KRA’s official X account hacked, public warned against fraudulent posts
In a statement, KRA Corporate said urgent efforts are underway in collaboration with X to retrieve and secure the official account.
The official Kenya Revenue Authority (KRA's) X account has been hacked and its handle changed to “StandsX,” the KRA Corporate team confirmed.
Authorities have warned the public not to engage with the account, share personal information, or send money, as any posts or messages from the compromised account are fraudulent.
More To Read
- Businesses granted 30-day relief on long-stay container charges at Mombasa port
- Meta to deduct 5 per cent tax on Kenyan creators’ earnings in 2026
- National Treasury says weak revenue, high debt repayments straining Kenya’s budget
- Report warns of widening gap in Africa’s cyber resilience as attacks surge
- Government shifts cargo clearance to Nairobi, Naivasha in bid to decongest Mombasa Port
- High Court rules in favour of KRA in Sh1.1 billion tax dispute, orders fresh tribunal hearing
“Members of the public are strongly warned not to engage, share personal information, or send money to any messages or posts from this account, as they are fraudulent,” the statement read.
In a statement, KRA Corporate said urgent efforts are underway in collaboration with X to retrieve and secure the official account.
"Official updates will be shared through verified KRA communication channels. You can still reach us on Facebook: facebook.com/KRACare, or via WhatsApp 0711099999," the Authority stated.
The official @KRACare X (formerly Twitter) account has been hacked and its handle changed to “StandsX”. Members of the public are strongly warned not to engage, share personal information, or send money to any messages or posts from this account, as they are fraudulent. The Kenya… pic.twitter.com/ZmoFsJp3S7
— Kenya Revenue Authority (@KRACorporate) October 31, 2025
Cases of social media account hacks targeting official institutions have been quite recurrent in Kenya, with the Directorate of Criminal Investigations (DCI) among the entities previously affected.
Earlier this year, the DCI regained control of its X and Facebook accounts following a cyber-attack that saw hackers post information related to cryptocurrency and blockchain scams. The DCI team acted swiftly to recover the accounts and issued a statement clarifying that the content did not originate from the agency.
Top Stories Today