Blue CTF (MS17-010 / EternalBlue)
Full penetration test on a vulnerable machine — from Nmap reconnaissance and Metasploit exploitation of EternalBlue to post-exploitation privilege escalation and flag capture.
Cybersecurity Analyst & Penetration Tester
I find your vulnerabilities before attackers do — and give you a clear, actionable plan to fix them. Working remotely with businesses across the US, Europe, and beyond.
Most businesses discover a breach only after damage is done — stolen data, downed systems, or a ransom demand. I help you find and fix the weaknesses in your network, systems, and applications before that moment arrives.
I'm a certified cybersecurity analyst based in Abuja, Nigeria, working with clients remotely across the US, Europe, and beyond. My work spans vulnerability assessments, penetration testing, SOC analysis, and security awareness training for teams that handle sensitive data.
I use tools like Nmap, Wireshark, Kali Linux, Splunk, and Microsoft Azure Security to simulate real-world attack scenarios — so you get a realistic picture of your exposure, not just a checklist. Every engagement ends with a plain-English report your team can actually act on.
I hold certifications from ISC2, Google, Microsoft, and the University of Maryland — and I bring the same rigour to a small business audit as I do to enterprise training engagements.
All engagements are conducted remotely. Contact me to discuss scope and get a custom quote.
Identify security weaknesses in your network, systems, or web applications before attackers do — with a risk-rated report and clear fix roadmap.
Simulated real-world attacks to verify whether your defences actually hold. You get proof of what an attacker could do — and how to stop them.
From staff security awareness workshops to one-on-one certification coaching — practical training that actually changes behaviour.
Real-world simulations, CTF challenges, and hands-on lab work demonstrating practical security skills.
Full penetration test on a vulnerable machine — from Nmap reconnaissance and Metasploit exploitation of EternalBlue to post-exploitation privilege escalation and flag capture.
Gained access via a file upload vulnerability (bypassing filters with .phtml) and escalated privileges to root by exploiting a SUID misconfiguration on systemctl.
Identified a command injection vulnerability in a newsletter signup form. Bypassed validation and used Commix to gain an OS shell, then located and retrieved a hidden backup file.
Performed a simulated SOC malware investigation, analyzing PCAP data in Wireshark to uncover IOCs, map the infection chain, and deliver a detailed incident report with remediation steps.
Built a proof-of-concept AI tool that ingests security logs and PCAP files to automatically summarise incidents and recommend mitigation steps, reducing analyst workload.
Designed and configured a multi-VLAN network on a Layer 3 switch to segment traffic and enable secure, controlled communication between different network departments.
Implemented a secure network topology using a Cisco ASA firewall to create distinct security zones (Office, Guest, DMZ) and enforce a strict access control policy.
Designed and simulated a secure network with VLAN segmentation, ACLs, port security, and a DMZ to create a multi-layered, resilient architecture aligned with defence-in-depth principles.
Developed a hands-on guide demonstrating essential data cleaning techniques in spreadsheets (Find/Replace, Pivot Tables) and SQL (CASE statements) to ensure data integrity and reliability for downstream analysis.
Utilised Windows Event Viewer to diagnose and resolve a series of system issues, including low disk space, a malicious process, and incorrect file permissions — demonstrating a systematic, evidence-based approach to troubleshooting.
All credentials are verified and publicly accessible. Click any certificate to verify.
Whether you need a one-time vulnerability assessment, an ongoing security partnership, or training for your team — I'd love to hear about your situation. I typically respond within 24 hours.