By Simpson Global Media News Desk
The Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT) has issued a fresh cybersecurity advisory to telecommunications service providers over reported Russian-linked disinformation and influence campaigns targeting Africa’s information space, including Nigeria.
The advisory, dated October 2, 2026, warns that the reported operations can combine social-media activity, online platforms, local influencers, digital content creators, artificial-intelligence-generated material and other internet infrastructure to spread narratives while concealing their reported foreign origins.
The NCC-CSIRT classified the potential damage as high and the probability as high, and advised telecommunications operators to increase monitoring of their networks and internet-facing systems, preserve relevant evidence and promptly report suspicious activity.
The warning comes at a time when Nigerians are increasingly dependent on digital platforms for communication, information, commerce and public discussion.
It also arrives ahead of another election cycle in Nigeria, although the NCC advisory is framed as a cybersecurity and information-security warning rather than an accusation that any particular political group, candidate or Nigerian telecommunications company is participating in such activity.
According to the NCC-CSIRT, the reported campaigns were identified in a broader assessment by the Collaboration on International ICT Policy for East and Southern Africa (CIPESA), cited through an alert from the Office of the Secretary to the Government of the Federation.
The assessment reportedly identified at least 80 Russian-linked information manipulation campaigns across more than 22 African countries in 2024, with Nigeria among the countries identified as affected.
The advisory does not say that every suspicious online narrative in Nigeria is foreign-sponsored.
Instead, it asks telecommunications providers to improve their ability to detect potentially coordinated activity and preserve evidence that could assist further investigation.
That distinction is important because disinformation, misinformation, political disagreement, legitimate criticism and ordinary online activity can look similar at first glance.
The technical challenge is therefore not simply removing information.
It is identifying coordinated malicious behaviour while maintaining lawful and legitimate communications.
What the NCC Advisory Says
The NCC-CSIRT advisory, identified as NCC-CSIRT-2026-037, is directed principally at Nigerian telecommunications service providers.
The team says the reported campaigns can use local influencers, bloggers, journalists, activists, content creators and online platforms to distribute narratives whose foreign sponsorship may be concealed. It also points to social-media accounts, Telegram channels, websites and other digital infrastructure, including AI-generated or manipulated content.
The advisory identifies several categories of potential threats.
These include foreign information manipulation and influence, disinformation campaigns, coordinated inauthentic behaviour, social engineering and influence operations, AI-generated or manipulated content, malicious online infrastructure and possible abuse of telecommunications resources.
The NCC-CSIRT also lists possible election-related information manipulation among the threat types.
That is particularly relevant to telecommunications companies because digital networks form the infrastructure through which social-media platforms, messaging services, websites and other online systems are accessed.
The commission is not saying that telecom operators are themselves responsible for the content circulating through those platforms.
Rather, the warning concerns the networks and internet-facing infrastructure through which malicious campaigns may operate.
Why Telecommunications Operators Matter
Telecommunications companies occupy a central position in Nigeria's digital ecosystem.
Mobile networks connect millions of subscribers to the internet.
Internet service providers connect organisations and households to online services.
Data centres, cloud systems and communications infrastructure support the digital operations of banks, businesses, government institutions, schools, hospitals and technology companies.
The NCC's own organisational structure reflects this broad responsibility.
Its technical departments cover areas including network standards, emerging technologies, cybersecurity, internet governance, spectrum and engineering.
The commission's Information Technology Department also includes a Network Infrastructure and Security Management Unit and a Security Management Unit.
Its New Media and Information Security Department has dedicated functions covering cybersecurity, new technology assessment and internet governance. The department was established in response to challenges created by the rapid growth of internet and new-media technologies.
The NCC-CSIRT is specifically responsible for responding to reported incidents affecting the telecommunications industry, monitoring threats at national and sectoral levels, providing early warnings to service providers and supporting investigations and resilience measures.
This institutional structure means that a warning about information manipulation can have a technical dimension even when the underlying activity involves content.
A coordinated influence operation may require accounts, websites, messaging channels, internet infrastructure, compromised systems or other digital resources.
Telecommunications providers can therefore play an important role in detecting unusual activity and preserving information that investigators may later need.
The Difference Between Disinformation and Misinformation
One of the central challenges in the digital information environment is distinguishing different kinds of false or misleading material.
Misinformation generally refers to false information shared without necessarily intending to deceive.
