@HSC_Consulti
iAccount based inNigeria!
About this account
- Account based in
- Nigeria
- Connected via
- Nigeria App Store
! X says this location may be affected by a proxy or VPN.
Account-level information from X, not a live location or the device used for a specific post.
Affordable Cybersecurity Training & Services | Pentesting • OSINT • Forensics • Audits | 🌍 Building Africa’s Cyber Defenders
127.0.0.1
Joined March 2025
- Tweets1.3K
- Following28
- Followers4.1K
- Likes2.4K
Pinned Tweet
Welcome to Hybrid Security Consult – Africa’s Leading Cybersecurity Institution!
We offer:
✅ Free beginner cybersecurity training
✅ Affordable industrial training
✅ Ethical hacking & penetration testing
✅ Cloud & Web3 security
✅ Digital forensics & SOC analysis
Perfect research this how attackers would be able to bypass security due to steganography
Research carried out by @aptdaddy and the @hsc_consult has shown that ransomware compromised has used this method in advanced threat simulations leading to complete file encryption
A 1.47 MB JPG caught my attention today.
It looked out of place in the folder. I took a look under the hood. Using Steghide, I found an embedded ref.xml file inside the image.
To a regular user, it's just a JPG. It can be shared, uploaded, or passed around without anyone realizing they're helping transport hidden data. This is what secret communication can look like in plain sight.
It also got me thinking about Alternate Data Streams (ADS) vs Steganography. Both can be used to hide data inside or alongside another file. The difference is where the data is stored and what forensic artifacts are left behind.
𝐀𝐃𝐒 (𝐍𝐓𝐅𝐒): Data is stored in an alternate stream associated with the file. The primary data stream remains unchanged, and the additional stream isn't normally visible through standard Explorer browsing.
𝐒𝐭𝐞𝐠𝐚𝐧𝐨𝐠𝐫𝐚𝐩𝐡𝐲: Data is embedded into the container itself. Depending on the technique, this can affect the file's structure, metadata, size, or other measurable characteristics. Same objective, different artifacts.
Personally, when working with NTFS, I'd lean toward ADS for two reasons.
1. The visible file size stays the same.
The hidden data exists in an alternate stream rather than the primary file content.
2. The primary file remains intact.
The original data stream isn't modified, allowing the file to continue functioning normally while additional data exists alongside it.
That's what makes this interesting from a forensic perspective. A file can look completely ordinary in Explorer while containing data that isn't immediately visible. Simple to implement, easy to overlook.
Knowing where to look matters just as much as knowing what to look for.
NETWORKING THE CORE FUNDAMENTAL OF SECURITY KNOW HOW YOUR NETWORK WORKS YOU CAN PROTECT ALOT OF INFRASTRUCTURE
Final call for all the digital forensic class and our 80 discount For all classes
Registrations ends today
Visit hybridsecconsult.com
Hybrid Security Consult retweeted
A deleted chat can become very important in an investigation.
Maybe someone says the conversation happened.
Another person says it didn't.
Maybe the message is relevant to a dispute or an investigation.
Welcome to the team
excited to announce that I got an internship at @HSC_Consult. Thank you @h4ruk7 for the opportunity to learn, contribute and work alongside with you.
eventually want to see the results of my ambition!
Finally call to learn forensic registration closes this Friday book your sloth now
Hybridsecconsult.com
HOW THE API SUMMIT WENT AND THE HOW ATTACKERS EXPLOIT API
hybridsecconsult.com/blog/ap…
Representing Hybrid Security Consult at the Nigeria API Shield Summit! 🇳🇬⚡
We tackled API security, BOLA mitigations, and OWASP AI risks (excessive agency).
Huge win: Our HSC rep placed 2nd in the CTF, winning a CASA voucher & ASCP cert! 🏆🔥
#APIShieldSummit #cyberik #hsc
Do you want to learn digital forensic and investigation here is your chance
Get started in DFIR with us today use the discount code to get started
Hybridsecconsult.com
Hybrid Security Consult retweeted
The first thing I want to know before I touch a device isn't:
“What forensic tool should I use?”
It's:
“What are we trying to establish?”
Because the answer changes the investigation.
This is why you need to register for our forensic course and learn how evidence abd handled
File intergrity
Mobile forensic
System forensic
Cloud forensic and more
Visit hybridecconsult.com to get started
Hybrid Security Consult retweeted
DAY 3 bug bounty challenge
Today I read reports on authentication vulnerabilities on mobile application and set up my lab for dynamic analysis using genymotion and burpsuite to proxy traffic
The pentest for @HSC_Consult client begins tonight
Happy havking
We carried out forensic investigations for our clients and they were amazed if you haven’t registered for the forensic class
Kindly visit hybridsecconsult.com to get started don’t snooze
60 percent discount till on
Static analysis: your code could be a loophole for attackers to break in your application,code error,poorly written code or bad code could be exploited by attackers
Securing your code is very important and security should not be an afterthought
#cybersecurity
Day 1 and day 2 bug bounty challenge found a race condition but the endpoint it was found doesn’t really have much impact so it was reported
Today me and @zoecyber001 carried out a static analysis on a company that reach out to @HSC_Consult for a penetration test
Ciao
Hybrid Security Consult retweeted
“Find everything.”
Sounds like a good investigation instruction.
It isn’t.
Everything is not the same as evidence.
A phone can contain thousands of messages, images, app records, browser entries, files and system artifacts.
WPA-TKIP was only ever a band-aid on WEP. 🩹
Built on RC4, its weak "Michael" MIC algorithm lets attackers decode keystreams & inject malicious packets—without knowing your Wi-Fi password.
Deprecated in 2012. Disable mixed mode and switch to WPA2-AES/WPA3! 🔒 #CyberSecurity #Inf
Family dispute can be annoying especially when a deceased person didn’t leave a will of how his money would be shared and then there phone is locked and then everyone is fighting for rhe inheritance but unable to uncover anything digital forensic plays a huge role here
Digital forensic unveils the truth tells about information and create a constructive investigation timeline of events of how a particular incident happens
Logs are keep
Metadata in check
Nothing is forgotten deleted chats unlocks
The hidden secrets
forensic is powerful