WS6 - Long Live Empire: A C2 Workshop for Modern Red Teaming
Description
Instructed by: Jake “Hubbl3” Krasnov
Level of Difficulty: Beginner
Abstract:
Behind every breach report from the last decade is a Command and Control (C2) framework. C2 is how operators reach into a compromised network, move sideways, harvest credentials, and stay invisible. This 4-hour, hands-on workshop puts you in the operator's chair. You set up your own Empire team server, learn the listener-stager-agent model from scratch, and run seven exercises that take you from "never touched a C2" to dumping credentials off a box you compromised yourself.
You'll spin up an HTTP listener, deploy a .NET agent to a Windows target, and run post-exploitation tradecraft: Rubeus for credentials, SharpHound for AD enumeration, port-forward pivots to internal hosts, and privesc modules that turn a foothold into full control. You'll even build a custom Empire plugin that auto-runs on every new agent. The capstone is a mini-CTF on a cloud-hosted range we keep open all weekend, with a prize for the winners.
You leave with the mental model most operators take years to build: how modern C2 actually works, what it assumes about the target, and where defenders most often catch it. No VMs to download. No setup before class. Bring a laptop, get on WiFi, and we'll have agents running before the first break.
Pre-Requisites:
Basic computer abilities. You should be comfortable opening a terminal and a web browser, navigating a file system, and following along with shell commands. No prior red-team, C2, or PowerShell experience required.
Tickets for good, not greed Humanitix dedicates 100% of profits from booking fees to charity