Disinformation refers to deliberately deceptive or misleading information intended to influence perceptions or behaviour.
A coordinated influence operation can involve both authentic information and fabricated material.
For example, an operation might take a genuine public concern and attach a false explanation to it.
It might use a real event but introduce fabricated photographs.
It might create a fictional expert and give that person apparently authoritative credentials.
It might also amplify genuine social-media discussions to make a particular narrative appear more widespread than it actually is.
The NCC-CSIRT advisory focuses on the possibility that digital infrastructure can be used to support such coordinated activity.
That means the technological response cannot depend solely on judging whether an individual post is true or false.
Investigators may also need to examine how accounts interact, how websites are connected, whether identical material is distributed through coordinated channels and whether there are technical indicators linking seemingly unrelated activity.
AI Changes the Information Environment
Artificial intelligence has added another layer to the challenge.
The NCC-CSIRT specifically identifies AI-generated and manipulated content as part of the reported threat environment.
Generative AI can produce written material, images, audio and video at much greater speed than traditional content-production methods.
This does not mean that every AI-generated item is malicious.
AI has legitimate uses in journalism, education, business, research, entertainment and government.
The concern arises when synthetic material is deliberately presented as authentic in order to deceive audiences.
A fabricated image can be presented as a photograph.
A synthetic voice can be made to resemble a real person.
A manipulated video can create the appearance that someone made a statement they never made.
A fictional profile can be given an apparently credible professional background.
These techniques can make it more difficult for ordinary users to establish whether a piece of content is authentic.
The Africa Center for Strategic Studies, in a separate September 2026 analysis of Nigeria's information environment, documented examples of foreign-linked influence activity involving AI-generated content and fabricated personas. It reported that AI had been used within a Russia-origin influence network to produce material associated with fictitious commentators.
That analysis is separate from the NCC-CSIRT advisory, but it illustrates why AI-generated content has become part of the wider cybersecurity discussion.
Fake Experts and Synthetic Personas
One method described by the Africa Center involves the creation of apparently independent personalities whose identities are difficult for audiences to verify.
The centre reported that a Russia-origin influence network targeting Nigeria and other African countries used generative AI to create content and assets for fabricated personas.
It cited the example of a fictitious commentator named “Dr. Manuel Godsin”, whose identity and academic credentials were reportedly fabricated.
The analysis said AI-generated geopolitical commentary connected to that persona appeared on multiple African websites.
Such operations can be difficult to identify because the content may appear to have been produced by a local or independent commentator.
A reader who encounters one article might not know that the same material or persona is appearing elsewhere.
That is why network-level analysis matters.
Investigators can look for patterns across domains, accounts, publication schedules, language, repeated wording, links and other indicators.
The NCC-CSIRT advisory similarly encourages telecommunications operators to strengthen their detection and monitoring capabilities rather than treating individual pieces of suspicious content in isolation.
The Role of Local Influencers
The NCC advisory says reported campaigns may use local influencers and digital content creators.
The reference to local actors is important because influence campaigns can become more effective when messages are distributed through people or platforms that audiences already regard as familiar.
A message delivered by a person speaking a local language or addressing an issue familiar to a particular community may appear more authentic than a message coming directly from an unknown foreign source.
The Africa Center's September analysis also described alleged recruitment of Nigerian influencers into foreign-linked influence operations and reported examples involving Hausa-language social-media content.
Such claims require careful attribution because identifying the source of online content can be difficult.
A Nigerian influencer discussing an international issue is not automatically participating in a foreign influence operation.
Likewise, sharing content from a foreign source does not by itself establish coordination.
Investigators generally need additional evidence showing that an account was knowingly recruited, compensated, directed or otherwise coordinated as part of an influence operation.
The distinction is essential for avoiding false accusations.
Why Evidence Preservation Matters
The NCC-CSIRT specifically advises telecom operators to preserve logs and evidence associated with suspicious activities, in line with legal and regulatory requirements.
Digital evidence can disappear quickly.
Websites can be taken offline.
Social-media accounts can be deleted.
Posts can be edited.
Domains can change hosting providers.
Messaging accounts can disappear.
Network records can also have limited retention periods.
Preserving relevant logs can therefore help investigators establish timelines and connections.
For example, technical records may help determine when an account interacted with a particular service or whether multiple systems were communicating with suspicious infrastructure.
