed to the Mirai botnet, which, unlike other botnets that are typically made of up computers, was composed largely of weaponised Internet of Things (IoT) devices such as DVR players, home routers, air quality monitors and personal surveillance cameras.
This is according to Bryan Hamman, territory manager for sub-Saharan Africa at NETSCOUT Arbor, which specialises in advanced DDoS protection solutions. “The internet is an integral part of life and infrastructure in most countries around the world today,” Hamman says. “A successful DDoS attack aims to disrupt or cause the denial of an online service by overwhelming it with traffic from multiple sources. The DDoS attacks of 21 October 2016, for example, showed just how vulnerable sections of the internet and its global operability are to attack by those of ill intent.
“These attacks, which are largely ascribed to the Mirai botnet and have entered recent history due to the involvement of IoT devices, involved multiple DDoS attacks targeting domain name system (DNS) provider Dyn, whose business ensures that information requests via the internet are delivered to the correct address. The knock-on effect was that major internet platforms and services linked to Dyn – including Twitter, GitHub, Reddit, Pinterest, Etsy, Tumblr, Spotify, PayPal and the PlayStation network – were unavailable to millions of users in Europe and North America for some hours. Consumers were unable to carry out activities like online shopping, social media interaction or listen to music during this enforced downtime – examples which showcase exactly what the Fourth Industrial Revolution is all about, namely the interaction of the physical and digital worlds.”
The Fourth Industrial Revolution is generally understood to be the coming together of physical and digital technologies. It builds on the previous industrial revolutions which each, in their own way and their own times, were seen to increase production of processed items during their eras. In the process, each industrial revolution changed the ways that humans operated in particular spheres, arguably bringing in opportunities for improvements in efficiencies in general, and in some cases even poverty alleviation through the creation of jobs and new systems. The First Industrial Revolution began in the 18th century with the invention of the steam engine; the Second used electricity to create mass production; the Third used electronics and information technology to automate production; and the Fourth is leapfrogging on top of the relatively recent Third to close the gap between our use of the physical and digital world.
Hamman explains, “People are aware that the Fourth Industrial Revolution is bringing change at a rate never seen before. The pace and scale of disruption brought about by connected technology is incredible; almost every industry you can think of is being transformed at an unprecedented speed. While it is true at a societal level that this global-scale of change will likely render some jobs obsolete, it will also create other new jobs during the disruption.
“As with most things, the powers inherent in the Fourth Industrial Revolution can be used for the greater good, or alternatively abused – this is human nature. But on the positive side, the possibilities being brought by the closing of the gap between the physical and digital worlds include changes in commerce, education and healthcare – for example, advances in biomedical sciences can lead to healthier lives and longer life spans https://trailhead.salesforce.com/en/modules/impacts-of-the-fourth-industrial-revolution/units/understand-the-impact-of-the-fourth-industrial-revolution-on-society-and-individuals. I prefer to focus on the ways in which the Fourth Industrial Revolution can be used for positive change.”
NETSCOUT Arbor notes in its 13th Annual Worldwide Infrastructure Security Report (WISR), released earlier this year, that the use of compromised IoT devices to launch DDoS attacks has helped cybercriminals increase the complexity of their assaults. The WISR is based on 390 responses from network operators globally, with more than half of the respondents headquartered and operational in North America. The 13th WISR showed that 33 percent of surveyed organisations had suffered a DDoS attack during 2017 (up from the previous year’s 17 percent). The report notes in its conclusion: “…attackers continue to build and weaponize massive IoT botnets of unprecedented size and capability…. This year, we’ve seen increasing sophistication of IoT-based botnet attack capabilities. These modern botnets are capable of delivering attacks that include application-layer, volumetric and complex multi-vector DDoS attacks.”
In a white paper, ‘IoT DDoS attacks show the stakes have changed’, NETSCOUT Arbor recommends a multi-layered approach to DDoS attack detection and mitigation, to counter-act the multi-vector layering inherent in botnets that are similar to the Mirai botnet, which began operating on 1 August 2016.
Additionally, the paper notes the need for IoT makers to insert some basic security requirements into devices; for IoT operators in enterprises to improve and maintain visibility; for IoT users to take more responsibility for their devices; and for security operators to make sure that security and employee policies reflect and cater for the reality of the widespread use of IoT devices in today’s workplace.
“I view DDoS attacks, such as the 21 October 2016 attacks and the largest DDoS attack ever seen – namely the 1.7 Tbps attack on an American-based service provider during the first week of March 2018, which was foiled by NETSCOUT Arbor – as a threat to the positive possibilities that the Fourth Industrial Revolution could bring about. I therefore urge companies to remain aware of the damage that can be wrought by an undefended DDoS attack, and to get their defences in order,” Hamman concludes.
GRTech
Nigeria’s Biggest Tech Conference Opens in Enugu
Minister Bosun: I’ve never seen anything so big | Mbah: We’re driven by the knowledge that the future is technology, reports SANDRA ANI


The 2025 Enugu Tech Festival being organised by the Enugu State Government kicked off on Wednesday with the Minister of Communications, Innovation, and Digital Economy, Dr. Bosun Tijani, describing it as the biggest technology conference that has ever happened in Nigeria.
