Terminal operators across several West and Southern African ports have reported an uptick in phishing attempts targeting logistics and finance staff, prompting a wave of internal security awareness campaigns and tighter email authentication controls.

Security teams say the attempts have largely mimicked routine shipping documentation, such as bills of lading and customs notices, in an effort to trick staff into opening malicious attachments or revealing credentials.

No operator has confirmed a successful breach of core terminal operating systems, and port cybersecurity officials say the incidents so far have been contained to email-based social engineering rather than direct intrusion into operational technology networks.