logo

Jumping into SOCKS

ID: 11e6e190-4c06-521e-9949-37497f37b34b

STIX ID: report--11e6e190-4c06-521e-9949-37497f37b34b

Feed Name: SensePost Blog

Date Published: 2023-01-24

Date Updated: 2026-04-30

...
...

This post details a custom C# SOCKS4/4a/5 proxy built for red-team/pentest scenarios to authenticate over TLS using a victim host’s non-exportable client certificate via Windows CryptoAPI. It reviews SOCKS protocol flows, implements SOCKS5 support for tools like Burp, addresses connection edge cases (RST handling), and adds TLS termination with a self-signed server certificate while injecting a selected client certificate upstream—all demonstrated against BadSSL to prove end-to-end functionality without exporting private keys.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.