Tijani said the Tech Festival, which attracted thousands of youths from within and outside the state, was a major leap for Nigeria’s determination to build a robust digital economy, noting that Enugu State under Governor Peter Mbah, had moved from policy to progress to lead the tech revolution in Nigeria.
This was even as Governor Peter Mbah urged the youths to embrace technology, insisting that the future is technology.
Speaking, the Minister said that the Tech Festival, tagged Coal to Code, fitted into the agenda and activities of the Federal Ministry of Communications, Innovation and Digital Economy, having recognised that the future of digital economy in Nigeria would not only be built in Abuja, but would instead be co-created across all states.
“Enugu is showing how this should and will be done. I have never, never been to a conference on technology in Nigeria that is this big. I founded the first technology hub in Nigeria, the very first in Nigeria. So, I know a thing or two when technology people gather. I can assure you that today, you are part of history because we have never seen anything this big in Nigeria before.
“There is something powerful about your state: the energy, the ambition, the possibilities. Just two years ago, only a few people could imagine this kind of tech momentum. But today, Enugu has not just imagined, Enugu is building it. Under two years, we have seen investment in digital infrastructure, and the innovation ecosystem of the state.
“What is happening today in Enugu is part of something bigger. We are now witnessing a generational rise, not one where people complain and protest, but one where creativity is used to shape the future. Not just with passion, but with precision,” he stated.
While commending the participants for rising to “create the kind of Nigeria the world will pay attention to,” Tijani called for collaboration, commitment, and hard work by all stakeholders to make it happen.
“Progress is not automatic, but needs all of us. It needs the government to continue to be brave. It needs the private sector to invest deeper. It needs mentors, builders, teachers, and it needs leaders,” he concluded.
Speaking, Governor Mbah, while highlighting how his administration had invested in technology to dramatically revolutionise security, land administration, education, among others, noted that the Enugu Tech Festival was part of his government’s wider efforts to build the youth of the state into wealth creators and highly sought-after workforce of tomorrow’s workplace.
“The power of technology and innovation and what we can accomplish is something that I want the youths to be mindful of. If you look at the way things are being done in the world today, we are now talking about an era where people just sit down with great ideas, create platforms where they begin to essentially benefit from that platform.
“An example is the Uber that came and disrupted the city taxi without owning a key. Today, they provide by far the largest traffic just by creating a platform. You can extend that to Airbnb. Without owning a key, these guys have disrupted the business of those who own several brick and mortar houses. You can also extend that to Tesla. That is the power of technology. This shows essentially that technology is where the future is,” he emphasised.
In his remark, the Commissioner for Innovation, Science and Technology, Dr. Lawrence Ezeh, said the Enugu Tech Festival, which would now become an annual event, underscored a paradigm shift from the old Enugu known for coal to one that has become a rising force in Nigeria’s tech-driven future, a beacon of innovation, intellectual capital, digital enterprise, and endless possibilities.
“For decades, our identity was built on coal, a resource that powered Nigeria’s industrial rise. But today, we stand in a different kind of power—the power of knowledge, innovation, and technology,” he stated.
Also at the event were the Minister of Youth Development, Ayodele Olawande; Speaker, Enugu State House of Assembly, Hon. Uchenna Ugwu; former Minister of Science and Technology, Prof. Barth Nnaji; Chairman of Zinox Technical, Leo Stan Ejeh; and the Group Managing Director, Afrinvest, Dr. Ike Chioke, among a host of others.


Governor of Enugu State, Dr Peter Mbah has inaugurated the South East zonal office of the National Information Technology DevelopmentAgency, NITDA, saying it would open a new horizon for the youths of the region and move the nation closer to diversifying the economy.
Commissioning the office located at Nigeria Construction and Furniture Company (NCFC) Building at Onitsha Road, GRA, Enugu, Mbah commended the Minister of Communications, Innovation and Digital Economy, Dr. Bosun Tijani, and the Director-General of NITDA, Kashifu Abdullahi, for the initiative, promising close collaboration with the Ministry and Agency.
“The call to diversify our economy, both at the national and the subnational levels has never been more compelling than now; and there are a few sectors that hold the opportunities for us to accomplish that like the information and technology space.
“But, just having the opportunity without bringing them to fruition won’t just cut it for us. The fact that opportunity exists, we must then take steps; and for me, I think that is what this NITDA presence in Enugu represents.
“It is an opportunity for our teeming young people to have the platform to imbue themselves with lifelong skillsets that would prepare them for the dynamic global workplace of today and tomorrow,” he stated.
Speaking earlier, the Minister of Communications, Innovation, and Digital Economy, expressed delight at what he described as an extraordinary technological revolution in Enugu State, saying the NITDA South East Zonal Office would serve as a permanent bridge between national policy and local potential.
