Cyber Fraud in Nigerian Banks: Trends, Regulatory Gaps, and Mitigation Strategies (2020–2025)
Downloads
Cyber fraud poses a growing threat to Nigeria’s banking sector, driven by rapid digitalisation, expanding electronic payment systems, and weaknesses in cybersecurity governance. Although reported fraud incidents have declined, financial losses rose sharply from ₦17.67 billion in 2023 to ₦52.26 billion in 2024, indicating increased attack sophistication. This study qualitatively reviews literature, regulatory frameworks, and major fraud cases between 2020 and 2025 to examine the drivers, impacts, and control gaps in Nigerian banks. The key challenges identified include legacy system vulnerabilities, insider collusion, weak internal controls, and regulatory enforcement gaps. The paper evaluates mitigation strategies within the context of Nigeria’s evolving regulatory landscape. The findings show that regulatory and law enforcement measures alone are insufficient without strong technical controls, effective governance, staff awareness, and sustained public–private collaboration to enhance cybersecurity resilience.
Association of Certified Fraud Examiners. (2022). Occupational fraud 2022: A report to the nations. ACFE. https://www.acfe.com
Central Bank of Nigeria. (2023). Risk-based cybersecurity framework and guidelines for deposit money banks and payment service banks. https://www.cbn.gov.ng
Central Bank of Nigeria. (2025). Draft guidelines on fraud risk management and customer protection. CBN. https://www.cbn.gov.ng
Committee of Sponsoring Organizations of the Treadway Commission. (2017). Enterprise risk management: Integrating with strategy and performance. COSO. https://www.coso.org
Economic and Financial Crimes Commission. (2023). Annual report. https://www.efcc.gov.ng
GSMA. (2021). Preventing SIM swap fraud. GSMA. https://www.gsma.com
Institute for Security Research and Conflict Law. (2022). Cybercrime enforcement and financial fraud trends in Nigeria.
INTERPOL. (2022). Cyber-enabled financial crime: Global threat assessment. INTERPOL. https://www.interpol.int
INTERPOL. (2022). Global cybercrime operations and joint task forces. INTERPOL. https://www.interpol.int
Nigeria Deposit Insurance Corporation. (2023). Annual report and statement of accounts. NDIC. https://www.ndic.gov.ng
Nigeria Inter-Bank Settlement System. (2023). Fraud risk management and information sharing framework. https://www.nibss-plc.com.ng
Nigeria Inter-Bank Settlement System. (2023). Industry guidelines on fraud reporting and information sharing. NIBSS. https://www.nibss-plc.com.ng
National Information Technology Development Agency. (2023). National cybersecurity policy and guidelines. https://www.nitda.gov.ng
National Institute of Standards and Technology. (2020). Security and privacy controls for information systems and organizations (SP 800-53 Rev. 5). NIST. https://www.nist.gov
Pulse Nigeria. (2025). CBN proposes 72-hour fraud reporting rule for bank customers. https://www.pulse.ng
Reuters. (2024). Nigeria fines Fidelity Bank ₦555.8 million for data privacy violations. https://www.reuters.com
ThisDay Live. (2022). Banks tighten internal controls amid rising fraud cases. https://www.thisdaylive.com
United Nations Office on Drugs and Crime. (2021). Handbook on cybercrime investigations.UNODC. https://www.unodc.org
