As technology converges, so does cybercrime

Issue 1 2025 Editor's Choice

When someone told 22-year-old Bridget Motari about job opportunities in customer services in Thailand, she jumped at the chance. Today, she realises it was the worst decision of her life.

A fake agency website lured the young Kenyan woman to apply for a job, but when she reached South-East Asia, she was forced to work for an online scam centre run by a Chinese cartel in the Golden Triangle – an infamous region between Myanmar, Laos, and Cambodia.


Anna Collard

Bridget’s story1 is, unfortunately, not unique. Many Africans and Southeast Asians have been trapped by similar schemes and coerced to work either in prostitution or for scam cartels. According to a recent report by the United Nations Office on Drugs and Crime (UNODC)2, transnational organised crime is evolving faster than law-enforcement agencies can keep up with it.

The report estimates that cyber-enabled fraud resulted in between $18 billion and $37 billion in financial losses from scams targeting victims from East and Southeast Asia in 2023 alone.

Global connectivity fuels cybercrime convergence

Cybercrime convergence is proliferating – not just in Asia, but around the world – because digital technologies are enabling unprecedented collaboration between different criminal networks. Digital platforms enable seamless communication across borders, allowing criminal networks that used to operate independently in specific niches to coordinate operations without physical barriers.

Thanks to the Dark Web, these platforms facilitate the exchange of tools, data and expertise between cybercriminals, human traffickers and organised crime groups.

Artificial intelligence has also been a boon for cybercriminals. Tools such as AI-driven deepfake technology, bots, and automation streamline processes like phishing, identity theft, and fraud, making collaboration between cybercriminals more efficient.

These malicious actors belong to highly sophisticated syndicates and complex networks of money launderers, human traffickers, state actors and other ‘service providers’.

Weaponisation of data

But how do these cartels work? In some cases, cybercriminal groups are state-sponsored – China, Russia, and North Korea are the biggest culprits. State actors sometimes fund or collaborate with organised cybercriminal groups to spy on or attack infrastructure with plausible deniability.

For example, North Korean state-backed hackers are known to collaborate with organised crime for financial fraud, money laundering, cryptocurrency theft and espionage.

Closer to home, the Yahoo Boys3, part of the Black Axe syndicate originating from West Africa, but operating all over the continent, combine romance scams with financial fraud, often procuring stolen credentials and tools from other cybercriminals and targeting vulnerable groups such as teenage boys with their highly automated and effective sextortion scams.

Ransomware as a service (RaaS) operators are cybercriminals who can be contracted to execute large-scale cyber extortion attacks. Often working with a network of partners, also called affiliates, they operate similarly to legitimate ‘as-a-service’ providers, with commissions, subscription services, and 24/7 call centres.

These groups work together to steal data or disrupt business operations to extort their victims. According to the threat intelligence group Analyst14, cybercriminal gangs are increasingly collaborating to infiltrate organisations and perform ransom operations together. After one gang compromises and steals a victim’s data, it passes it on to another gang, which negotiates a ransom based on the leaked data.

As Analyst1 notes, this type of collaboration would not be possible unless a well-established relationship of trust existed between the various malicious actors.

What can organisations do?

1. Foster collaboration and threat intelligence sharing. We cannot face this threat alone. So, organisations should actively participate in threat intelligence sharing platforms, public-private partnerships, law enforcement agencies, and industry collaborations to stay ahead of evolving cybercrime tactics. Monitoring the dark web and aligning with global cybersecurity initiatives can provide critical insights into emerging threats and bolster collective defences.

2. Enhance cyber resilience through advanced technology and preparedness. Adopt a Zero Trust approach, implement AI-driven security tools, and strengthen endpoint detection to minimise vulnerabilities. Regularly test and refine incident response plans, segment networks, and maintain secure backups to reduce the impact of ransomware and other multi-vector attacks.

