EFCC arraigns two for supply of FCMB access credentials
The Economic and Financial Crimes Commission (EFCC) has arraigned Gideon Aghogho and Oscar Ebere Chukwuebuka in Lagos for allegedly supplying access credentials to First City Monument Bank's (FCMB) database. A third suspect, identified as Scott, remains at large.
Intelligence analysis by Gemini 2.5 Flash
Two individuals have been charged by Nigeria's anti-graft agency, the EFCC, for their alleged involvement in providing unauthorized access codes to a major bank's system. This legal action highlights the ongoing battle against cybercrime within the country's financial sector and the efforts to hold perpetrators accountable.
Imagine someone gave away the secret password to a bank's special computer system, like giving away the keys to a treasure chest. The police, called EFCC, caught two people who allegedly did this and are taking them to court because it's a very serious crime that could let bad guys steal money or mess with people's accounts.
Analysis
Gideon Aghogho
Gideon Aghogho and Oscar Ebere Chukwuebuka have been formally arraigned by the Economic and Financial Crimes Commission (EFCC) before the Federal High Court in Lagos. The core accusation against them is the alleged supply of access credentials to First City Monument Bank's (FCMB) database. This alleged conspiracy reportedly took place between July 24 and 26, indicating a specific window of illicit activity.
The charges detail that the defendants conspired to supply Mr. Aghogho’s access code to FCMB’s system. This was allegedly achieved by utilizing the bank’s local Administrative Credential, specifically referred to as ITSD. The involvement of a third suspect, identified only as Scott, who is currently at large, suggests a potentially broader network or coordinated effort behind the alleged breach, adding complexity to the investigation.
First City Monument Bank
The incident directly impacts First City Monument Bank, raising concerns about the security of its internal systems and the integrity of its data. The alleged compromise of access credentials, particularly through an administrative credential, points to a significant security vulnerability that could have far-reaching consequences for customer information and financial transactions. Such breaches can erode public trust and necessitate extensive internal reviews and security enhancements.
For FCMB, this arraignment serves as a stark reminder of the constant threats faced by financial institutions, whether from external hackers or internal collusion. Protecting sensitive banking infrastructure requires continuous vigilance and robust cybersecurity measures. The bank will likely need to reassure its customers and stakeholders about the security of their assets and data, while cooperating fully with the ongoing investigation to mitigate any potential damage.
Cybercrimes Act
The charges against Aghogho and Chukwuebuka are brought under Sections 27 and 28(1)(b) of the Cybercrimes (Prohibition, Prevention, Etc.) Act. This legal framework is crucial in Nigeria's fight against digital fraud and unauthorized access to computer systems. Section 27 typically deals with offenses related to cyberstalking and unauthorized access, while Section 28(1)(b) specifically addresses computer-related fraud and the unlawful interception of data.
The EFCC's decision to prosecute under this Act demonstrates the agency's commitment to enforcing cybersecurity laws and deterring similar offenses. The application of the Cybercrimes Act in this case sends a clear message that compromising financial institutions' digital infrastructure carries severe legal repercussions. This prosecution is vital for strengthening the legal deterrent against cybercriminals and safeguarding the nation's digital economy.
Key points
- The EFCC arraigned Gideon Aghogho and Oscar Ebere Chukwuebuka before a Federal High Court in Lagos.
- They are accused of supplying access credentials to First City Monument Bank's (FCMB) database.
- The alleged conspiracy occurred between 24 and 26 July in Lagos, involving the bank's local Administrative Credential (ITSD).
- Charges are filed under Sections 27 and 28(1)(b) of the Cybercrimes (Prohibition, Prevention, Etc.) Act.
- A third suspect, identified as Scott, is currently at large.
The incident could erode public confidence in the security of banking systems, potentially leading to increased caution among customers and a heightened perception of vulnerability within the financial sector. It also highlights the ongoing challenge for banks to secure their internal systems against insider threats or compromised credentials, necessitating significant investment in cybersecurity and employee vetting.


