Connecting Africa is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them. Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 3099067.


Kenya, SA worst hit by mobile payment fraud

Article Image
Mobile payment-related fraud is more prevalent in Africa than you would think, and it is estimated to be worth about $4 billion annually on the continent.

That's according to David Lotfi, CEO of mobile payment cybersecurity company Evina which analyzes more than 16 million transactions per day worldwide.

"In the Middle Eastern and African regions, the mobile fraud rate recorded beginning of 2021 was at 27% and of these fraudulent attacks, 60% were clickjacking and 19% malicious apps," Lotfi told Connecting Africa.

Lotfi said the top two African countries where mobile fraud is most prevalent are Kenya and South Africa. Evina's network of fraud sensors found that 51% of mobile-based transactions in Kenya were identified as suspect; while the percentage was 30% for South Africa and 10% in Cameroon.

"In Africa, we have the perfect storm of a youthful population using almost a billion mobile money accounts coupled with the Coronavirus-related one-third increase in Internet traffic," he said.

Founded in Paris, Evina's anti-fraud technology was created for mobile network operators (MNOs), merchants and payment gateways to fend off fraud and conquer new markets.

"Simultaneously we have a global money honeypot network active 24/7 worldwide that attracts fraudsters and reverse-engineers their mechanisms to get a better understanding from the inside out. All of this data is processed through edge computing which allows us to understand the data closest to the end user and assure the quickest response," Lotfi explained.

Have you been clickjacked?

Lotfi said mobile payment fraud is perpetrated by cybercriminals who commonly use malware to deprive an unknowing victim of funds via payment methods like mobile wallets or direct carrier billing (DCB).

Clickjacking is one of the more common types and has been around for over five years, but Lotfi said it can easily be blocked.

"Through the clickjacking technique, a fraudster intercepts a legitimate click and unknowingly directs the user to a website where sensitive financial and other details can be stolen.

"A specific example of this might include where the user clicks on a video they would like to play, but the click is intercepted by mobile fraudsters and ends up making a payment in the background while the user views the video. There are countless variations here but the model is the same," Lotfi explained.

Another very common technique is using malicious apps, which mobile users often download thinking they are legitimate apps.

"Malicious apps are trickier, these apps have been injected with malware during a disguised app update or right from the start when the user unwittingly downloads the app from the app store, with the same purpose of defrauding the user," he said.

He said fraudsters conceal malware in several common categories of apps such as wallpaper, flashlight and fitness tracker applications.

Protecting the ecosystem

Lotfi said that MNOs also need to better understand the negative impacts of fraud on their business and the entire mobile ecosystem, beyond money loss.

"The consequences of mobile fraud attacks go much deeper. MNOs can experience a breakdown of trust in their business relationships, damages to their brand image from the rise of fraud-related complaints, and restricted business opportunities," he added.

"Once this is understood, MNOs who are the orchestrators of mobile payments through DCB, need to protect themselves with the right anti-fraud solutions," Lotfi said. "MNOs have the right tools to fight mobile fraud, they just need to make cybersecurity their 2021 priority to decrease fraud and boost their business."

Evina is now protecting up to 90% of mobile DCB transactions in Ivory Coast, Morocco and Senegal. The French company also secures traffic in African countries Mali, Ghana, Congo, Kenya, Botswana, Angola, Algeria, Tunisia, Egypt and Libya.

Lotfi says the continent is a key growth region for the firm.

"Africa is a strategic region of huge importance to Evina and the greater mobile industry because this is where strong double-digit growth is coming from. We cannot allow mobile fraudsters to gain a beachhead on this pivotal continent key to the future fortunes of so many telcos, aggregators and digital merchants," he said.

*Top image is of Evina CEO David Lotfi (Source: Evina).

Paula Gilbert, Editor, Connecting Africa

Innovation hub


Interview: Juliet Ehimuan on Africa's next wave of innovation

Juliet Ehimuan, founder and CEO of Beyond Limits Africa and ex-MD of Google West Africa, spoke to Connecting Africa about the next wave of innovation in Africa and the continent's digital future.


InDrive enters Zimbabwe's Bulawayo

Ride-sharing platform InDrive is expanding its services to Zimbabwean city of Bulawayo after successfully introducing its services in the capital of Harare in May this year.

More Innovation hub

Latest video

More videos

Industry announcements

More Industry announcements

Sponsored video

More videos

Partner perspectives

All Partner Perspectives

Africa Tech Perspectives


The 100 most influential African leaders in 2023

A new report from Africa Tech Festival and Connecting Africa puts a spotlight on the top 100 African leaders in the telecoms and technology sector in 2023.


Deep dive into East Africa's tech startup ecosystem

New survey reveals a lack of access to investors, reliance on international VCs and global recession trends as the biggest barriers for East African tech startups to access funds.


Challenges and opportunities for women's tech careers

A new survey reveals that COVID-19, the cost-of-living crisis, skills shortages and a lack of mentorship have negatively affected women's career development over the past two years.

More AfricaCom perspectives

Upcoming events

Nextv Series Africa
October 4-5, 2023
Hotel Sky Sandton, Johannesburg
Africa Tech Festival, Home of AfricaCom and AfricaTech
November 13-16, 2023
CTICC, Cape Town
More Upcoming events

Flash poll

All polls

Guest Perspectives


Omdia View: August 2023

By Omdia Analysts

Highlights in August 2023 in the Middle East and Africa included a commercial 5G launch from Ethio Telecom and the signing of a virtual wheeling agreement between Vodacom South Africa and Eskom – that and more in this month's Omdia View.


Omdia View: February 2023

By Omdia Analysts

In February 2023 key events in the Middle East and Africa included a major Internet project for Africa's underserved by Liquid Intelligent Technologies and Microsoft as well as a 5G launch in Tanzania – that and more in this month's Omdia View.

More Guest Perspectives

Like us on Facebook

Newsletter Sign Up

Sign Up
Tag id I-0000192