3. Prioritise human risk management and supply chain security. Invest in continuous employee training to build a security culture and increase awareness of the latest social engineering and ransomware tactics, while simulating attacks to improve readiness. Assess and monitor third-party vendors to mitigate supply chain risks, and ensure alignment with global cybersecurity frameworks like NIST and ISO 27001 to maintain a strong security posture.

Lastly, by developing proactive rather than reactive defences, security teams can anticipate and adapt to the evolving threats posed by cybercriminal collaboration and the complexities of digital convergence.

[1] https://tinyurl.com/3tpspzsz (redirects to https://www.lemonde.fr/en/le-monde-africa/article/2024/10/28/how-the-chinese-mafia-kidnaps-africans-to-swindle-westerners_6730781_124.html).

[2] https://tinyurl.com/h9aphn45 (redirects to https://www.unodc.org/roseap/uploads/documents/Publications/2024/TOC_Convergence_Report_2024.pdf).

[3] https://tinyurl.com/3my9cb7k (redirects to https://www.bbc.com/news/articles/cr7rxpdyz9yo).

[4] https://tinyurl.com/2a7y8vww (redirects to https://analyst1.com/ransomware-centric-collection-and-threat-profiling/).




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

What is your ‘real’ security posture?
BlueVision Editor's Choice Information Security Infrastructure AI & Data Analytics
Many businesses operate under the illusion that their security controls, policies, and incident response plans will hold firm when tested by cybercriminals, but does this mean you are really safe?

Read more...
What is your ‘real’ security posture? (Part 2)
BlueVision Editor's Choice Information Security Infrastructure
In the second part of this series of articles from BlueVision, we explore the human element: social engineering and insider threats and how red teaming can expose and remedy them.

Read more...
IQ and AI
Leaderware Editor's Choice Surveillance AI & Data Analytics
Following his presentation at the Estate Security Conference in October, Craig Donald delves into the challenge of balancing human operator ‘IQ’ and AI system detection within CCTV control rooms.

Read more...
Onsite AI avoids cloud challenges
SMART Security Solutions Technews Publishing Editor's Choice Infrastructure AI & Data Analytics
Most AI programs today depend on constant cloud connections, which can be a liability for companies operating in secure or high-risk environments. That reliance exposes sensitive data to external networks, but also creates a single point of failure if connectivity drops.

Read more...
Toxic combinations
Editor's Choice
According to Panaseer’s latest research, 70% of major breaches are caused by toxic combinations: overlapping risks that compound and amplify each other, forming a critical vulnerability to be exploited.

Read more...
Continuum launches centralised access and identity management
Editor's Choice Access Control & Identity Management Integrated Solutions Facilities & Building Management
Continuum Identity is a newly launched company in the identity management and access control sector, targeting the complexity of managing various Access and Identity Management (AIM) systems.

Read more...
Making drone security more accessible
Editor's Choice Integrated Solutions Residential Estate (Industry) AI & Data Analytics IoT & Automation
Michael Lever discusses advances in drone technology, focusing on cost reductions and the implementation of automated services, including beyond line of sight capabilities, for residential estates with SMART Security Solutions.

Read more...
Private fire services becoming the norm?
Technews Publishing SMART Security Solutions Editor's Choice
As the infrastructure and service delivery in many of South Africa’s major cities decline, with a few, limited exceptions, more of the work that should be done by the state has fallen to private companies.

Read more...
View from the trenches
Technews Publishing SMART Security Solutions Editor's Choice Integrated Solutions Security Services & Risk Management Residential Estate (Industry)
There are many great options available to estates for effectively managing their security and operations, but those in the trenches are often limited by body corporate/HOA budget restrictions and misunderstandings.

Read more...
SMART Estate Security Conference KZN 2025
Arteco Global Africa OneSpace Technologies SMART Security Solutions Technews Publishing Editor's Choice Integrated Solutions Security Services & Risk Management Residential Estate (Industry)
May 2025 saw the SMART Security Solutions team heading off to Durban for our annual Estate Security Conference, once again hosted at the Mount Edgecombe Country Club.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.