Today's Bulletin: February 21, 2026

More results...

Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Filter by Categories
Africacom
AfricaCom 2024
AfricaCom 2025
AI
Apps
Apps
Arabsat
Banking
Broadcast
Cabsat
CABSAT
Cloud
Column
Content
Corona
Cryptocurrency
DTT
eCommerce
Editorial
Education
Entertainment
Events
Fintech
Fixed
Gitex
Gitex Africa
Gitex Africa 2025
GSMA Cape Town
Healthcare
IBC
Industry Voices
Infrastructure
IoT
MNVO Nation Africa
Mobile
Mobile Payments
Music
MWC Barcelona
MWC Barcelona 2025
MWC Barcelona 2026
MWC Kigali
MWC Kigali 2025
News
Online
Opinion Piece
Orbiting Innovations
Podcast
Q&A
Satellite
Security
Software
Startups
Streaming
Technology
TechTalks
TechTalkThursday
Telecoms
Utilities
Video Interview
Follow us

Kenya Records Over 842 Million Cyber Threats in Q3 2025, Advisories Surge

December 11, 2025
2 min read

The majority of detected threats were linked to inadequate system patching, limited user awareness of social engineering tactics, and the increasing use of AI and machine learning by malicious actors.

The Communications Authority of Kenya’s National KE-CIRT/CC recorded over 842 million cyber threat events between July and September 2025, representing an 81.64% decrease compared to the previous quarter. During the same period, the Authority issued 19,951,546 cyber threat advisories, a 15.53% increase from April–June 2025. The majority of detected threats were linked to inadequate system patching, limited user awareness of social engineering tactics, and the increasing use of AI and machine learning by malicious actors. The advisories emphasized regular patching, implementation of Multi-Factor Authentication (MFA), strong password policies, and properly configured firewalls and antivirus software.

Globally, the cybersecurity landscape remained heightened and increasingly sophisticated. Threats were largely driven by ransomware, Distributed Denial-of-Service (DDoS) attacks, and social engineering, often leveraging AI, large language models, and deepfakes. Critical Information Infrastructure (CII) across sectors such as e-government, ICT and telecommunications, and banking and finance continued to be prime targets. Emerging risks included Advanced Persistent Threats (APTs), supply chain attacks, and exploitation of zero-day vulnerabilities. The National KE-CIRT/CC observed a strong alignment between global and national cyber threat tactics, techniques, and procedures (TTPs).

In Kenya, the most prevalent threat vectors were System Attacks, with 776,542,757 incidents detected, followed by Malware Attacks (31,676,444) and Brute Force Attacks (18,811,738). Despite this, the most frequent advisories were issued for Web Application Attacks (9,357,296) and System Attacks (7,456,782). Key targets included end-user devices, Internet of Things (IoT) devices, web applications, and networking devices. The industries most affected were Internet Service Providers (ISPs), cloud service providers, government institutions, and academia.

The TechAfrica News Podcast

Follow us on LinkedIn

Newsletter signup

Sign up for our weekly newsletter and get the latest industry insights right in your inbox!

Please wait...

Thank you for sign up!