The preservation of evidence does not itself establish wrongdoing.
It creates the possibility for appropriate authorities to investigate activity more effectively.
No Specific Indicators of Compromise Listed
The NCC-CSIRT advisory makes an important technical qualification.
It states that no specific technical Indicators of Compromise (IoCs) have been provided in the advisory.
Indicators of compromise can include technical clues such as suspicious internet addresses, malicious domains, file signatures, unusual network behaviour or other identifiable artefacts associated with a cyber incident.
Without such indicators, operators cannot simply search their networks for a single list of known malicious addresses and assume the problem has been identified.
Instead, the NCC-CSIRT recommends broader monitoring and situational awareness.
This includes watching network and internet-facing systems, improving detection capabilities for phishing and impersonation, preserving evidence and using threat intelligence from trusted authorities.
That approach places greater emphasis on behavioural and contextual detection.
Strengthening Network Monitoring
The advisory asks telecommunications operators to enhance monitoring of networks, internet-facing systems and security telemetry.
Network monitoring allows operators to observe unusual activity that may indicate a security problem.
This can include unexpected traffic patterns, unusual connections, repeated attempts to access certain systems or activity that differs significantly from normal behaviour.
Security telemetry can provide additional information about what is happening across a network.
For telecommunications companies, monitoring is particularly complex because their systems handle enormous volumes of legitimate traffic.
A suspicious activity signal can therefore be difficult to distinguish from normal internet behaviour.
This makes automation, threat intelligence and experienced cybersecurity teams important components of modern telecommunications security.
The NCC-CSIRT also recommends maintaining accurate asset inventories of critical network infrastructure and internet-facing resources.
Knowing what systems exist and which ones are exposed to the internet is a basic requirement for effective security management.
An organisation cannot adequately protect infrastructure that it does not know it has.
Phishing and Impersonation Risks
The advisory also calls for stronger detection of phishing, impersonation and social engineering.
These techniques are particularly relevant because influence campaigns and conventional cybercrime can overlap.
A deceptive campaign might begin with false information but eventually direct users to a malicious website.
A fake profile might attempt to obtain credentials.
A fraudulent message might impersonate a trusted institution.
A manipulated social-media narrative might be used to encourage users to visit a particular website.
The NCC-CSIRT therefore includes phishing, fraud and impersonation among the potential consequences of information manipulation campaigns.
This is one reason why cybersecurity and information integrity are increasingly connected.
The same infrastructure used to distribute misleading information can sometimes be used to facilitate more conventional cybercrime.
Potential Impact on Critical Information Infrastructure
The NCC-CSIRT warns that foreign information manipulation could potentially affect critical national information infrastructure, telecommunications services and associated online platforms.
Critical information infrastructure refers broadly to systems and services whose disruption can have significant consequences for society or the economy.
Telecommunications infrastructure is important because many other sectors depend on it.
Banks need communications networks.
Hospitals need connectivity.
Government agencies depend on online systems.
Businesses use digital platforms to communicate with customers and suppliers.
Emergency services rely on telecommunications.
If digital trust declines or networks are disrupted, the consequences can extend beyond the technology sector.
The NCC's warning therefore places information manipulation within a broader digital-resilience framework.
The Trust Problem
One of the most important potential consequences identified by the NCC-CSIRT is loss of trust in institutions.
Digital platforms have become major sources of news and information for many Nigerians.
When users repeatedly encounter false or manipulated material, it can become harder to distinguish reliable information from deceptive content.
That can create uncertainty even around legitimate communications.
For telecommunications companies, this can become a customer-trust issue.
A subscriber who receives a genuine emergency notification may question whether it is authentic.
A bank's legitimate security warning may be confused with a scam.
A government announcement may be falsely reproduced by an impersonator.
A technology company's customer-support account may be copied by a fraudulent profile.
As the digital environment becomes more complicated, verifying the source of information becomes increasingly important.
Nigeria's Growing Digital Dependence
The warning comes against the background of Nigeria's expanding digital economy.
Mobile connectivity, digital payments, cloud services, e-commerce, online education and digital public services have become increasingly important to everyday economic activity.
The country's technology regulators and government agencies have simultaneously been working to expand connectivity, digital infrastructure and digital skills.
The NCC's own technical standards department monitors telecommunications operators' performance through network quality indicators and maintains ongoing engagement with network operators.
