MTN Group Cyberattack
- JOHANNESBURG - MTN Group, the largest telecommunications operator in africa with over 290 million subscribers, is investigating a cybersecurity incident that resulted in unauthorized access to some customer...
- The company emphasized that its core network infrastructure, billing systems, and financial services platforms remain secure and fully operational.
- "At this stage, we do not have any facts to suggest that customers’ accounts and wallets have been directly compromised," MTN Group said in a statement.
MTN group Investigates Cybersecurity Breach Affecting Customer Data
Table of Contents
- MTN group Investigates Cybersecurity Breach Affecting Customer Data
- MTN Urges Vigilance
- cyberattack Trends in Africa
- MTN Investigates Cybersecurity Breach: What You Need to Know
- What Happened in the MTN Cybersecurity Breach?
- Has My MTN Account Been Affected?
- What Actions Has MTN Taken?
- How can I Protect My Data?
- What Are the Cyberattack Trends in Africa?
- Why are Telecommunications Companies Targeted?
- What Data is Targeted in Cyberattacks?
- Key Takeaways and Recommendations from experts
- summary of Security recommendations
JOHANNESBURG – MTN Group, the largest telecommunications operator in africa with over 290 million subscribers, is investigating a cybersecurity incident that resulted in unauthorized access to some customer data in specific markets, the company announced Thursday.
The company emphasized that its core network infrastructure, billing systems, and financial services platforms remain secure and fully operational. MTN Group stated that an unidentified third party claimed responsibility for accessing data linked to certain parts of its systems.
“At this stage, we do not have any facts to suggest that customers’ accounts and wallets have been directly compromised,” MTN Group said in a statement. The company immediately initiated its cybersecurity response protocols, including notifying the South African Police Service (SAPS) and the Hawks, a specialized unit within the SAPS.
MTN Group has also informed relevant authorities in affected countries and is providing ongoing updates as the investigation progresses.The company is working closely with law enforcement agencies.
“We are in the process of notifying affected customers in compliance with local legal and regulatory obligations,” the statement read.
According to sources within the company, MTN Nigeria, the group’s largest market based on subscriber numbers, has not been affected by the breach.
MTN Urges Vigilance
MTN Group is advising all customers to remain vigilant and adhere to standard security practices. These include regularly updating MTN, MoMo (mobile money), and banking applications, and also device software.
The company also recommends using strong, unique passwords for all accounts and changing them frequently. Customers should exercise caution with unsolicited messages and avoid clicking on suspicious links. MTN advises against disclosing sensitive information such as passwords, PINs, and one-time passwords (OTPs) via phone, text message, or email. Where available, multi-factor authentication should be enabled.
cyberattack Trends in Africa
The attack on MTN highlights the increasing trend of cyber activity targeting the African continent. According to Check Point Software, Africa experienced the highest average number of weekly cyberattacks globally in the first quarter of 2025, with 3,286 attacks.
South Africa saw a significant year-on-year increase of 69 percent, averaging 1,884 attacks per week.The telecommunications sector experienced the largest percentage increase globally, with a 94 percent jump to 2,664 attacks per week.
Deloitte reports that telecommunications companies are attractive targets for cyber attackers due to their role in building, controlling, and operating critical infrastructure used for communication and storing large volumes of sensitive data.
Customer data is a especially valuable target, as hackers can use it for blackmail, identity theft, financial fraud, or to launch further attacks, Deloitte noted.
Lionel Dartnall, Country Manager SADC for Check Point Software Technologies, emphasized the need for stronger cybersecurity measures. “The continued rise in cyber-attacks underscores the need for more robust security measures. Organisations must prioritise strengthening their cyber security postures,” Dartnall said.
MTN Investigates Cybersecurity Breach: What You Need to Know
This article provides information about a recent cybersecurity incident involving MTN Group, a major telecommunications provider in Africa.It also highlights the increasing cyberattack trends on the African continent.
What Happened in the MTN Cybersecurity Breach?
MTN Group is currently investigating a cybersecurity incident. An unauthorized third party gained access to some customer data in specific markets. The company has emphasized that their core network infrastructure, billing systems, and financial services platforms remain secure and fully operational.
Has My MTN Account Been Affected?
At this stage, MTN has stated that they have no evidence to suggest that customer accounts and wallets have been directly compromised.They are in the process of notifying affected customers, with MTN Nigeria, the group’s largest market, reportedly unaffected.
What Actions Has MTN Taken?
MTN Group immediately initiated its cybersecurity response protocols after discovering the breach. These actions include:
Notifying the South African Police Service (SAPS) and the hawks (a specialized unit within the SAPS).
Informing relevant authorities in the affected countries.
Providing ongoing updates as the investigation progresses.
working closely with law enforcement agencies.
How can I Protect My Data?
MTN advises all customers to be vigilant and follow standard security practices:
Regularly update your applications: Update MTN, MoMo (mobile money), banking apps, and device software.
Use strong passwords: Create unique,strong passwords for all accounts and change them frequently.
Be cautious of suspicious messages: Avoid clicking on suspicious links in unsolicited messages.
Never share sensitive information: Do not disclose passwords, PINs, or one-time passwords (OTPs) via phone, text message, or email.
Enable multi-factor authentication: Use multi-factor authentication whenever possible.
What Are the Cyberattack Trends in Africa?
The attack on MTN highlights the growing threat of cyberattacks in Africa. Africa faces a meaningful cybersecurity challenge, as underscored by the following data:
Highest Number of Attacks: Africa experienced the highest average number of weekly cyberattacks globally in the first quarter of 2025, with 3,286 attacks.
South Africa’s Increase: South Africa saw a 69% year-on-year increase, averaging 1,884 attacks per week.
Telecommunications Sector Surge: The telecommunications sector experienced a 94% increase globally, reaching 2,664 attacks per week.
Why are Telecommunications Companies Targeted?
Telecommunications companies are attractive targets for cyber attackers. Deloitte reports that they play a critical role in:
Building, controlling, and operating critical infrastructure used for communication.
Storing large volumes of sensitive customer data.
What Data is Targeted in Cyberattacks?
Customer data is a valuable target for hackers. They can use this data for:
Blackmail
Identity theft
Financial fraud
Launching further attacks
Key Takeaways and Recommendations from experts
Lionel Dartnall, Country Manager SADC for Check Point Software Technologies, stresses the importance of stronger cybersecurity measures. Organizations must prioritize strengthening their cyber security postures,given the continuous rise in attacks.
summary of Security recommendations
To summarize, here is a list of key security recommendations for MTN users:
| Suggestion | details |
| :———————– | :——————————————————————————————————————————— |
| Update Apps & Software | regularly update MTN, MoMo, banking apps and device software. |
| Strong Passwords | Use unique, strong passwords and change them often. |
| Be Cautious of Links | Avoid clicking on suspicious links. |
| Protect Sensitive Data | Never share passwords,PINs,or OTPs via phone,text,or email. |
| Use MFA | Enable multi-factor authentication (MFA) where available. |
