Skip to Main Content
All Trimarc services are now delivered through TrustedSec! Learn more

Hans Lakhan

Principal Security Consultant

EXPERIENCE
With over a decade of industry experience, Hans Lakhan has worked in both offensive and defensive roles. Before switching to red teaming, he spent 5 years working as a technical Security Analyst for a Fortune 500 telecommunications company, specializing in networking, firewalls, vulnerability management, and VPNs.

EDUCATION & CERTIFICATIONS

  • B.S. Bio-Medical Information Systems, University of Minnesota
  • Offensive Security Certified Professional (OSCP)

PROFESSIONAL AFFILIATIONS
Hans occasionally presents at various conferences (Blackhat, DerbyCon) and contributes to several open source projects.

PASSION FOR SECURITY
While Hans enjoys tackling complex security challenges, his true passion stems from tearing apart systems (physical, digital, process flows, and more), in which the goal is to identify weaknesses and present remediation solutions.

Featured Blogs And Resources

Discover the blogs, analysis, webinars, and podcasts by this team member.

Blog February 02 2021

Injecting Rogue DNS Records Using DHCP

Understanding DHCP to Inject Rogue DNS Records via Spoofed MAC Addresses.

Read about this article
Blog September 23 2020

Azure Account Hijacking using mimikatz’s lsadump::setntlm

Senior security researcher Carlos Perez reveals a hybrid Office 365 attack method using Mimikatz to gain domain admin access and hijack user accounts,…

Read about this article
Webinars June 17 2020

Password Recovery 101: Cracking More of Your List

Join VP of Consulting Services Martin Bos, Paul Burkeland, and Hans Lakhan for a webinar on password recovery tools and techniques, and gain an analytical…

Read about this article
Webinars January 14 2026

Tips for Incident Response Planning: Prepare Before Crisis Strikes

During our next webinar, our Incident Response experts will cover what organizations should do to prepare so they can respond quickly and be on the way to…

Read about this article
Business Resources December 30 2025

Inside the Modern Red Team: How Attackers Think, and What Defenders Miss

Discover how modern Red Teams think like attackers, what defenders often miss, and how to strengthen your cybersecurity posture.

Read about this article
Blog December 18 2025

Limiting Domain Controller Attack Surface: Why Less Services, Less Software, Less Agents = Less Exposure

Before we dive in, let’s get all the TrustedSec Certified Absolutes out of the way:All software presents some level of inherent risk.Only required software…

Read about this article
News December 17 2025

News 5 Cleveland - Elyria Police responded to a reported restaurant robbery. But it was actually an AI prank.

AI quality is evolving rapidly, making it easier than ever to create convincing fakes from a phone. Advisory Solutions Director Alex Hamerstone spoke with News…

Read about this article
Blog December 16 2025

Top 10 Blogs of 2025

Everyone has a year-end list, and this is ours. See what our top-performing cybersecurity blogs were in 2025, there could be some you might have missed!

Read about this article
News December 13 2025

News 5 Cleveland - Holiday Warning: Keeping your loved ones safe from scams

As the holidays approach, the most effective defense against fraud is an informed family. Advisory Solutions Director Alex Hamerstone spoke with News 5…

Read about this article
News December 12 2025

Security Advisory: React2Shell (CVE-2025-55182) - Critical RCE Vulnerability

A critical vulnerability affecting React Server Components (RSC) is being actively exploited. Here's what to look for and what to do next.

Read about this article

Empower your business through better security design.

Talk directly with our experienced advisory consultants to learn how we can help.