The commission's cybersecurity responsibilities therefore exist alongside its broader telecommunications regulatory role.
The more dependent the economy becomes on connected systems, the greater the importance of maintaining their resilience.
Information Security Is Now a Telecommunications Issue
Historically, telecommunications regulation often focused heavily on network coverage, quality of service, spectrum and infrastructure.
Cybersecurity has increasingly become part of the same conversation.
A modern telecommunications network is not simply a collection of physical towers and cables.
It includes software, routing systems, data centres, cloud services, authentication systems, databases and other digital components.
The security of those components can affect the availability and reliability of communications.
The NCC's creation and operation of a dedicated CSIRT reflects this change.
The team works with mobile network operators, internet service providers and other telecommunications stakeholders on computer-security incidents.
Its role includes early warning, incident analysis, technical investigations and support for infrastructure resilience.
The latest advisory is therefore part of a broader move towards continuous digital-threat monitoring.
What Operators Are Being Asked to Do
The NCC-CSIRT lists several mitigation measures.
Telecommunications providers are encouraged to improve network and internet-facing-system monitoring.
They are asked to maintain accurate inventories of critical infrastructure.
They should strengthen detection of phishing, impersonation, social engineering, deceptive content and suspicious online infrastructure.
They should preserve relevant logs and evidence.
They should use threat intelligence from the NCC-CSIRT and other trusted authorities.
And they should improve coordination between security operations centres, NCC-CSIRT, fraud-management teams and network-operations teams.
The recommendations are designed to shorten the time between detection and response.
That can be particularly important when suspicious activity crosses organisational boundaries.
A telecommunications provider may detect a technical signal that becomes more meaningful when combined with information from another provider or national cybersecurity authority.
Information sharing can therefore help build a broader picture.
Coordination Between Technical Teams
The NCC-CSIRT's recommendation to improve coordination among different operational teams reflects the complexity of modern cyber incidents.
A security operations centre may identify unusual network behaviour.
A fraud-management team may notice a sudden increase in suspicious customer complaints.
Network operations may see unusual traffic.
A cybersecurity team may identify a suspicious domain.
The information may appear unrelated until the teams compare their observations.
The NCC-CSIRT is encouraging operators to create mechanisms through which these signals can be assessed together.
That type of coordination can also improve incident response.
If a suspicious infrastructure is identified, network teams can assess whether it is interacting with their systems while cybersecurity specialists investigate the technical characteristics.
The Role of Threat Intelligence
Threat intelligence is another major part of the NCC's recommendations.
Threat intelligence involves collecting and analysing information about potential cyber threats and using it to improve defensive decisions.
For telecommunications companies, this can include information about malicious domains, emerging attack techniques, suspicious infrastructure and patterns observed by other organisations.
The value of shared intelligence is that no single company sees the entire internet.
One operator may encounter a threat before another.
Sharing appropriate information can allow other providers to prepare before they encounter the same activity.
The NCC-CSIRT is positioned to serve as a coordination point within the Nigerian telecommunications sector.
The Election-Year Dimension
The advisory refers to Nigeria's approaching electoral cycle as one reason for heightened vigilance.
Election periods can generate unusually high volumes of online discussion.
Political campaigns, public debates, breaking news and social-media activity can produce large amounts of rapidly circulating information.
That environment can create opportunities for both legitimate political communication and deceptive influence operations.
The NCC-CSIRT's warning should therefore be understood as a preparedness measure.
It does not establish that a particular election has been targeted by a specific foreign operation.
It identifies a potential category of risk and asks telecommunications operators to be prepared to detect and report suspicious activity.
The distinction is especially important because cybersecurity measures should not be confused with restrictions on lawful political expression.
The technological objective is to identify malicious infrastructure and coordinated abuse, not to determine which political views are acceptable.
Protecting Legitimate Digital Expression
The challenge of combating disinformation is partly technical and partly institutional.
A system designed to identify suspicious activity must avoid treating every controversial opinion as malicious.
People can legitimately disagree.
Journalists can publish criticism.
Researchers can challenge official claims.
Citizens can share political commentary.
Content can be inaccurate without being part of a foreign influence campaign.
The technical response should therefore focus on evidence of coordinated manipulation, malicious infrastructure, impersonation, fraud or other identifiable security threats.
