Connect with us
Anglostratits

Tech

Kaspersky and VDC Research reveal over $18B in potential losses from ransomware attacks on the global manufacturing industry in 2025

Published

on

Kaspersky

When ransomware hits, production lines halt, triggering immediate revenue losses from an idle workforce and longer-term shortfalls from reduced output

Kaspersky (www.Kaspersky.co.za) in collaboration with VDC Research announced that in the first three quarters of 2025 ransomware attacks on manufacturing organisations could have generated over $18 billion in losses. This figure reflects just the direct cost of an idle workforce during downtime, with overall operational and financial impacts far exceeding this amount. Estimations were made across APAC, Europe, the Middle East, Africa, CIS and LATAM based on the share of manufacturing organisations where ransomware attempts were detected and prevented, the total number of manufacturing organisations in each region, average downtime hours after real attacks, average number of employees per organisation and average hourly pay.

According to Kaspersky Security Network from January to September 2025, the Middle East (7%) and Latin America (6.5%) led the regional rankings in terms of ransomware detections in manufacturing organisations. APAC (6.3%), Africa (5.8%), CIS (5.2%) and Europe (3.8%) followed. All of these attacks were blocked by Kaspersky solutions. The estimation of potential losses (below) shows the financial impact if these attacks succeeded.

When ransomware hits, production lines halt, triggering immediate revenue losses from an idle workforce and longer-term shortfalls from reduced output. The average attack lasts 13 days (based on the Kaspersky Incident Response Report) (https://apo-opa.co/4pA9PUK). As a result, idle labour costs from ransomware in the first three quarters of 2025 could have reached:

  • $11.5 billion in APAC
  • $4.4 billion in Europe
  • $711 million in LATAM
  • $685 million in the Middle East
  • $507 million in CIS
  • $446 million in Africa

Partnering with proven cybersecurity vendors is paramount for effective IT, OT and IIoT protection

Actual business losses could have been significantly higher when factoring in supply-chain disruptions, reputational damage, and recovery expenses.

“Our research provides an estimation of the financial impact that ransomware may have had on manufacturing worldwide. The growing complexity of manufacturing environments, along with widening expertise gaps and ongoing labour challenges, makes it difficult for most organisations to manage cybersecurity effectively, but failure to do so may result in financial losses – followed by reputational blows as well. Partnering with proven cybersecurity vendors is paramount for effective IT, OT and IIoT protection,” comments Jared Weiner, Research Director, Industrial Automation & Sensors at VDC Research.

“No region is exempt from ransomware – whether it’s the Middle East, LATAM, APAC, CIS, Africa or Europe, every manufacturing hub is constantly being targeted. Mid-tier manufacturers that could have been overlooked by threat actors in the past are also among the targets because their security budgets are smaller and their supply chain disruption effects can be larger than most realise. The manufacturing sector and all other organisations need reliable, proven defence systems and continuous user education,” comments Dmitry Galov, Head of Research Center for Russia and CIS at Kaspersky’s GReAT.

More information about ransomware in different regions is available in Kaspersky’s 2025 State of Ransomware Report (https://apo-opa.co/43LYE2H).

Kaspersky encourages organisations to follow these best practices to safeguard from ransomware:

  • Enable ransomware protection for all endpoints. There is a free Kaspersky Anti-Ransomware Tool for Business (https://apo-opa.co/48fN4xZ) that shields computers and servers from ransomware and other types of malware, prevents exploits and is compatible with already installed security solutions.
  • For comprehensive protection of industrial and critical sectors, Kaspersky offers a distinctive ecosystem that seamlessly integrates dedicated OT-grade technologies, expert knowledge and invaluable expertise. At the core of this ecosystem is Kaspersky Industrial CyberSecurity (KICS) (https://apo-opa.co/3K8S27W), a native Extended Detection and Response (XDR) platform designed for critical infrastructure protection. It provides robust network traffic analysis, along with endpoint protection, detection and response capabilities. This comprehensive solution integrates traditional IT security measures with purpose-built industrial security technologies, ensuring that your company is well-equipped to face any threat.
  • Companies from non-industrial sectors can protect themselves by installing anti-APT and EDR solutions that enable capabilities for advanced threat discovery and detection, investigation and timely remediation of incidents. Organisations can also provide their SOC teams with access to the latest threat intelligence (https://apo-opa.co/4oZWhSr) and regularly upskill them with professional training. All of the above is available within Kaspersky Next Expert (https://apo-opa.co/4rpBklE).

