coin@github:~$ whoami
██████╗ ██████╗ ██╗███╗ ██╗
██╔════╝██╔═══██╗██║████╗ ██║
██║ ██║ ██║██║██╔██╗ ██║
██║ ██║ ██║██║██║╚██╗██║
╚██████╗╚██████╔╝██║██║ ╚████║
╚═════╝ ╚═════╝ ╚═╝╚═╝ ╚═══╝
Anthony Rose // Coin
COO & Co-Founder @ BC Security / SIMAPTIC
Assistant Professor of Electrical Engineering
Director, Center for Cyberspace Research
Ph.D. Electrical Engineering
Graph Theoretic Malware Analysis using Statistical Features
and Machine Learning Modelscoin@github:~$ ls -l projects/| repo | ★ | what it does |
|---|---|---|
| Empire | 5,236 | Post-exploitation and adversary emulation framework for red teams and penetration testers |
| Starkiller | 1,673 | Frontend for Empire |
| Beginners-Guide-to-Obfuscation | 1,077 | Workshop material on evading detection through obfuscation |
| Moriarty | 516 | Windows privilege escalation — enumerates missing KBs, detects vulnerabilities, suggests exploits |
| Malleable-C2-Profiles | 408 | Malleable C2 profiles for Cobalt Strike and Empire |
| ScriptBlock-Smuggling | 94 | Sample code from the ScriptBlock Smuggling research |
coin@github:~$ cat talks.log| year | venue | talk |
|---|---|---|
| 2025 | DEF CON 33 | Rebadged, Relabeled, Rooted: Pwnage via Solar Supply Chain |
| 2025 | DEF CON 33 | Empire 6.0 |
| 2025 | DEF CON 33 | PLC Playground: Hands-On Industrial Control Systems Attacks · workshop |
| 2025 | HackSpaceCon | How Hackers Threaten the Final Frontier |
| 2024 | Black Hat USA | Moriarty |
| 2024 | DEF CON 32 | Moriarty |
| 2024 | DEF CON 32 | Long Live Empire: A C2 Workshop for Modern Red Teaming · workshop |
| 2023 | DEF CON 31 | Snakes on a Screen: Taming Offensive IronPython Techniques · workshop |
| 2022 | DEF CON 30 | Empire 4.0 and Beyond |
| 2021 | DEF CON 29 | Evading Detection: A Beginner's Guide to Obfuscation · workshop |
| 2020 | Black Hat USA | Starkiller: Threat Emulation Platform for Red Teams and Penetration Testers |
| 2019 | DEF CON 27 | Hack to Basics: Adapting Exploit Frameworks to Evade Microsoft ATP |
| 2017 | RSA Conference | All Your Locks Are BLEong to Us |
| 2016 | DEF CON 24 | Picking Bluetooth Low Energy Locks from a Quarter Mile Away |
full talk history
| year | venue | talk |
|---|---|---|
| 2024 | HackRedCon | Long Live Empire: A C2 Workshop for Modern Red Teaming · workshop |
| 2023 | Texas Cyber Summit | Snakes on a Screen: Taming Offensive IronPython Techniques · workshop |
| 2023 | HackSpaceCon | .NET — An APT's Best Friend |
| 2022 | DEF CON 30 | Evading Detection: A Beginner's Guide to Obfuscation · workshop |
| 2022 | Black Hat USA | Badrats: Initial Access Made Easy |
| 2021 | DEF CON 29 | Empire: Post-Exploitation Framework |
| 2021 | Black Hat Asia | Empire: Post-Exploitation Framework |
| 2021 | FAA Cybersecurity Awareness Symposium | Current State of Aircraft Cybersecurity |
| 2020 | DEF CON Safe Mode | Starkiller: Threat Emulation Platform for Red Teams and Penetration Testers |
| 2020 | DEF CON Safe Mode | APTs <3 PowerShell and Why You Should Too |
| 2019 | DEF CON 27 | Introduction to Sandbox Evasion and AMSI Bypasses · workshop |
| 2016 | IOT Village | Picking Bluetooth Low Energy Locks from a Quarter Mile Away |
coin@github:~$ cat publications.bib- Malware Classification through Abstract Syntax Trees and L-moments — Computers & Security (Elsevier), 2025
- ScriptBlock Smuggling: Uncovering Stealthy Evasion Techniques in PowerShell and .NET Environments — Journal of Cybersecurity & Privacy, 2024
- IronNetInjector: Weaponizing .NET Dynamic Language Runtime Engines — Digital Threats: Research and Practice, 2023
- Ph.D. Dissertation — Graph Theoretic Malware Analysis using Statistical Features and Machine Learning Models, Electrical Engineering, AFIT, 2025
Full record on Google Scholar.
coin@github:~$ cat .contact




