The Africa Centre for Digital Transformation (ACDT) has issued a warning to banks in Ghana about potential cybercrime threats following a global software failure.
The incident, which occurred on July 19, 2024, involved a defective update from cyber-security firm CrowdStrike, affecting millions of Microsoft Windows devices worldwide.
The software glitch, which lasted for 78 minutes, disrupted various sectors including banking, aviation, and healthcare. Microsoft confirmed that the faulty update impacted 8.5 million Windows devices, leading to widespread system failures. Despite CrowdStrike's rapid response to rectify the issue, the damage was extensive, causing numerous flight cancellations and operational disruptions at banks.
In light of these events, the ACDT in a statement issued today cautioned financial institutions in Ghana about a fake CrowdStrike update being promoted through a phishing site (portalintranetgrupobbva[.]com).
This fraudulent update installs the Remcos Remote Access Trojan (RAT), posing significant security risks. The phishing site masquerades as a BBVA intranet portal, misleading banks into downloading malicious software that can compromise their systems.
Additionally, the ACDT's Cyber Security unit has identified a new group of cyber attackers distributing a data-wiping malware under the guise of a CrowdStrike update. This malware overwrites files with zero bytes, rendering systems inoperable and reporting the damage back to the attackers.
The ACDT urges banks, savings and loans institutions, and rural banks in Ghana to be vigilant, especially those using CrowdStrike and Microsoft Azure antivirus solutions. Threat actors are impersonating CrowdStrike by sending emails from the domain ‘crowdstrike.com.vc’, claiming to offer a tool to restore Windows systems.
To mitigate these risks, the ACDT recommends several proactive measures:
- Activate Backup Systems and Redundancies: Switch to backup servers and data centres if primary systems are affected.
- Implement Business Continuity Plans (BCP): Ensure all employees understand their roles during IT outages.
- Enhance Communication: Maintain clear communication with customers regarding outages and resolutions.
- Engage Incident Response Teams: Deploy dedicated teams to address and resolve the outage.
- Monitor Systems and Security: Continuously check IT systems for anomalies or threats.
- Conduct Post-Outage Analysis: Perform thorough analysis and reporting of the outage's cause and impact.
- Customer Support and Assurance: Provide additional support to reassure customers about data security.
- Review and Update Contingency Plans: Regularly update contingency plans based on lessons learned.
- Collaborate with Industry Partners: Share information and best practices within the industry.
- Invest in IT Resilience: Enhance IT resilience through robust disaster recovery solutions and diversified cloud services.
The statement said by taking these steps, banks in Ghana can safeguard their operations, maintain customer trust, and bolster their preparedness for future incidents.
Latest Stories
-
Former US Vice-President Dick Cheney to vote for Kamala Harris
7 mins -
If there’s an industry for special effects makeup, we’ll get support – Kruz K
15 mins -
Why Ghana’s “galamsey” fight has become a waste of time
21 mins -
Low vaccination rate sparks concerns in Volta Region as health officials urge mass immunization
9 hours -
“If you see something, say something” – Globeserve Ministries advocates against child slavery at Adidome conference
9 hours -
PURC engages southern Volta consumers on consumer rights and utility services
9 hours -
Anny Osabutey: Even the devil rested
9 hours -
Ghana’s AI Revolution: Unlocking the future of industry and innovation
10 hours -
The Future of Epidemic Control: Africa’s AI-driven public health revolution
10 hours -
Ghana’s Gold Gamble: How illegal mining threatens our future and global relations
11 hours -
NDC not ready for elections – Evans Nimako over demand for audit of voters register
11 hours -
David Asante set to contest 2024 election as Nkwakaw MP withdraws on health grounds
11 hours -
We have no interest in demolishing property at Cantonments, Labone – Office of the VP
11 hours -
NDC annuls Amenfi Central parliamentary primaries; sets date for rerun
12 hours -
National Junior Speller premieres Sept. 7 on Joy Prime
12 hours