Artificial intelligence is now driving 55 per cent of reported cybercrimes across Africa, making attacks faster, more sophisticated and increasingly difficult to detect, according to INTERPOL’s African Cyberthreat Assessment Report 2026.
The report warns that the continent’s rapid digital transformation, marked by more than 1.1 billion mobile subscribers in 2025, is being matched by an equally rapid evolution in cybercrime, while fragmented legislation and limited AI readiness among law enforcement agencies continue to weaken responses.
The 40-page assessment, based on survey data from 36 African member countries, said cybercrime has shifted from isolated criminal activity to an industrialised, borderless ecosystem powered by AI.
According to the report, East Africa has become a hotspot for mobile money fraud and ransomware attacks targeting critical infrastructure, while business email compromise (BEC) and romance scams are widespread across Central and West Africa.
Southern Africa, it noted, has become an attractive target for international cybercriminals due to its high level of internet connectivity.
The report also highlighted the growing financial impact of cybercrime across the continent, revealing that losses have more than doubled since 2024, rising from 192 million dollars to 484 million dollars.
It attributed the increase largely to AI-enabled scams, credential harvesting and automated social engineering attacks.
INTERPOL said online scams remained the most commonly reported form of cybercrime in 2025, with criminals exploiting mobile money platforms, social media and AI-generated content to deceive victims.
It added that 72 per cent of surveyed countries reported the existence of scam centres, with the highest concentration recorded in Southern and West Africa.
The report further identified digital sextortion and online harassment as persistent threats, driven increasingly by AI-generated deepfakes and synthetic media.
According to data from TrendAI, one of INTERPOL’s partners, about 600,000 sextortion incidents were detected during the reporting period.
Business email compromise schemes have also become more sophisticated, with AI being used to generate highly convincing email communications.
The report said Africa-based threat actors are increasingly targeting victims in Europe and North America using cyber infrastructure spread across multiple jurisdictions.
INTERPOL warned that the absence of real-time information sharing between banks, telecommunications companies and law enforcement agencies has created significant vulnerabilities in tackling financial cybercrime.
It said cybercriminals are no longer relying solely on stolen credentials but are now creating AI-generated synthetic identities by combining genuine personal information with fabricated details.
These synthetic identities, the report noted, have been used to bypass biometric verification systems, open bank accounts, obtain mobile loans and register SIM cards under false identities.
Director of INTERPOL’s Cybercrime Directorate, Neal Jetton, described cybercrime as one of the most significant criminal threats facing Africa.
“Cybercrime has emerged as one of the most significant criminal threats to the region. AI is automating every stage of a cyberattack from reconnaissance and phishing to extortion and evasion.
“However, we see that when countries work together, cybercriminal infrastructure can be identified, disrupted and dismantled,” he said.
Despite the growing threat, the report highlighted progress in strengthening cybersecurity across the continent.
It disclosed that 17 African countries enacted or amended cybercrime legislation in 2025, while Senegal launched an online reporting platform to improve responses to online offences affecting children.
The report also noted that regional capacity-building initiatives are helping to improve long-term cyber resilience.
INTERPOL said four major cybercrime operations conducted in 2025, Operation Serengeti 2.0, Operation Contender 3.0, Operation Sentinel and Operation Red Card 2.0, resulted in more than 1,500 arrests, the seizure of hundreds of electronic devices and the recovery of over 100 million dollars.
To address the growing threat, the report recommended the adoption of standardised digital forensic capabilities, stronger cross-border collaboration, greater investment in AI literacy for law enforcement personnel and formal public-private partnerships to improve cybercrime prevention, detection and response.
The African Cyberthreat Assessment 2026 forms part of INTERPOL’s African Joint Operation against Cybercrime initiative, funded by the United Kingdom’s Foreign, Commonwealth and Development Office, with data contributions from Fortinet, Mastercard, the Shadowserver Foundation, S2W and TrendAI.
Follow Us on Google News
Follow Us on Google Discover