Back to advisories
High
1 min read
Addressing Threats to Our Educational and Government Websites
Our analysis reveals that threat groups specializing in website defacement and backdoor access are targeting the educational and government sectors.
Severity: HIGH
Published: June 20, 2024
Reference: WHNG-ADV-20240620-51689151
Alert: Addressing Threats to Our Educational and Government Websites
Threat Summary
Our analysis reveals that threat groups specializing in website defacement and backdoor access are actively targeting the educational and government sectors in Nigeria.
Attack Vectors Observed
- Exploitation of unpatched CMS vulnerabilities
- SQL injection attacks
- Cross-site scripting (XSS) leading to account compromise
Affected Sectors
| Sector | Risk Level |
|---|---|
| Education (.edu.ng) | High |
| Government (.gov.ng) | Critical |
| State Governments | High |
Recommendations
- Audit all public-facing web applications
- Update CMS platforms and plugins
- Implement Web Application Firewall (WAF)
- Enable multi-factor authentication
WhiteHat NG Security Alert