Connect with us

News

NCC-CSIRT Identifies Two Cyber Vulnerabilities

Published

on

The Nigerian Communications Commission’s Cyber Security Incident Response Team (NCC-CSIRT) has independently identified two cyber vulnerabilities and advised Nigerian telecom consumers on the measures to be taken to get protected from the cyber-attacks.

The CSIRT, in its first-ever security advisories less than three months after its creation, has solely identified the two cyber-attacks targeting the consumers and proffer solutions that can help telecom consumers from falling victims to the two cyber vulnerabilities.

The first is described as Juice Jacking, which can gain access into consumers’ devices when charging mobile phones at public charging stations and it applies to all mobile phones. The other is a Facebook for Android Friend Acceptance Vulnerability, which targets only Android Operating System.

According to CSIRT security Advisory 0001 released on January 26, 2022, with Juice Jacking, attackers have found a new way to gain unauthorized entry into unsuspecting mobile phone users devices when they charge their mobile phones at public charging stations.

Many public spaces, restaurants, malls and even in the public trains do offer complementary services to their customers in a bid to enhance customer services, one of which is providing charging ports or sockets.

However, an attacker can leverage this courtesy to load a payload in the charging station or on the cables they would leave plugged in at the stations.

Once unsuspecting persons plug their phones at the charging station or the cable left by the attacker, the payload is automatically downloaded on the victims’ phone. This payload then gives the attacker remote access to the mobile phone, allowing them to monitor data transmitted as text, or audio using the microphone. The attacker can even watch the victim in real time if the victims’ camera is not covered. The attacker is also given full access to the gallery and also to the phone’s Global Positioning System (GPS) location.

When an attacker gains access to a user’s Mobile phone, he gets remote access to the User’s phone which leads to breach in Confidentiality, Violation of Data Integrity and bypass of Authentication Mechanisms. Symptoms of attack may include sudden spike in battery consumption, device operating slower than usual, apps taking a long time to load, and when they load they crash frequently and cause abnormal data usage.

The NCC-CSIRT, however, proffered solutions to this attack to include using ‘charging only USB cable’, to avoid Universal Serial Bus (USB) data connection; using one’s AC charging adaptor in public space; and not granting trust to portable devices prompt for USB data connection.

Other preventive measures against Juice Jacking include installing Antivirus and updating them to the latest definitions always; keeping mobile devices up to date with the latest patches; using one’s own power bank; keeping mobile phone off when charging in public places; as well as ensuring use of one’s own charger, if one must charge in public.

On the other hand, the NCC-CSIRT Advisory 0001 of January 27, 2022, warns that Facebook for Android is vulnerable to a permission issue which gives privilege to anyone with physical access to the android device to accept friend requests without unlocking the phone. The products affected include Versions 329.0.0.29.120 of Android OS.

With this, the attacker will be able to add the victim as a friend and collect personal information of the victim, such as Email, Date of Birth, Check-ins, Mobile phone number, Address, Pictures and other information that the victim may have shared, which would only be visible to his/her friends.

However, to be protected from the Facebook-associated vulnerability, NCC-CSIRT in the security advisory recommends to users to disable the feature from their device’s lock screen notification settings.

The NCC-CSIRT was inaugurated in October, 2021 to provide guidance and direction for the constituents in dealing with issues relating to the security of critical infrastructure in their possession, and periodically assess, review and collate the threat landscape, risks, and opportunities affecting the communications sector, in order to provide advice to relevant stakeholders in those regards.

As the telecoms-industry specific intervention, the objective of which aligns with the objective of the National Cybersecurity Policy and Strategy (NCPS) document published by the Office of the National Security Adviser (ONSA), the NCC-CSIRT ensures continuous improvement of processes and communication frameworks to guarantee secure and collaborative exchange of timely information while responding to cyber threats within the sector.

In recent times, NCC-CSIRT has raised series of cyber-vulnerability awareness based on security advisories it receives from the Nigerian Cybersecurity Emergency Response Team (ngCERT), which is the national body for the implementation of the NCPS objective. However, Juice Jacking and Facebook for Android Friend Acceptance Vulnerabilities are the two first-ever cyber vulnerabilities published by the NCC-CSIRT.

Continue Reading

News

Gov Mbah Inaugurates Committee to End Gender-Based Violence in Enugu

Published

on

The Enugu State government has inaugurated a steering committee to eliminate Gender-Based Violence, GBV, in the state, declaring zero tolerance for the social malaise.

The inauguration took place at the Government House Enugu.

The panel, which is chaired by the Commissioner for Children, Gender Affairs and Social Development, Mrs. Ngozi Enih, draws its membership from the Nigeria Police Force, Ministry of Agriculture and Agro Industrialisation, Ministry of Local Government, Rural Development and Chieftaincy Affairs, Ministry of Human Development and Poverty Reduction, Ministry of Trade, Investment and Industry, Ministry of Justice, Ministry of Health, Ministry of Education as well as the Civil Society.

