VetraGo
June 3, 2025 · 2 min read

Ransomware: why Nigerian businesses are targets

From startups to retail chains, attackers see growing digital adoption and thin defences. What to do before it happens to you.

Business Security

Ransomware is malicious software that locks or encrypts a business's files and systems, then demands payment to unlock them. Many groups now also steal data first and threaten to publish it. For a small or growing business, a single attack can stop sales, payroll and customer service for days.

Why businesses here are attractive targets

  • Fast digital growth. More businesses run on cloud tools, online payments and remote access, often faster than their security has grown.
  • Thin defences. Many small and medium businesses have no dedicated security staff, rely on shared passwords and delay updates.
  • Weak or missing backups. If backups sit on the same network, ransomware can encrypt them too.
  • Remote access left open. Remote desktop and VPN accounts without two-step verification are a common way in.
  • Pirated software. Cracked programs often carry malware and never receive security updates.

How attacks usually start

  1. A staff member opens a phishing email or harmful attachment.
  2. A stolen or guessed password is used on email, VPN or remote desktop.
  3. An unpatched server or device is found by an automated scan.

Five defences that make the biggest difference

  1. Backups you can restore. Follow the 3-2-1 rule: three copies, on two types of storage, with one kept offline or off-site. Test a restore every few months.
  2. Two-step verification everywhere, especially on email, remote access and admin accounts.
  3. Updates on a schedule. Patch operating systems, routers and business software promptly, and replace systems that no longer receive updates.
  4. Least privilege. Staff should use normal accounts for daily work; admin rights only for the few who need them.
  5. Trained people. Most attacks begin with a click. Teach staff to recognise and report phishing quickly.

Have a plan before you need it

  • Know who to call: your IT provider, your bank and a security incident responder.
  • Keep a printed list of key contacts and account details, because your systems may be down.
  • Decide in advance who can take systems offline and who speaks to customers.
Paying a ransom doesn't guarantee your data comes back, and it funds the next attack. Good backups are what give you a real choice.

Want your team to recognise the phishing emails that start most attacks? See our Business plans or talk to us about corporate training.