AI-Powered DeepLoad Malware Targets Nigerian Institutions

Thumbnail Image

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.

Nigeria's National Information Technology Development Agency (NITDA) has warned of an active AI-powered malware, DeepLoad, targeting government agencies, banks, businesses, and individuals. The malware uses social engineering to infiltrate systems, steal sensitive data, evade antivirus detection, and enable financial fraud and operational disruptions across Nigeria.[AI generated]

Why's our monitor labelling this an incident or hazard?

The DeepLoad malware explicitly incorporates AI-generated code to evade antivirus detection and maintain persistence, qualifying it as an AI system. The malware's active infections have caused direct harms including credential theft, financial fraud, system compromise, and risks to national security, fulfilling the criteria for an AI Incident. The advisory details realized harms and ongoing attacks, not just potential risks, confirming this classification.[AI generated]
AI principles
Privacy & data governanceRobustness & digital security

Industries
Government, security, and defenceFinancial and insurance services

Affected stakeholders
GovernmentBusiness

Harm types
Economic/PropertyHuman or fundamental rights

AI system task:
Content generationEvent/anomaly detection


Articles about this incident or hazard