At Harrenapay, I conducted an authorized penetration test across three production platforms, moving from DNS reconnaissance to authenticated application testing.
I used WhatWeb, theHarvester, crt.sh, and Gobuster to map the attack surface, then analyzed application traffic with Burp Suite on Kali Linux. I identified authentication and business-logic issues, as well as infrastructure and configuration exposures.
I documented the methodology, findings, risk ratings, and remediation guidance in written reports for each target. I also applied OWASP Top 10 categories to structure findings and prioritize recommendations.
Through Tech Opp Africa, I support cybersecurity learning activities and teach digital literacy and cybersecurity fundamentals to youth in underserved communities. I’m also building cloud fundamentals through self-directed study of AWS and GCP core services and IAM concepts.

