Andreas Finstad 

43 Followers
33 Following
56 Posts

Ever wanted to truly understand how a Command & Control (C2) server works? I built one in Python to find out. Introducing Glycon, my open-source, lightweight C2 framework designed for learning and customization. It's a hands-on playground for students, pentesters, and anyone curious about infosec.

https://github.com/4ndr34z/glycon

#infosec #C2

GitHub - 4ndr34z/glycon: Glycon - C2 framework

Glycon - C2 framework. Contribute to 4ndr34z/glycon development by creating an account on GitHub.

GitHub

Why Security Awareness Training Matters

This demo highlights a critical truth: no matter how strong your security systems are, your users are the last line of defense.
It also exposes ClickFix—a rapidly emerging threat that exploits human trust. And as a sneak peek, you’ll get a glimpse of Glycon, my custom C2 server currently in development.
Stay vigilant. The weakest link isn’t always technology—it’s the human factor.

https://youtu.be/3iokAsq2wRs?si=KnBKl0EX0jXX7sS6

#c2 #Glycon #WDAC

Why Security Awareness Training Matters

YouTube

I made a presentation a while ago showing a complete domain takeover from initial access in form of a malicious LNK-file, coercing, relaying, ADCS abuse and DCSync.

Part 1 shows the attack through a firewall allowing TCP 445 out.
in Part 2 SMB out is blocked (as it should be), and showing a sneaky workaround using QUIC (UDP 443) instead https://youtu.be/nVdFNB9RDaU

#Pentesting #ITSecurity #NTLM #Revshell #CTF #QUIC

From initial access to Domain Takeover in 10 minutes (More or less)

YouTube

This video shows why using WDAC and Intelligent Security Graph. (Signed and Reputable) is a bad idea.

It also showcases Shellz 1.7.5 new PowerShell Constrained Language Mode Bypass using MSBuild.

https://youtu.be/E7poWD3Alfo?si=iGJf4nJ8MmuuJgFf

#Pentesting #Hacking #CTF #Revshell #Shellz

Shellz 1.7.5

YouTube
GitHub - 4ndr34z/shells: Script for generating revshells

Script for generating revshells. Contribute to 4ndr34z/shells development by creating an account on GitHub.

GitHub
GitHub - 4ndr34z/shells: Script for generating revshells

Script for generating revshells. Contribute to 4ndr34z/shells development by creating an account on GitHub.

GitHub
Holy crap Microsoft figured out how their signing key was leaked. Must read:
https://msrc.microsoft.com/blog/2023/09/results-of-major-technical-investigations-for-storm-0558-key-acquisition/
Results of Major Technical Investigations for Storm-0558 Key Acquisition | MSRC Blog | Microsoft Security Response Center

Results of Major Technical Investigations for Storm-0558 Key Acquisition

GitHub - 4ndr34z/prenum

Contribute to 4ndr34z/prenum development by creating an account on GitHub.

GitHub
GitHub - 4ndr34z/ntlmthief

Contribute to 4ndr34z/ntlmthief development by creating an account on GitHub.

GitHub