Distributed by APO Group on behalf of Kaspersky.

Home  Facebook

Tech

Kaspersky maps Artificial intelligence (AI) and the evolving threat landscape at AI Everything Kenya x GITEX Kenya

Published

on

Kaspersky

Kaspersky data demonstrates that in 2025, password stealer attacks increased by 83% year-over-year in Kenya and 56% across Sub-Saharan Africa

NAIROBI, Kenya, May 19, 2026/APO Group/ –At AI Everything Kenya x GITEX Kenya, taking place from 19-21 May, global cybersecurity company, Kaspersky (www.Kaspersky.co.za), talks about the current threat landscape in Kenya and the wider East Africa region, warning that the rapid development and adoption of artificial intelligence is creating new opportunities for innovation while simultaneously introducing cyberthreats for businesses and individual users. With risks varying from AI-powered social engineering campaigns and deepfake fraud to “Shadow AI” risks inside organisations, Kaspersky advises organisations to adopt clear policies, cybersecurity controls and employee education to ensure AI technologies are deployed safely and responsibly.

 

“As organisations in Kenya and the wider region accelerate digital transformation, cybersecurity is becoming a board-level priority. We are seeing growing awareness that innovation and security must develop hand in hand. Industry events such as GITEX play an important role in this process by helping businesses better understand both the impressive opportunities AI and digital technologies create, and the precautions needed to manage the evolving cyber risks that come with them,” says Chris Norton, General Manager for Sub-Saharan Africa at Kaspersky.

 

Cyberthreat landscape developments

 

AI risks come amid other cybersecurity challenges of the evolving threat landscape in the region. Kaspersky data demonstrates that in 2025, password stealer attacks increased by 83% year-over-year in Kenya and 56% across Sub-Saharan Africa. Spyware attacks grew by the same figure of 83% in Kenya and 53% regionally, while backdoor attacks rose by 25% in Kenya and 8% across Sub-Saharan Africa. Although exploit attacks showed a slight decline, they remain a major concern due to their mass spread and unauthorised access they open to a users’ systems. Meanwhile, ransomware continues to pose a serious risk to organisations, with 7.62% of organisations in Africa experiencing ransomware detections in 2025.

 

Advanced Persistent Threats (APTs) remain among the most serious risks for enterprises. According to the Kaspersky Security Services Global Report, APT groups were detected and blocked in 21% of customers in 2025 and accounted for 23% of all high-severity incidents. These highly organised groups increasingly combine AI-enhanced techniques with social engineering and targeted intrusion methods to maximise operational effectiveness.

 

Cybersecurity traps of AI

 

According to Kaspersky experts, cybercriminals can use AI across multiple stages of cyberattacks: from preparation and communication to assembling malicious components, probing for vulnerabilities and deploying tools, while simultaneously concealing evidence of AI involvement to complicate investigations and attribution. Malicious actors are also actively distributing malware disguised as AI tools to steal sensitive information from victims.

 

One of the growing cybersecurity issues is the spread of deepfakes and AI-generated fraudulent content. As AI tools become more and more sophisticated, distinguishing authentic material from manipulated ones is becoming more difficult. Kaspersky researchers warn that AI models can also be vulnerable to “unintended memorisation”, where models retain fragments of sensitive information that attackers may later extract. Additional risks include malicious tampering with training datasets, injection of harmful logic into AI software code and exploitation of vulnerabilities within AI-powered systems.

As organisations in Kenya and the wider region accelerate digital transformation, cybersecurity is becoming a board-level priority

 

The emergence of AI agents, which are systems capable of autonomously taking actions on behalf of users, creates another significant attack surface. According to Kaspersky, these systems can be manipulated through adversarial content or misconfigured autonomy settings, potentially leading to harmful real-world actions.

 

Kaspersky also highlights the growing challenge of “Shadow AI”, where employees use public AI services without oversight from IT departments. This creates uncontrolled data flows and increases the risk of confidential information exposure. A recent Kaspersky study* titled “Cybersecurity in the workplace: Employee knowledge and behaviour” showed that 87.8% of professionals surveyed in Kenya use AI tools for work-related tasks, including text editing, e-mail writing, data analytics and content creation. However, only 35% reported receiving cybersecurity training related to AI use.

