Geocrook – Africa
Netcrook Logo

Geocrook news from Africa

AI Proxy Trojan: Malicious PyPI Package Hijacks University Chatbot, Steals Prompts

06 Apr 2026 news 🌍 Africa

A seemingly trustworthy AI proxy library on PyPI, hermes-px, was actually a sophisticated Trojan. It hijacked a university’s private AI service, injected stolen Anthropic Claude prompts, and sent users’ conversations straight to a cybercriminal’s database. Learn how this attack unfolded and what it means for open-source security.

🏴‍☠️ Shadow Finance: Payload Ransomware Breaches United Finance Egypt

03 Apr 2026 news 🌍 Africa

United Finance Egypt has been named by the Payload ransomware group as its latest victim, signaling escalating risks for the region’s financial sector. Details remain scarce, but the attack highlights the urgent need for enhanced cybersecurity.

🏴‍☠️ Worldleaks Ransomware Attack Hits Nigerian Oil Giant Orient Petroleum

28 Mar 2026 news 🌍 Africa

Worldleaks, a notorious ransomware group, has claimed a cyberattack on Orient Petroleum, a leading Nigerian oil and gas company. The incident highlights escalating cyber threats facing Africa’s critical energy infrastructure.

🏴‍☠️ ETFSA Breach: Incransom Ransomware Threatens South African Investors

26 Mar 2026 news 🌍 Africa

ETFSA, a prominent South African investment platform, has been breached by the Incransom ransomware group. With threats to leak sensitive client data, the incident exposes critical vulnerabilities in the nation’s financial sector.

Shadow Brokers: How Secret Middlemen Fuel the Global Spyware Boom

26 Mar 2026 news 🌍 Africa

Hidden intermediaries—brokers, resellers, and contractors—are supercharging the global spyware market, making it opaque and nearly impossible to regulate. This investigation reveals how these shadowy actors enable the unchecked spread of surveillance tools worldwide.

Resume Ruse: Fake CVs Fuel Credential Theft and Crypto Mining in French Enterprises

25 Mar 2026 news 🌍 Africa

A sophisticated attack called FAUX#ELEVATE is targeting French-speaking enterprises using fake resumes, stealing credentials, and hijacking systems for cryptocurrency mining—all in under 30 seconds.

Libyan Oil Refinery Targeted by Sophisticated AsyncRAT Cyber Espionage Campaign

24 Mar 2026 news 🌍 Africa

A state-sponsored cyber espionage campaign has infiltrated Libyan oil, telecom, and government networks using AsyncRAT malware and cunning phishing lures, exposing the vulnerability of energy infrastructure during geopolitical crises.

Espionage in the Oil Fields: Cyber Spies Target Libya’s Energy Sector

23 Mar 2026 news 🌍 Africa

A sophisticated cyber espionage campaign has breached Libyan oil and telecom networks, using spear-phishing and AsyncRAT malware to gather intelligence amid rising geopolitical tensions.

🏴‍☠️ Nightspire's Ransomware Gambit: Semenya Furumele Consulting Engineers Under Digital Siege

22 Mar 2026 news 🌍 Africa

Nightspire ransomware group has listed Semenya Furumele Consulting Engineers as its latest victim, but with zero data stolen and no clear ransom demands, the attack raises new questions about cybercriminal strategy and the evolving threat landscape.

🏴‍☠️ Shadow in the Mountains: Elundini Ransomware Intrusion Exposed

21 Mar 2026 news 🌍 Africa

A ransomware attack on South Africa’s Elundini Municipality highlights the vulnerability of rural governments to cybercrime. Discover how the breach unfolded, what data is at risk, and why small towns are now prime targets for digital extortion.