Segun Atanda/

Fresh claims of a major cybersecurity breach involving Remita have emerged on a dark web forum, with a threat actor known as “bytetobreach” alleging unauthorised access to the platform’s cloud storage systems.

The actor claims to have extracted roughly 3 terabytes of data, equivalent to millions of documents, from Amazon cloud infrastructure linked to the payment processor.

Of this, more than 800 gigabytes are said to consist of sensitive Know Your Customer (KYC) records, including identity cards, passports, photographs, bank statements, and utility bills.

The post, which has been widely shared via cybersecurity monitoring channels and social media platforms, also references internal databases, application source code, system logs, and so called “government HSM keys”, which are used to secure encrypted financial transactions.

Investigators say the alleged breach centres on Amazon S3, a widely used data storage service.

If accurate, this suggests a compromise of cloud hosted resources rather than a simple website level intrusion, raising concerns about deeper infrastructure exposure.

The same threat actor has reportedly been linked by online trackers to a recent incident involving Sterling Bank, although there is no official confirmation connecting the two events.

However, parts of the claim remain disputed or unclear. The actor alleges the exposure of more than 35,000 password hashes, yet cybersecurity analysts note that these credentials appear to match a separate, previously tracked leak, likely originating from malware infections rather than this incident.

This has raised the possibility that some elements of the post may be recycled or exaggerated.

Crucially, no publicly verifiable sample of the purported Remita data has been released at the time of reporting, making independent confirmation difficult.

VulnCheck Exploit & C2 Tracker and other cyber intelligence accounts have flagged the claims as plausible but unverified, urging caution in drawing conclusions.

For the general public, the situation means there is a claim, not yet proven, that a major payment system used by government and businesses may have been accessed by hackers.

If true, it could expose personal and financial data, but for now there is no confirmation that customer information has been widely leaked.

For specialists, the reported scope, spanning cloud storage, database layers, and cryptographic assets, suggests a potentially serious multi layer compromise.

At the same time, the lack of data samples, overlap with known credential leaks, and absence of an official statement point to the need for careful validation before assessing impact.

Observers are monitoring Remita for any formal response or disclosure. As of now, the company has not issued a public statement addressing the allegations.

Security experts advise users to remain alert but measured, checking accounts for unusual activity, updating passwords, and enabling additional protections where possible, while awaiting verified information from official sources.

0

By Editor

14 thought on “Alleged Remita Breach: Hackers Claim Leak of Massive Data Trove from Nigerian Payment Platform”
  1. As how nah i am still using remita for payments if there was any issue one would be aware already

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.