 

Essential Actions in the AI-driven IT world

 

Kaspersky recommends organisations to regularly assess AI-related risks and establish comprehensive AI governance policies defining which AI tools are approved and what types of data can be processed. Regular employee training on secure AI usage, recognition of fake AI services, malicious links and prompt injection risks is equally essential.

 

To effectively manage the growing range of cyber risks, organisations should adopt a comprehensive cybersecurity strategy that combines advanced security technologies, reliable threat intelligence, strong internal processes and continuous employee education. Robust cybersecurity solutions, such as the AI-powered Kaspersky SIEM and Kaspersky Next product line, provide real-time protection, threat visibility, investigation and response capabilities.

 

For private users, Kaspersky recommends exercising caution when using AI-powered tools, carefully reviewing privacy settings, verifying the authenticity of AI applications and double-checking information generated by agentic AI systems before making decisions based on automated outputs. The company also advises families to maintain open discussions with children regarding their use of AI technologies and online safety practices.

 

Visit the Kaspersky stand at B10 in Hall 2 at GITEX Kenya to find out more.

 

*The survey was conducted by Toluna research agency at the request of Kaspersky in 2025. The study sample included 2800 online interviews with employees and business owners using computers for work in seven countries: Türkiye, South Africa, Kenya, Pakistan, Egypt, Saudi Arabia, and the UAE.

Distributed by APO Group on behalf of Kaspersky.

Continue Reading

Tech

Eight major blockers prevent CMOs from closing the gap between brand and performance advertising to drive greater impact

Published

on

WARC
  • 90% of ads are not given time to “wear in” and achieve their full impact
  • 60% of marketers say the role of advertising is not fully understood by the C-Suite
  • 49% of organizations have siloed brand and performance teams, hindering integration
  • Only 21% of marketers report advertising objectives alignment with C-Suite

WARC, in partnership with Analytic Partners, BERA.ai, Prophet and System1, release The Multiplier Playbook – The CMO’s guide to integrating brand and performance. The report incorporates a new survey of senior marketers with the ANA

May 19, 2026 – There is a “say-do gap” in advertising: most marketers know the theory of effectiveness, but struggle to apply it. WARC and a coalition of effectiveness experts have identified eight major blockers for marketers to overcome as they seek to close this gap.

Spanning cultural, procedural and structural misalignments, these barriers undermine effective advertising by preventing marketers from implementing evidence-based principles, such as those demonstrated in the landmark study The Multiplier Effect, released last year.

From a disconnect between the CMO and the C-Suite on the role of brand-building, CEO and CFO confusion on the purpose of advertising investment in modern business, and entrenched silos within marketing teams, these blockers, and the plays needed to overcome them, are explored in The Multiplier Playbook, a new report released today, and a must-read for every marketer.

David Tiltman, Chief Content Officer, WARC, and SVP Content, LIONS Intelligence, says: “Since the launch of The Multiplier Effect study last year, it has become clear that the challenges facing marketers are not about knowing the theory. Most CMOs cannot simply change their strategic and investment approach wholesale without overcoming a number of hurdles.

“What is needed is a Playbook – a combination of data, frameworks and real-world examples that help marketers recognize the key “blockers” they might face – and give them some “plays” to help them take action and make progress. The Multiplier Playbook does just that.”

The Playbook combines data from a new survey of over 200 senior marketers conducted by WARC and the Association of National Advertisers (ANA) in the US between December 2025 and March 2026, with additional data, frameworks and insights from WARC and its partners in the Multiplier Effect: Analytic Partners, BERA.ai, Prophet and System1.

The eight blockers to the Multiplier Effect

Previously reported data for The Multiplier Effect report from Analytic Partners ROI Genome found that brands that shifted from performance-only to a mixed approach of brand and performance advertising saw a remarkable 90% median average uplift in revenue return on investment.

To implement this approach, marketers should review the eight cultural, procedural and structural challenges they could face enabling them to succeed in aligning with the C-Suite, integrating teams, and embedding the Multiplier Effect into the work.


Aligning with the C-Suite

The study confirms that alignment with the C-Suite is consistently cited as a barrier to investing in brand-building and unlocking the Multiplier Effect:

The brand disconnect

Approximately two-thirds (67%) of marketers agree that their CEO believes that brand is important. But only 19% of marketers said the C-Suite routinely makes the connection between shifts in brand equity and hard business outcomes.