“In just under two years, this state has emerged as one of Nigeria’s most promising frontiers for innovation. What we are witnessing here is not just progress—it is momentum; and I am proud that today, we are adding fuel to that momentum.
“This commissioning of the NITDA Regional Office in Enugu is far more than the opening of a building. It is the establishment of a permanent bridge between national policy and local potential.
“It is a strategic move under the Renewed Hope Agenda of President Bola Ahmed Tinubu — a commitment to decentralising opportunity, deepening inclusion, and unlocking the full power of Nigeria’s digital economy across every region.
“By placing NITDA closer to the people, right here in the South East, we are saying clearly: no region should have to wait for innovation to reach them. Innovation must grow with them.
“This new office will serve as an engine room for digital skills development, through programs like the Three Million Technical Talent initiative; support for startups and indigenous tech solutions; regulatory advisory to help businesses thrive within the frameworks that protect Nigerians; and closer partnerships with state governments, academia, and the private sector. And there is no better place to launch this than in Enugu — a state that is not only dreaming of the future, but building it.
“I want to commend Governor Peter Mbah for proving what determined, technology-focused governance can achieve in such a short time. We are not just here to witness Enugu’s transformation. We are here to amplify it,” he said.
Tijani enjoined the young people of the South East region to grab the opportunities presented by the new office.
“To our young innovators, developers, and entrepreneurs – you now have a home in NITDA. Use it. Grow through it; and let it become the platform from which your ideas reach the world.
“Together, we will ensure that the story of Nigeria’s digital economy is not written from one place — it will be co-authored in every corner of this nation, and Enugu is leading the way,” he added.
The commissioning was also witnessed by the Minister of Youth Development, Ayodele Olawande, among other dignitaries.
GRTech
Identity Management Day: Sophos Warns Against Data Breaches Linked to Identity Theft
REPORTER: Sandra Ani


79% of data breaches are linked to identity theft and cost businesses an average of $4.5 million, according to reports from the Identity Defined Security Alliance (IDSA) and the Ponemon Institute.
Additionally, the 2025 edition of the Sophos Active Adversary Report reveals that the average time between the start of an attack and data exfiltration is only 72.98 hours (3.04 days), while the average time between exfiltration and attack detection is just 2.7 hours.
Cyberattacks are becoming increasingly fast, and the longer a compromised identity remains active, the greater the potential damage.
In light of this, Sophos, one of the world’s leading providers of innovative security solutions designed to neutralize cyberattacks, is taking advantage of Identity Management Day, which takes place on Tuesday, April 8, 2025, to remind businesses of the best practices they should follow to manage and secure digital identities.
Cybercriminals can use a compromised identity to access confidential information, steal data, move laterally within the organization, and launch further attacks.
It is therefore crucial to take immediate action to contain breaches and minimize their consequences.
In this context, automation plays a key role by enabling organizations to respond quickly and effectively to identity-related threats.
Five Automated Measures to Protect Against Identity Theft
1. Disable the User
When an identity breach is detected, one of the first steps is to disable the compromised user account. By preventing the attacker from using the stolen identity to access company systems and data, this measure outpaces the hacker and helps contain the breach.
Automation significantly speeds up this process. With automated response tools, businesses can quickly identify compromised accounts and disable them in real-time. This reduces the attack window and minimizes potential damage.
2. Force Password Reset
Passwords are often the first line of defense against unauthorized access attempts. In the event of an identity breach, it is essential to immediately force a password reset for the compromised account to prevent hackers from using stolen credentials.
Automated rules can be set up to trigger an instant password reset as soon as a breach is detected. This saves time and ensures that the reset process is initiated without delay, reducing the risk of further unauthorized access attempts.
3. Force Multi-Factor Authentication (MFA) Reset
Multi-factor authentication (MFA) adds an extra layer of security by requiring users to enter a verification code in addition to their password. If an identity breach occurs, it is crucial to reset MFA for the compromised account. This means that the user will have to re-authenticate using their MFA tool, which automatically invalidates any stolen authentication tokens the attacker may have acquired.
Automated rules can trigger the refresh of MFA tokens, ensuring that compromised accounts are quickly reauthenticated. This prevents cybercriminals from using stolen authentication tokens to access company systems.
4. Lock the Account
Locking a compromised account prevents hackers from attempting to use it until the issue is resolved. This also gives the organization time to investigate the breach and apply the necessary corrective measures.
Automation streamlines the account locking process, allowing businesses to lock compromised accounts as soon as a breach is detected. This immediate response helps contain the breach and blocks further unauthorized access attempts.
5. Revoke Active Sessions
In addition to disabling the user account and forcing a password reset, it is essential to revoke all active sessions associated with the compromised identity. This ensures that the attacker is immediately logged out of all systems they accessed using stolen credentials.
Automated actions can be configured to revoke active sessions in real-time, instantly disrupting any unauthorized access. This is a critical measure to neutralize the breach and prevent further malicious activity.
For more information, please visit: https://www.secureworks.com/blog/5-critical-response-actions-for-an-identity-breach