Jumping into SOCKS
ID: 11e6e190-4c06-521e-9949-37497f37b34b
STIX ID: report--11e6e190-4c06-521e-9949-37497f37b34b
Feed Name: SensePost Blog
This post details a custom C# SOCKS4/4a/5 proxy built for red-team/pentest scenarios to authenticate over TLS using a victim host’s non-exportable client certificate via Windows CryptoAPI. It reviews SOCKS protocol flows, implements SOCKS5 support for tools like Burp, addresses connection edge cases (RST handling), and adds TLS termination with a self-signed server certificate while injecting a selected client certificate upstream—all demonstrated against BadSSL to prove end-to-end functionality without exporting private keys.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