In short, brand strength is not seen as driver of sales day-to-day.

Marketers are advised to make a stronger case for brand-building to the CEO and CFO – but first they need to be clear about what problem(s) their company faces that a stronger brand would help solve. The report shares four ways to frame brand-building in this way, depending on corporate priorities.


The advertising disconnect

The role of advertising in driving commercial objectives is also a major point of misalignment.

A majority (60%) of survey respondents felt that the C-Suite does not fully understand the role of advertising, and just one in five marketers (21%) strongly agreed their advertising objectives were aligned with C-Suite objectives.

The dominance of efficiency-based metrics such as platform- and channel-specific ROAS in modern advertising serves to deepen this division. The result, in many organizations, is a very narrow view of what advertising is there to achieve – making it a cost of sale, rather than an investment in value creation.

As shown by the results from the ANA/WARC survey, a reliance on short-term tactics and metrics only aligns with one of the C-Suite’s top five commercial priorities. Brand-building, by contrast, explicitly serves the other four – while also generating short-term sales and boosting the efficiency of performance advertising.


Marketers are advised to challenge a fixation with narrow channel-specific metrics like platform-specific ROAS and take steps to align advertising objectives with corporate goals.

Building integrated teams

Structural issues with the marketing department are also hindering implementation of best practices to achieve the Multiplier Effect. The emergence of brand and performance “silos” is making integrated thinking harder to achieve.

Responses to the ANA/WARC survey highlighted how brand and performance teams are struggling to work together in meaningful ways:

half (49%) of organizations have separate brand and performance teams, compared with 25% that have fully integrated teams;
65% have separate brand and performance budgets;
only 44% say they have a “common language” for their brand and performance teams;
similarly, just 44% of brand and performance teams have a common understanding of which audiences are most likely to deliver growth.

While specialists will always be needed, marketing leaders should be looking for ways to drive collaboration between their teams. Marketers are advised to develop a shared vision of what success will look like that is rooted in customer behavior change, and to identify tentpole moments in the calendar that force integration between teams.

The report includes an example from Instacart, where Laura Jones, the company’s Chief Marketing Officer, has recommended looking to find moments to bring teams together: “We have to ‘make our own weather’. We have to create events and campaigns that are big where we can all row in that same direction and get more return out of all of our effort when it’s united.”

Embedding the Multiplier Effect into the work

Success in aligning with the C-Suite and bringing teams together must ultimately be translated into the work to make the Multiplier Effect a reality.

While creativity is most closely associated with brand-building – capturing attention from out-of-market audiences and building lasting memory structures – it also plays a critical role in driving immediate sales performance. The study reaffirms the importance of broad “creative platforms” that bring together brand equity-led and performance-led executions.

Challenges include a perceived risk of advertising strategies that embrace creativity, cited by 41% of marketers in a System1 and Effie Worldwide survey, and a lack of confidence in advertising effectiveness cited by over half of respondents (52%).

Most ads (90%) are not given time to wear in, according to data from Analytic Partners ROI Genome. Marketers are advised to take a “fewer, bigger, longer” approach to creativity; bring media, creative development and measurement much closer together to achieve the “synergy effects” required in a fragmented, low-attention media landscape; and mitigate the perceived risk of creativity using a four-level “creativity stack”: consistency, showmanship, distinctiveness and emotion.


As previously noted by Mike Cessario, Founder/CEO, Liquid Death, creativity can be especially valuable for smaller brands: “If you’re a small company, it’s literally reckless to be safe. Trying to mimic a big company as a small company is reckless … because we can’t afford to buy the eyeballs like the big guys do.”

The Multiplier Playbook report can be read in full here. An accompanying podcast series, taking a deep dive into the findings of the report, will launch on Thursday, May 21st, with Ann Marie Kerwin, WARC’s Americas Editor, talking to Michael Reh, Head of Data Science and Analytics at BERA.ai, about the business value of brand.

A preview episode, featuring WARC’s David Tiltman and Stephanie Fierman, EVP and head of the Brand Practice at the ANA, was released on Thursday, May 14th.