Inaugurating the panel known as the Steering Committee for Strengthening Institutional and Community Responses to End Gender-Based Violence/Domestication of Enugu State Gender Policy using the Oputa Panel approach, Governor Peter Mbah restated his administration’s commitment to not bringing perpetrators of GBV to book, but also putting in place proactive measures – activities, infrastructure, and systems in place to prevent them.

Mbah, who was represented by the Secretary to the State Government, Prof. Chidiebere Onyia, said, “We take gender-based violence seriously. We have zero tolerance for it, and in Enugu State, we are ready to go the extra mile to deal with it.

“If you notice, the government has selected people that are very committed to this goal. This is not an activity where we just want to check-off the list. We will track this. We will monitor this, and we will have quarterly engagements on the successes that this particular committee has achieved in terms of reference that we are going to send.

“We will tighten those terms of reference indicators, so that we monitor what we are doing both in terms of cost input and the value added. It’s very important to us. Many people will be involved – civil society, the police and various ministries.”

He however, said that the effort was to protect everyone, men and women alike, as GBV was not restricted to any gender.

“The whole idea is to hold people responsible that are involved in matters relating to gender violence and deter people that by culture or by association get involved in that, protect women, protect our children, and in the case of violence against men, protect our men because most times we misconstrue gender violence to mean women, but it can also be men too.

“We encourage our men to speak out and to make sure they understand that the policy that Enugu State is soon going to domesticate is for everyone, and not only for the female gender,” he stated.

In her remark, Mrs. Enih, explained that the Oputa Panel approach was inspired by the need to cover all local peculiarities in domesticating the policy on GBV, restarting government’s confidence in the members of the panel.

“The approach we are going to use is the Oputa Panel approach, and in the Oputa Panel approach, we are going to tour the 17 Local Government Areas to get firsthand information about what our people are going through because policy is meant for the people, and a policy should suit the people.

“Again, every community has its peculiar problems, so that’s why the government decided that if we have to domesticate the gender policy, we have to hear from the people who own the policy and know the changes that they desire to see. That is the reason we are using this approach.

“The committee members are to also serve as judges. As we gather this information from our people, we will come back to tailor it in a way to suit the people of Enugu State, and then our policy is ready.

“We want the people to know that there is a gender policy for them. I can assure you that when the people are aware that there is such a policy, they will seek for the enforcement of that policy. So, this is not going to be one of those policies that will just lie on the shelf,” she said.

Continue Reading

News

Emulate Christ’s virtues, Glo urges Christians at Easter

Reporter: Sandra Ani

Published

on

Glo and Globacom
Globacom

Digital solutions provider, Globacom, has congratulated Christians in Nigeria on this year’s Easter celebration, and urged them to emulate the noble qualities of Jesus Christ.  

The company, in a goodwill message to the Christian faithful in the country, lauded their perseverance through the Lenten period which preceded Easter. It enjoined them to always promote the ideals of selflessness, love and peace among all as a way of demonstrating the virtues of the exemplary life of Jesus Christ. 

“Peace, love and sacrifice are the central message of Easter. Christ offered himself in atonement for the sins of the world and he lived a life which made Him an eternal symbol of peace and goodwill for mankind”, Globacom added. 

The company enjoined all Nigerians to share in the lessons of promoting selflessness, a necessary ingredient in the growth and development of every society. It also enjoined all Nigerians to join hands to make Nigeria a better place for all. 

Easter is celebrated yearly at the end of the Lenten season of fasting and prayer considered as a ritual of purification for the Christian faithful. It also precedes the crucifixion of the Lord Jesus Christ on Good Friday and His eventual resurrection on Easter Sunday.

The company assured its customers of seamless voice, data and Short Messaging Service (SMS) during and after the Easter celebrations, while urging them to avail themselves of the various data and voice offerings on the network.

Continue Reading

News

NUJ at 70: Private Broadcast Members Congratulate Union

Reporter: Ikenna Oluka

Published

on

NUJ at 70
NUJ

The Guild of Private Broadcast Managers  has extended its heartfelt congratulations to the Nigeria Union of Journalists (NUJ) as it celebrates its 70th Anniversary.

In a congratulatory message signed by the Guild’s National President, Ambassador Patrick Uzoyi-Peters, JP MNGRM, the guild described the milestone as a testament to the NUJ’s unwavering commitment to upholding press freedom, journalistic integrity, and the advancement of democracy in Nigeria.

“For seven decades, the NUJ has played a pivotal role in shaping the media landscape, advocating for the rights and welfare of journalists, and ensuring that the voice of the people remains strong and unyielding. Your resilience, professionalism, and dedication to ethical journalism have been instrumental in fostering transparency, accountability, and national development”.

Celebrating this historic achievement, the Guild’s President, Uzoyi-Peters recognized the sacrifices and contributions of journalists across the nation who work tirelessly to inform, educate, and empower society.

The Guild reiterated it commitment towards collaborating with the NUJ in promoting responsible journalism and strengthening the media industry for the greater good.

While wishing the NUJ continued success, growth, and greater impact in the years ahead, President Uzoyi-Peters prayed that the anniversary serve as a renewed call to uphold the principles of truth, fairness, and press freedom in our collective pursuit of a more informed and just society.

Continue Reading

Trending