Virtual Cyber Drill on Supply Chain Attack Response – Programme 

Date: Wednesday, 22nd April 2026
Time: 2:00 PM – 5:00 PM EAT
Platform: RangeTime (CTFROOM Cyber Range)
Target Participants: National Incident Response Teams
Virtual Meeting Platform: Teams, Link to be provided

Participation: Free of charge

 

Background

AFRALTI is a renowned ICT capacity development institute with extensive experience across Africa. CTFROOM is a cyber range and cyber drill firm focused on strengthening practical cyber resilience through immersive, hands-on exercises.

CTFROOM’s will be providing a dedicated cyber range platform designed for guided cyber exercises, operational rehearsals, and realistic cyber drill delivery. Unlike traditional capture-the-flag platforms, the platform supports structured exercises that simulate real-world operational conditions, promote coordinated team participation, and assess incident response readiness.

AFRALTI and CTFROOM are collaborating to deliver a Virtual Cyber Drill on Supply Chain Attack Response, testing the resilience, coordination, and decision-making capabilities of national incident response teams against a scenario leveraging CVE-2025-15556.

 

Purpose of the Exercise

The cyber drill aims to:

  • Provide national incident response teams with an opportunity to rehearse a realistic, high-impact supply chain compromise scenario.
  • Assess operational preparedness in detection, analysis, coordination, containment, communication, and recovery.
  • Deliver structured feedback through the Cyber Resilience Score Card, enabling teams to convert performance insights into practical resilience improvements.

Scope and Focus

The drill will simulate a supply chain attack affecting trusted software or service delivery channels. Participants will be evaluated across key response functions, including:

  • Incident detection and triage
  • Technical analysis and validation of compromise
  • Coordination within and across national incident response functions
  • Containment and eradication decision-making
  • Stakeholder communication and reporting
  • Recovery planning and post-incident reflection
Programme Schedule (2:00 PM – 5:00 PM EAT)
TimeSessionOverview
2:00 – 2:15 PMOpening & ContextWelcome remarks, objectives, exercise rules, and introduction to RangeTime and the Cyber Resilience Score Card
2:15 – 2:30 PMScenario BriefingOverview of the supply chain attack scenario (CVE-2025-15556), team roles, and exercise expectations
2:30 – 3:30 PMDrill Phase 1 – Detection & AnalysisMonitor for indicators of compromise, perform technical analysis, validate findings, and identify critical assets
3:30 – 4:15 PMDrill Phase 2 – Coordination,
Containment & Communication
Coordinate response within and across teams, decide on mitigation measures, and manage stakeholder communication
4:15 – 4:45 PMRecovery & ReflectionDevelop recovery plans, restore systems, reflect on decisions and team performance, identify lessons learned
4:45 – 5:00 PMDebrief & FeedbackReview Cyber Resilience Score Card results, highlight strengths and gaps, and discuss actionable next steps
CTFROOM
Consent