The Federal Ministry of Education has dismissed claims that the Nigeria Education Management Information System was hacked, calling the reports false and misleading. In a statement released Tuesday and signed by Folasade Boriowo, the ministry's director of press and public relations, it confirmed that no breach occurred on the NEMIS platform. The ministry clarified that a temporary warning message seen by some users stemmed from an SSL certificate configuration issue at the hosting level, not a security compromise. It emphasized that no unauthorized access, data loss, data alteration or exposure of sensitive information took place.

The ministry stated that its technical team collaborated with the hosting provider to resolve the issue immediately after detection, restoring full functionality. It reiterated that the platform remains secure and fully operational for all authorized users. According to the ministry, browser warnings related to SSL certificates do not automatically indicate a cyberattack, noting that such alerts can arise from routine technical or configuration problems. The statement cited expert opinion referenced in the original report, which acknowledged that SSL issues are not inherently signs of malicious activity.

NEMIS is described as a critical digital infrastructure for collecting and managing education data nationwide. The ministry affirmed that robust security measures, regular monitoring, infrastructure safeguards and periodic assessments are in place to protect the system. It also highlighted the Nigeria Education Data Infrastructure as the Federal Government's flagship framework for enhancing data governance, integration and evidence-based planning in the sector.

💡 NaijaBuzz Take

The ministry denies a cyberattack while admitting users saw security warnings due to an SSL misconfiguration, raising questions about how such technical flaws are communicated. If browser alerts can trigger public concern, then the public deserves immediate clarity when systems managing sensitive education data show visible errors. Calling the report misleading shifts blame outward without addressing why users were left to interpret security warnings on their own. The incident exposes a gap between technical management and public transparency in critical digital infrastructure.

Editorial note: AI-assisted opinion, not established fact. Full disclaimer →