The NCC advisory itself uses cautious language, referring to reported campaigns and potential consequences rather than declaring that all suspicious content originates from a foreign actor.
That distinction allows cybersecurity agencies to investigate potential threats while leaving questions of attribution to evidence-based assessment.
What the Africa Center Has Reported
A separate September 29 report by the Africa Center for Strategic Studies described Nigeria as facing multiple coordinated and deceptive foreign information campaigns.
The organisation reported activity involving Russia and other foreign actors and described alleged use of fake personas, manipulated content, local influencers and online networks.
The report also discussed alleged Chinese-linked influence activity and other networks operating in Nigeria's information environment.
These are findings and assessments of the Africa Center, not independent conclusions of the Nigerian Communications Commission.
The NCC's October advisory cites a separate CIPESA assessment conveyed through the Office of the Secretary to the Government of the Federation.
The convergence of these assessments illustrates the growing attention being paid to foreign information manipulation in Africa.
But attribution remains an area where evidence is particularly important.
Attribution Is Technically Difficult
Determining who is behind an online operation can be difficult.
Attackers can use virtual private networks, compromised computers, foreign hosting companies, disposable accounts, proxy infrastructure and multiple layers of digital intermediaries.
They may also deliberately imitate the language or cultural style of another country.
An account appearing to originate in Nigeria may actually be operated elsewhere.
A website using a Nigerian-looking name may be hosted in another country.
A social-media profile may have been created using stolen information.
This is why technical attribution normally requires more than examining a single post.
Investigators may need to combine network evidence, account behaviour, financial records, domain information, platform data and other sources.
The NCC-CSIRT's call for evidence preservation is therefore significant.
Without evidence, attribution becomes more difficult.
Why AI Makes Attribution More Complex
AI-generated content can add another layer of difficulty.
Traditional fabricated material may contain obvious signs of poor editing or inconsistent language.
Modern generative systems can produce polished text and increasingly convincing synthetic media.
This does not make AI content impossible to detect.
It does, however, mean that visual or linguistic appearance alone may no longer be sufficient to establish authenticity.
Verification may require checking the original source, publication history, metadata where available, independent reporting and other contextual evidence.
For telecommunications providers, the technical issue is different but related.
The operator may not be able to determine whether a particular social-media video is genuine.
But it may be able to identify suspicious infrastructure used to distribute malicious links associated with the campaign.
This division of responsibility allows technology companies, platforms, journalists, researchers and government agencies to contribute different forms of evidence.
The Broader Cybersecurity Ecosystem
Nigeria has multiple institutions involved in digital security.
The NCC-CSIRT focuses specifically on the telecommunications sector.
The country's broader cybersecurity architecture includes other government agencies and incident-response structures.
The NCC-CSIRT says it collaborates with public-sector bodies, mobile network operators, internet service providers, telecommunications companies and other stakeholders.
The centre also participates in international coordination with other CSIRTs.
Such collaboration is important because cyber threats do not respect national borders.
A malicious server can be located outside Nigeria while targeting Nigerian users.
A campaign can use infrastructure distributed across several countries.
A single influence operation can reach audiences in multiple African states simultaneously.
International information sharing can therefore improve detection.
What Users Can Do
Although the NCC advisory is directed primarily at telecommunications operators, ordinary internet users also have a role in protecting themselves.
Users should be cautious about sensational claims that arrive through unfamiliar accounts.
They should verify important information through multiple credible sources before sharing it widely.
They should be particularly careful with messages that ask for passwords, banking information, one-time passwords or other sensitive data.
Links contained in unexpected messages should be treated carefully.
Users should also remember that a photograph, video or voice recording is not automatically proof that an event happened exactly as presented.
Where a claim concerns an important public event, checking reliable news organisations and official sources can provide additional context.
These practices do not require users to avoid political discussion or social media.
They simply reduce the risk of becoming an unwitting distributor of deceptive material.
Avoiding the Amplification Trap
One of the most effective ways for misleading material to spread is through repeated sharing.
Users may share a sensational claim because they want to warn friends that it is false.
But the act of sharing can increase the number of people who encounter the claim.
This creates a challenge for both users and news organisations.
The responsible approach is often to provide enough context to explain why a claim is false or unverified without unnecessarily reproducing the deceptive material.
For journalists, this means checking original sources and distinguishing verified facts from claims.
For ordinary users, it means pausing before forwarding material simply because it is shocking or emotionally compelling.
