Security+ Question of the Day
A SOC analyst discovers hundreds of failed logins followed by one successful login to the same account.
What should they suspect FIRST?
A. DDoS
B. Brute-force attack
C. SQL injection
D. ARP poisoning
Answer below.
@Sneaky_BuGGy One actually blocked my email recently simply because he evaluated my report wrongly, submitted new poc and since then, i was blocked other reports are not responded to as well
🚨 Security Concern Report
Dear @MTNNG, @MTN180 ,
This video, https://t.co/0oFEc3jnvk, recorded on 14 August 2026, demonstrates a security issue that I believe requires investigation
As shown in the video, a user connected to another subscriber’s mobile hotspot appears to be able to access sensitive subscriber actions, including options to purchase data or airtime associated with the subscriber/account
This raises an important security and privacy concern, as a person who is merely connected to another subscriber’s hotspot should not be able to access, initiate, or authorize sensitive account transactions (such as demonstrated in the video) without appropriate authentication or authorization
I recommend that you investigate whether this behaviour is intended and, if not, consider implementing an additional security control for sensitive actions,
for example, this supposed to be requiring independent subscriber verification before purchases or other account-affecting transactions can be completed, otherwise, kindly remove this feature
Note: I already instructed my team member to also escalate this matter with your security team ..
So kindly review the attached demonstration and confirm whether this behavior is expected
And If it is a security vulnerability (although it is 🌚) I hope it can be addressed promptly to protect your custormers (which I am one of )
Plus all my other security research contents, this video is also shared for responsible disclosure and security awareness purposes
Thank you for taking this security concern seriously!
I am @CoyEmerald1,
A security researcher from Lagos , Nigeria 🇳🇬 who has been helping with your #security for a long time , and you even titled me ni “Good Samaritan.” 😅
Sign of a scam Organization offering BBP😑
They will add this to their policy!
“Do not ask for updates, immediately you do that, your bug will be disqualified for bounty”
I can’t tag names now 😂 but eventually i will keep calling them out for 30 straight days!
A few days ago, while I was at the YabaTech premises on a personal assignment, I received an official invitation via email from Dr. Bashiru Lawal, the Dean, Faculty of Engineering and Computing at Lens University, Kwara State, to meet with their students
And ni ana 10th of August 2026, I took a short leave from our Cybersecurity study center to wa ni 23 Taiwo Akinsanya, Oshodi/Isolo, Lagos, 🇳🇬 , and, in the company of @blessingakaso , went to meet with some of Nigeria’s greatest students who have taken an interest in Computer Science, Cybersecurity, and other fields related to what I do as a Cybersecurity Specialist and Ethical Hacker
I once again appreciate the VC, Dr. Azeez Issa, for his service to education in Kwara State and Nigeria at large. And I also appreciate the opportunity to have a physical meeting with some of the @o_rangecybersec Cybersecurity students bi @Slimjhay14, @YoungAlhajj4060, @Rag_nickk
It was also a great pleasure to meet with all my dear brothers and friends bì busybrain , Omo Oba, Brother Saidi (Albarka Motors), Officer Easy and others
To all our students and clients who require my physical presence in Lagos, I’m back in Lagos, Nigeria, and ready to continue all our Cybersecurity and Ethical Hacking operations
Again, physical classes resume on Wednesday at 10am or according to your timetable.
@CoyEmerald1
Cybersecurity Specialist