@thatboringbroi
iAccount based inNigeria
About this account
- Account based in
- Nigeria
- Connected via
- United States App Store
Account-level information from X, not a live location or the device used for a specific post.
cybersecurity engineer ☁️, sysadmin and software developer.
Joined September 2025
- Tweets1.4K
- Following264
- Followers343
- Likes3.3K
Pinned Tweet
creator of the Security Onion endorsing my grind? I'll definitely milk it!
Sguil quite literally changed my career. It made me a better defender and it was an integral part of the original version of Security Onion. Its workflows inspired our modern Security Onion Console and our new SO-CRATES project.
Much respect to Bamm Visscher, Richard Bejtlich, and others for this great tool!
redacted retweeted
20-year-old Cybersecurity graduate from Nigeria. 🎓
My interests sit around Cloud Security, DevSecOps, AI Security, threat intelligence, defensive security and cloud-native systems.
Over the past few years, I’ve earned certifications including AWS Certified Cloud Practitioner, Microsoft SC-200, ISC2 CC and the Google Cybersecurity Certificate, alongside multiple internships and hands-on security projects.
My final-year thesis focused on securing cloud-based LLM applications. I developed a risk assessment model, tested 35 attack scenarios across LLM, RAG, cloud infrastructure and application layers, and developed 14 hardening controls.
I’m now looking to take things further through a fully funded Master’s, scholarships, fellowships, and meaningful opportunities in cybersecurity.
If you know of opportunities I should look into, I’m always open to a pointer, introduction or a conversation.
RTs appreciated. ❤️
Ibrahim A. Yusuf, GMCPN
B.Sc. (Hons.) Cybersecurity 🎓
Pioneer President, NACSS UNIOSUN 24/26
1st Assembly Member, Faculty of Computing SRC
Failed a course in 100L. That one hit different. The kid who had always found school easy suddenly had to question himself.
I set out to become a 4-pointer and eventually did. Then somehow, university became certifications, multiple internships, projects, late nights, and a leadership journey that took me from the Faculty SRC to becoming NACSS’ pioneer President.
I tried to make NACSS bigger than just UNIOSUN too, spearheading the first attempt at connecting cybersecurity students across institutions for knowledge sharing and collaboration.
Four years later, there’s a lot to look back on.
Grateful for everyone who stood by me through it all.
Goodbye, UNIOSUN. ❤️🎓
redacted retweeted
“Till mama calls”
That’s how we ranted till 1AM😂
Big thank you to everyone who tuned in and special thanks to @gabbytech01, @cyber_rekk and @Olufela_Jr for sharing gems.
@Mydeen4u thanks in advance for the voucher 🙌🏾😂
Same time, same station, next week ✌🏽
one of the things I love about cybersecurity!
I found a bug in the latest docker release of OpenCTI - a widely used threat intelligence platform by cybersecurity professionals worldwide and submitted a github issue to help the team fix it. 👾
@FiligranHQ #ThreatIntel
Congratulations brother 🤍🎉
There’s a lotta good stuff ahead!
Ibrahim A. Yusuf, GMCPN
B.Sc. (Hons.) Cybersecurity 🎓
Pioneer President, NACSS UNIOSUN 24/26
1st Assembly Member, Faculty of Computing SRC
Failed a course in 100L. That one hit different. The kid who had always found school easy suddenly had to question himself.
I set out to become a 4-pointer and eventually did. Then somehow, university became certifications, multiple internships, projects, late nights, and a leadership journey that took me from the Faculty SRC to becoming NACSS’ pioneer President.
I tried to make NACSS bigger than just UNIOSUN too, spearheading the first attempt at connecting cybersecurity students across institutions for knowledge sharing and collaboration.
Four years later, there’s a lot to look back on.
Grateful for everyone who stood by me through it all.
Goodbye, UNIOSUN. ❤️🎓
I decided to do a capstone project for the Cloud Foundations course, so I built, attacked, investigated and secured a vulnerable Lambda function on @awscloud.
the full documentation + technical breakdown is on:
medium: medium.com/@devjoel880/serve…
github: github.com/thatboringbro/aws…
I had no idea this project mirrored the @CapitalOne 2019 data breach!
You can read more on CNN: edition.cnn.com/2019/07/29/b…
Check out the full technical walkthrough and my complete thought process on Medium and GitHub:
medium: medium.com/@devjoel880/how-i…
github: github.com/thatboringbro/Azu…
@segoslavia @judeosamor @ireteeh @TheCloudSE @Sisinerd @_DeejustDee @OnijeC @Xymbiz @Dstixx05 @KoredeSec
I built my own vulnerable Azure cloud just to break it—and then hunted myself using Microsoft Sentinel 🛡️
I wanted to prove what actually happens when a cloud identity gets stolen.
Here is a breakdown of my latest end-to-end Red/Blue team lab
The Defense:
I switched to Microsoft Sentinel to hunt the breach.
Using KQL, I traced the malicious file upload, found the SSRF payload in the HTTP logs, and engineered a custom Analytic Rule to automatically trigger a high-severity alert when an external IP uses OAuth.
The Remediation:
To kill the stolen token's access, I restricted the storage firewall to explicitly whitelist only the App Service outbound IPs.
Check out the full technical walkthrough, KQL queries, and my complete thought process on Medium:
medium.com/@devjoel880/how-i…
Ever wondered why your daily apps keep working despite having thousands of users sending requests simultaneously?
This is possible with technologies like Auto Scaling and Load Balancing.
Got my hands dirty with @awscloud Load Balancers and Auto Scaling Groups today. 🚀☁️