Guides authorized security testing of desktop thick clients across local storage, IPC, traffic, and update channels.
- What it does
- This skill provides a structured workflow for authorized security testing of desktop thick-client applications. It walks through mapping trust boundaries, examining local attack surfaces such as configuration files, credential storage, DLL search order, and IPC, then reviewing network traffic, TLS handling, and certificate pinning. It also covers reverse-engineering verification paths for .NET, native, and Electron clients, and points to a companion checklist reference.
- When to use it
- Use it when conducting authorized penetration tests or security assessments of desktop GUI or service-backed client applications, including C/S, Electron, Qt, .NET WinForms, and WPF clients. It fits engagements that need to cover local storage, IPC, client-side validation bypass research, and auto-update or code-signing channels.
- Requirements
- No scripts are shipped; it is instructions only. It references a checklist file and other skills, and expects testing tools such as proxy tools (Burp, mitmproxy), process and API monitors, reverse-engineering tools (dnSpy, IDA, Ghidra), Sysinternals utilities, and Electron asar inspection tooling, plus authorized scope and test accounts.