Kenya’s digital governance and corporate compliance ecosystem faced a major shock when the Business Registration Service (BRS) confirmed a serious cyberattack that exposed sensitive company records. The breach, which reportedly affected millions of business records, has become one of the most significant public-sector data incidents in East Africa in recent years. For privacy professionals, compliance […]
The Nigeria Data Protection Commission has officially launched an investigation into an alleged data breach involving Remita Payment Services Ltd. and Sterling Bank, aimed at protecting personal data and enforcing compliance with Nigeria’s data protection laws. What Happened Scope of the Investigation The NDPC is examining several key areas, including: Regulatory and Compliance Focus In […]
This article is part of our Data Subject Rights series, explaining individual rights under the NDPA, GDPR, and global data protection laws. Why the Right to Be Informed Matters Every time you sign up for an app, open a bank account, shop online, or even visit a website, your personal data is being collected. Names, […]
Europe’s regulatory and ethical landscape is increasingly hostile to black‑box AI — artificial intelligence systems whose internal logic and decision‑making processes are opaque even to their creators. This opposition isn’t merely philosophical; it is deeply rooted in Europe’s commitment to transparency, human rights, data protection, and individual autonomy — all of which are embedded in […]
Artificial intelligence (AI) has transformed many industries — from healthcare to logistics — but it’s also reshaping the cyberthreat landscape in profound ways. Among the most concerning developments is AI‑generated malware: malicious software that uses AI techniques to evade detection, adapt to defenses, and execute attacks more effectively than ever before. In this article, we’ll […]
For startups, data is gold. From customer details to intellectual property, safeguarding sensitive information is crucial for building trust, staying compliant, and preventing costly cyberattacks. However, many startups face a common dilemma: limited budgets. Unlike large enterprises with dedicated security teams, startups must strike a balance between robust data protection and cost efficiency. The good […]
Nigeria’s data protection framework has undergone a major transformation in recent years, moving from a regulatory guideline system to a full statutory legal regime. The shift from the Nigeria Data Protection Regulation (NDPR) to the Nigeria Data Protection Act (NDPA) represents one of the most significant upgrades in the country’s digital governance history. For businesses, […]
Kenya’s digital governance and corporate compliance ecosystem faced a major shock when the Business Registration Service (BRS) confirmed a serious cyberattack that exposed sensitive company records. The breach, which reportedly affected millions of business records, has become one of the most significant public-sector data incidents in East Africa in recent years. For privacy professionals, compliance […]
A major global supply-chain breach has once again exposed how a single compromised software dependency can escalate into full cloud infrastructure takeover. In one of the most alarming cybersecurity incidents of 2026, threat actors leveraged a software supply-chain compromise to gain administrator-level access to Amazon Web Services (AWS) environments in under 72 hours. For CISOs, […]
Nigeria’s fast-growing fintech ecosystem is once again under intense scrutiny after a massive SMS and personal data leak involving a digital lending platform resurfaced in public discourse. The incident, linked to BestFin Nigeria’s iCredit app, exposed highly sensitive customer information including private SMS histories, OTP codes, BVN validation logs, device identifiers, and emergency contact data. […]
Nigeria’s data protection landscape is entering its most decisive compliance phase yet. With the Nigeria Data Protection Commission (NDPC) intensifying investigations, mandatory audit returns, sector-by-sector probes, and stronger financial sanctions, 2026 is shaping up to be the year the Nigeria Data Protection Act (NDPA) moves fully from policy into aggressive enforcement. For fintechs, banks, universities, […]