As Ethiopia accelerates its national digital transformation journey, it faces an increasingly complex landscape of cyber threats. According to a newly released Interpol African Cyberthreat Assessment report, Ethiopia ranks fifth on the continent for digital vulnerabilities, highlighting an urgent need to reinforce its digital infrastructure.
Based on data collected from 36 African member states and organizations such as the Shadowserver Foundation, the comprehensive assessment indicates that rapid technological growth is outpacing cybersecurity defenses and institutional readiness. Consequently, Ethiopia accounts for 3.3 percent of all detected vulnerabilities across the continent.
Across Africa, direct economic losses from cybercrime have neared USD 5 billion, while total cybersecurity expenditures have reached USD 15.3 billion. Reported financial losses more than doubled—surging from USD 192 million to USD 484 million—while the number of identified victims rose from 35,000 to 87,000.
Cyberthreat intensity varies by region, with digital crimes in West and Southern African nations accounting for over 30 percent of all reported incidents. Meanwhile, East Africa falls into the medium-to-high risk category, driven by mobile money fraud, telecommunications breaches, and infrastructure-targeted ransomware attacks. These threats primarily stem from fundamental gaps in patch management, cyber hygiene, and resource allocation within both the public and private sectors.
Interpol noted that the most frequently exploited entry points include unpatched software systems, exposed virtual private networks (VPNs), and misconfigured document management platforms. Due to malicious actors leveraging artificial intelligence and machine learning tools to scan thousands of systems per second, Ethiopia hosts 1.36 percent of the continent’s botnet nodes. Furthermore, AI-driven digital sextortion has emerged as a critical social concern, with the country registering approximately 8 percent of specific continental benchmark figures.
These vulnerabilities reflect broader regional pressures. In neighboring Kenya, distributed denial-of-service (DDoS) attacks targeting telecommunications systems exceeded 46,786 in the first half of 2025 alone, while SIM-swap fraud surged by 327 percent. Critical infrastructure across the region remains highly vulnerable: the Uganda Electricity Transmission Company Limited (UETCL) fell victim to a suspected Qilin-led ransomware attack, and Seychelles experienced a targeted breach on its central bank database.
Law enforcement agencies across Africa face severe operational challenges. Among surveyed agencies, 94 percent report a lack of adequate digital forensics tools, 78 percent cite insufficient budgets and specialized personnel, and 89 percent identify gaps in cross-border cooperation as a primary obstacle.
Interpol and cybersecurity experts urge leaders to prioritize robust cross-border collaboration, stringent cyber hygiene standards, enhanced public-private partnerships, and innovative legislative frameworks to safeguard the nation’s critical infrastructure and citizens.




