Dnscat Exfiltration Extractor

Extract exfiltrated data from DNSCat traffic in pcap files. Use this skill whenever the user mentions DNSCat, DNS exfiltration, C2 over DNS, or needs to analyze pcap files for DNS-based data theft. This skill decodes hex-encoded DNS subdomains and strips the 9-byte C&C header to recover the original exfiltrated content.

abelrguezr Updated

File contents

abelrguezr/hacktricks-skills/tree/main/skills/generic-methodologies-and-resources/basic-forensic-methodology/pcap-inspection/dnscat-exfiltration commit 2b21e9fbe0

Frequently asked questions

npx skillmds@latest add abelrguezr/dnscat-exfiltration-extractor