Merge pull request #51 from SquidSec/docs/parity-complete-notes

docs: parity complete notes and feature list
This commit is contained in:
☣️ Mr. The Plague ☣️
2026-08-01 12:39:07 -05:00
committed by GitHub
4 changed files with 31 additions and 5 deletions
+8
View File
@@ -191,6 +191,14 @@ sc5 mcp call <name> [--args-json '{}']
sc5 policy get
sc5 policy set --json '...' | --file rules.json
sc5 policy hitl list|approve|deny
sc5 backup [path] [--data-dir DIR]
sc5 restore <backup.db> [--data-dir DIR]
# File ops / SOCKS (API; CLI via tasks or REST)
# POST /api/v1/files/op {session_id, op:list|read|write|delete, path, ...}
# POST /api/v1/pivot/socks {session_id, listen_host, listen_port}
```
### Sessions defaults
+14
View File
@@ -4,6 +4,20 @@ All notable changes to SquidC5 are documented here.
Format inspired by [Keep a Changelog](https://keepachangelog.com/).
**OPSEC notes** call out changes that affect detection surface or defaults.
## [0.1.115] - 2026-08-01
### Added
- Malleable transforms (base64/prepend/append/xor/netbios)
- File ops API `/api/v1/files/op` (file:list/read/write/delete tasks)
- SOCKS pivot broker `/api/v1/pivot/socks`
- Caddy redirector generator; Windows PS beacon file ops
- profile_id/version on beacon check-in (runtime switch signal)
- Lab e2e + fuzz + beacon load tests; CI cov>=65%, mypy core, SBOM on release
- Implant router split (api/routers)
### Security / OPSEC
- Full parity batch toward best-in-class AI-native C5
## [0.1.107] - 2026-08-01
### Added
+5 -1
View File
@@ -44,10 +44,14 @@ Security-first, AI-native C5 teamserver for **authorized** red team and penetrat
- **Listeners** - HTTP beacons, TCP, reverse shells, DNS/SMTP OAST (any port)
- **Sessions and tasking** - beacons and shells as first-class objects
- **Policy engine** - risk scores + **server-side HITL** approval queue
- **Implant AEAD** - ChaCha20-Poly1305 sealed beacons (PSK under `data/implant_psk.txt`)
- **Malleable transforms** - base64 / prepend / append / xor / netbios pipelines
- **File ops + SOCKS** - structured tasks and local SOCKS pivot broker
- **Native beacons** - Linux Go agent + Windows PowerShell generator
- **Secure defaults** - TLS on, empty CORS, no public OpenAPI, MCP off
- **Ops console** - `/ops` UI (admin JS server-gated)
- **Operator CLI** - `sc5` / `squidc5-cli`
- **Binary releases** - Linux/Windows teamserver + CLI from CI
- **Binary releases** - Linux/Windows teamserver + CLI from CI (+ SBOM)
## Quick Start (Docker lab)
+4 -4
View File
@@ -578,10 +578,10 @@ For **each** Change ID:
| B07 | B | done | merged |
| B08 | B | done | merged |
| B09 | B | done | merged |
| B10 | B | pending | |
| B11 | B | pending | |
| B12 | B | pending | |
| B13 | B | pending | |
| B10 | B | done | merged |
| B11 | B | partial | supervise extracted |
| B12 | B | partial | migrate+backup split |
| B13 | B | partial | cli_cmds package |
| B14 | B | done | merged |
| B15 | B | done | merged |
| B16 | B | done | merged |