My research, reports, tutorials, thoughts and analysis.
A Security Advisory for Every Nigerian Organisation Still Making Itself a Soft Target
ByteToBreach strikes again! This time, the Nigerian power sector. He told me he was on a campaign against Nigerian institutions. It is time for Nigerian…
I Spoke With ByteToBreach: The CAC Breach, Sterling Bank’s €250,000 Ransom, and Why Nigeria
The threat actor behind Nigeria's biggest breach series answered my questions.
Sterling Bank & Remita: How a Global Hacker Walked Through Nigeria’s Banking Sector and Took Everything
How an unpatched vulnerability on a server at Sterling Bank set off a chain reaction that ended with a with a threat actor having access…
Sterling Bank Plc: Breach Technical Analysis
Attack Chain Reconstruction, Infrastructure Failure Analysis, and Indicators of Compromise
Coordinated Subdomain Takeover Identified on NIMC Web Infrastructure
In the past few weeks, Web Security Lab has identified a pattern of suspicious activity affecting multiple subdomains operating under the National […]
How I Passed the CompTIA SecurityX (CAS-005) Exam
I sat for the CompTIA SecurityX exam on February 12th, 2026, and passed. Here’s how I prepared, what worked, and what you […]
Subdomain Takeover of Nigeria Police Service Commission Website: Technical Report Released
Web Security Lab has released a technical incident report documenting a subdomain takeover involving website infrastructure operated under the Nigeria Police Service […]
How a Pizza Order Sparked Nigeria’s Landmark ₦3 Million Data Privacy Victory
Young lawyer's fight against unsolicited marketing messages became a landmark victory for digital rights in Africa's largest economy.
Exclusive: How Critical Security Flaw in MTN Portal Could Have Exposed Personal Data of Millions
Critical security vulnerabilities in MTN Nigeria’s self-service portal have been uncovered that could have potentially compromised the personal data of millions of […]