The Role of Journalists and Fact-Checkers
Journalists have a particular responsibility in a rapidly changing information environment.
News organisations can help audiences distinguish confirmed information from claims by identifying sources, checking dates and verifying images and videos.
Fact-checking organisations can investigate suspicious narratives and trace their origins.
The Africa Center reported that Nigerian organisations including the Centre for Journalism Innovation and Development's Digital Tech, AI & Information Disorder Analysis Centre, Dubawa, Africa Check and FactCheckAfrica are involved in research, training and monitoring related to information manipulation.
These initiatives complement technical measures undertaken by telecommunications and cybersecurity organisations.
A network operator may identify suspicious infrastructure.
A researcher may identify coordinated accounts.
A journalist may verify whether an alleged event actually occurred.
A fact-checker may trace a manipulated image to its original source.
Combining these capabilities can produce a more reliable understanding of a suspected campaign.
The Technology Industry's Responsibility
Technology companies also have an important role.
Telecommunications operators can strengthen network monitoring.
Internet service providers can improve threat intelligence and incident reporting.
Social-media platforms can detect coordinated inauthentic behaviour within their services.
Cloud providers can respond to abuse of their infrastructure.
Cybersecurity firms can develop detection tools.
AI companies can work on safeguards against misuse of their systems.
No single organisation can address the entire information environment alone.
The NCC-CSIRT's emphasis on coordination reflects this reality.
The Importance of Legal Safeguards
Cybersecurity measures must operate within applicable laws and regulatory requirements.
The NCC advisory explicitly refers to evidence preservation in line with legal and regulatory obligations.
This is important because monitoring digital systems can involve sensitive information.
Telecommunications providers handle large quantities of customer and network data.
Any security investigation therefore needs appropriate controls governing what information can be accessed, retained and shared.
Effective cybersecurity is not simply about collecting as much information as possible.
It is also about collecting relevant information lawfully, protecting it and using it for legitimate security purposes.
Digital Resilience Beyond Elections
Although the NCC advisory mentions the approaching electoral cycle, the underlying security issues extend far beyond elections.
Foreign influence campaigns can target public confidence during crises, economic disruptions, natural disasters, security incidents or international disputes.
Cybercriminals can also exploit moments of uncertainty.
For example, when people are urgently searching for information about a major event, fake websites and fraudulent messages can attract attention.
This means digital resilience needs to be maintained continuously.
The October advisory is therefore part of a broader cybersecurity challenge facing Nigeria's telecommunications sector.
A Growing Need for Digital Literacy
Technical controls cannot eliminate every threat.
People remain an important part of the digital security chain.
Digital literacy can help users recognise suspicious behaviour and understand the limitations of online content.
This includes knowing how to verify sources, recognising impersonation attempts, understanding basic privacy practices and recognising common social-engineering techniques.
The rise of generative AI makes these skills increasingly important.
Users need to understand that realistic-looking content can be produced artificially.
At the same time, they should avoid assuming that every unfamiliar piece of content is fake.
The objective is careful verification rather than automatic belief or automatic rejection.
What Comes Next for Telecom Operators
The NCC-CSIRT's advisory calls for immediate vigilance rather than announcing a new nationwide telecommunications restriction.
Operators are expected to strengthen monitoring, preserve evidence, improve detection and coordinate with relevant security teams.
The commission can also continue to distribute threat intelligence and advisories as new information becomes available.
If specific technical indicators are identified later, those may provide operators with more concrete detection mechanisms.
For now, the absence of specific IoCs means that broader monitoring and threat awareness remain central.
The October Cybersecurity Calendar
The latest advisory arrives during a month in which cybersecurity is receiving additional national attention.
The NCC's official events calendar lists the International Cybersecurity Conference for October 27 and 28 in Abuja, co-hosted with NITDA and the Office of the National Security Adviser.
The conference is expected to provide another forum for discussions around digital security and cyber resilience.
The timing places the latest NCC-CSIRT warning within a broader national conversation about protecting Nigeria's digital infrastructure.
Building a More Resilient Digital Economy
Nigeria's technology ambitions depend heavily on trust.
Businesses need customers to trust digital payments.
Citizens need confidence in online government services.
Students need reliable digital education platforms.
Hospitals need secure digital systems.
Banks and fintech companies need resilient networks.
