Nigeria’s financial services, Zenith Bank Plc has confirmed that cybercriminals gained unauthorized access to parts of its database.
In a notification sent to customers on Tuesday, the bank disclosed that the breach affected certain personal details, including customers’ email addresses and phone numbers.
It, however, assured customers that no sensitive banking credentials or financial systems were compromised.
According to the bank, the incident is linked to a wider global cyberattack that has targeted organizations across multiple sectors.
Zenith Bank stated that its core banking operations, digital platforms, and customer accounts remain secure and fully functional despite the breach.
The financial institution said it immediately activated its cybersecurity response protocols upon detecting the attack and has commenced a thorough investigation to determine the scope of the incident and strengthen its security architecture.
As part of its advisory to customers, the bank urged users to remain alert to phishing attempts, warning them against responding to suspicious emails, text messages, or phone calls requesting confidential banking details.
The bank also reminded customers never to disclose their passwords, Personal Identification Numbers (PINs), One-Time Passwords (OTPs), or any other security credentials to anyone.
Zenith Bank also thanked its customers for their continued confidence and assured them that investigations into the incident are ongoing.
The development comes nearly two years after Guaranty Trust Bank disclosed an attempted cyberattack on its website domain in 2024, although the bank maintained at the time that customers’ data remained secure.
It also follows repeated warnings by the Central Bank of Nigeria (CBN) over the growing threat of cyber fraud, with the apex bank cautioning Nigerians against fraudulent emails and online messages.
