Kenyan authorities are launching an investigation into a cyberattack that compromised the official website of President William Ruto, following the appearance of a ransom note demanding payment in Bitcoin. The incident, which occurred over the weekend, saw the homepage of president.go.ke replaced with a message demanding five bitcoins — valued at approximately $250,000 at current rates — to restore access to the site.
The government responded swiftly by taking the website offline on Saturday, and has since confirmed that no sensitive or confidential data was stolen. However, the attack underscores growing concerns about cybersecurity threats targeting high-profile government infrastructure in Kenya and beyond. The country’s National Cyber Security Centre (NCSC) has been notified, and officials are working to assess the full extent of the breach.
This incident is not isolated — cyberattacks on government entities have surged globally, often leveraging ransomware to extort payments. Experts warn that such attacks are increasingly sophisticated and may be politically motivated, especially when targeting national leaders. While the immediate threat appears contained, the event highlights the urgent need for robust digital defenses across public sectors. Kenya’s government is under pressure to demonstrate its resilience against digital threats, particularly as more services move online and digital trust becomes a cornerstone of governance.
The investigation is ongoing, with authorities analyzing logs and forensic data to identify the attackers and prevent future incidents. Meanwhile, cybersecurity experts are urging all government agencies to review their digital defenses and implement multi-layered security protocols.