Telecommunications operators need secure infrastructure.
Investors need confidence that digital businesses can operate within a stable technological environment.
Information manipulation can undermine some of that trust even when it does not directly disable a computer system.
A person who no longer trusts digital communications may become less willing to use online services.
A company repeatedly targeted by impersonation scams may face customer losses and reputational damage.
A public institution whose communications are repeatedly impersonated may struggle to convince citizens that genuine announcements are authentic.
Cybersecurity is therefore connected to economic confidence as well as technical protection.
The Larger Lesson
The latest NCC-CSIRT advisory illustrates how the definition of cybersecurity is expanding.
Cybersecurity once centred heavily on viruses, hacking, password theft and network intrusion.
Those threats remain.
But the digital environment now includes a wider range of risks involving artificial intelligence, synthetic media, social engineering, coordinated influence operations, fake identities and malicious online infrastructure.
The boundary between cybercrime and information manipulation can also become less clear.
A false narrative may be used to direct people towards a fraudulent website.
A fake identity may be used to obtain credentials.
A manipulated video may be used to damage trust in an institution.
A network of coordinated accounts may be used to amplify a malicious link.
These overlapping risks require cooperation between technical specialists, telecommunications providers, regulators, researchers, journalists and users.
Conclusion
The Nigerian Communications Commission's Computer Security Incident Response Team has placed telecommunications operators on heightened alert over reported Russian-linked disinformation and influence campaigns affecting Africa's information environment, including Nigeria.
The October 2 advisory says an assessment cited through the Office of the Secretary to the Government of the Federation identified at least 80 such campaigns across more than 22 African countries in 2024. Nigeria was among the countries identified in the assessment.
The NCC-CSIRT says the reported campaigns can use local influencers, bloggers, journalists, content creators, social-media accounts, Telegram channels, websites and other digital infrastructure, with AI-generated or manipulated content among the techniques of concern.
The agency has consequently asked telecommunications providers to strengthen monitoring of networks and internet-facing systems, maintain accurate infrastructure inventories, improve detection of phishing and impersonation, preserve evidence and coordinate more closely with cybersecurity and network-operations teams.
The warning is significant because Nigeria's digital economy increasingly depends on telecommunications infrastructure.
Mobile networks and internet services now support financial transactions, commerce, education, government services, healthcare, media and everyday communication.
A threat to digital trust can therefore have consequences beyond the technology sector.
The increasing use of artificial intelligence adds another layer of complexity.
AI can be used for legitimate purposes across virtually every sector, but it can also make it easier to create convincing synthetic images, voices, videos and written material.
The NCC-CSIRT has specifically included AI-generated and manipulated content among the threat categories that operators should monitor.
Independent research has also documented reported foreign-linked influence activity involving fabricated personas, AI-generated content and local digital networks targeting Nigerian audiences. The Africa Center for Strategic Studies, for example, reported in September that foreign information operations had used a variety of techniques to influence Nigeria's information environment.
Those findings do not mean that every disputed online narrative is foreign-sponsored.
Nor does the NCC advisory establish the responsibility of any particular Nigerian citizen, media organisation, telecommunications provider or political organisation.
Attribution requires evidence.
The technical difficulty is precisely why the NCC-CSIRT is asking operators to preserve logs, improve monitoring and share relevant threat intelligence.
For Nigerian internet users, the evolving environment reinforces the importance of verifying information before sharing it, being cautious with unexpected links and messages, protecting personal credentials and checking important claims against credible sources.
For technology companies, the challenge is to build security into increasingly complex digital systems.
For telecommunications providers, it means maintaining resilient networks and improving the ability to detect suspicious activity.
For cybersecurity authorities, it means developing the technical and investigative capabilities required to distinguish genuine threats from ordinary online disagreement.
And for society more broadly, it means recognising that the digital information environment is now part of national technological infrastructure.
Nigeria's digital future will depend not only on faster networks, more data centres, cloud computing, artificial intelligence and digital services, but also on the ability of users and institutions to determine what information can be trusted.
The latest NCC-CSIRT advisory places that challenge firmly within the country's technology and telecommunications agenda.
As digital platforms become more central to communication and public life, cybersecurity will increasingly involve not only protecting devices and networks but also protecting the integrity, reliability and resilience of the digital environment through which Nigerians work, communicate and access information.



Comments
Post a Comment