Continue Reading

Business

Oversight matters: Spotting payroll fraud in a digital world

Published

on

South Africa

Companies combine oversight and payroll platforms to stop criminals from stealing millions

JOHANNESBURG, South Africa, May 19, 2026/APO Group/ –South Africa’s government has put payroll fraud in its crosshairs. In its latest Budget Review document, the National Treasury prioritises digital payroll systems for state entities, combatting what some outlets have reported as over R4 billion in annual losses through fraudulent payroll payments.

This problem is not limited to the public sector. The Chartered Institute of Payroll Professionals estimates that South African businesses lose around R100 million annually through payroll fraud. Many of the cases involve manual and paper-based payroll systems that are easy to manipulate.

 

The adoption of digital payroll platforms can reduce and catch fraud before it becomes a serious issue. However, going digital is not enough, says Yolande Schoültz, founder of YSchoültz Attorneys and one of SA’s foremost payroll fraud experts.

 

“There is no doubt that digital systems are better than paper-based payroll management. But a digital system only makes it much easier to track down and stop fraud. The organisation must still put the right measures in place, such as approval policies and oversight checks.”

 

Payroll fraud red flags

 

Perpetrators of payroll fraud commit their crimes in several ways. A lone individual might skim money unnoticed by creating ghost employees or redirecting payments. They might collude with former employees, leaving the latter’s details on the system and splitting their salary payments.

 

Whatever the method, the most common aspect of payroll fraud is an administrator operating under little or no oversight, says Schoültz.

 

“There should be a chain of custody, such as someone signing off on salary calculations and doing spot checks to ensure everything is legitimate. But it’s amazing how often, even at large companies, the payroll administrator is working on their own and is the only one with proper access to the payroll system.”

 

If you can access regular reports and integrate payroll data with other systems, it becomes much harder for people to commit fraud, and much easier for you to catch them if they do

Payroll fraud has several red flags, including:

 

  • Unapproved bank accounts or changes to banking details.
  • Changes to employee, account, or reporting information right before or after a payroll run.
  • Excessive overtime, since payroll fraudsters often put in disproportionate hours to maintain control.
  • Strange login and backup hours, another attempt to maintain control and avoid scrutiny.
  • No system locks during payroll runs that would avoid manipulation of records and calculations.
  • Manually feeding calculations into other systems.
  • Frequent payment errors.
  • Payroll software isolated to one device that only the payroll administrator can access.

 

Individually, some of these warnings can be innocuous. They can be signs of an overworked administrator or lacking workplace strategies. But the presence of several is reason to be concerned, and some (such as changed banking details) are immediate cause for alarm.

 

Preventing payroll fraud with technology

 

Modern payroll platforms help organisations reduce fraud, but only when used correctly and alongside other safeguards.

 

“There is no magical app that just changes how you operate,” says Sandra Crous, managing director of payroll provider Deel Local Payroll. “A nutrition app won’t automatically get you to eat less, and a fitness app won’t suddenly get you to exercise more. You still have to make changes and use the app to reinforce your new behaviours. A payroll platform gives a business the tools to oversee and manage payroll through different layers, but the business must use those tools in accordance with its policies.”

 

Spot checks can quickly reveal issues that require more scrutiny. Payroll platforms support fraud detection and financial diligence in several ways:

 

  • System and bank account changes: The platform provides reports and audit trails, and generates custom reports for authorised employees.
  • Isolated access: Modern payroll platforms operate as cloud software, accessible to multiple authorised users and devices.
  • Single users: Secure accounts that give different people, such as auditors, finance directors, and HR heads, access to dashboards and reports.
  • Manual data entry: Payroll platforms integrate with other systems of record, sharing payroll data automatically and leaving no room for interference.
  • Obscure payroll information: Employee self-service (ESS) features enable employees to access payslips and other information directly, helping them spot irregularities.

 

An organisation must create oversight through clear policies, spot checks, and leadership oversight. The right payroll platform can even help people with limited payroll knowledge uncover strange behaviours.

 

“You won’t spot payroll fraud if you keep looking for big changes and payments,” says Schoültz. “Most payroll fraudsters siphon money over a long time and across multiple bank accounts, making it harder to detect. That’s much easier with paper-based systems, spreadsheets, and older payroll software. But if you can access regular reports and integrate payroll data with other systems, it becomes much harder for people to commit fraud, and much easier for you to catch them if they do.”

Distributed by APO Group on behalf of Deel Local Payroll, powered by PaySpace.

 

Continue Reading

Trending