Files
Angerona/documentation-payload/Cazalla/commands
2025-12-17 16:13:40 +01:00
..
2025-12-02 11:58:59 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-12-16 14:22:51 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-12-17 16:13:40 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-12-17 16:13:40 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00
2025-11-06 12:23:49 +01:00

Cazalla Commands

Complete documentation for all Cazalla agent commands, organized by category.

File System Commands

  • ls - List directory contents
  • cd - Change directory
  • pwd - Print working directory
  • cat - Read file contents (with credential detection)
  • cp - Copy files
  • mkdir - Create directory
  • rm - Delete file/directory
  • download - Download file from target
  • upload - Upload file to target

Process Management Commands

  • ps - List processes
  • kill - Terminate process

Token Operations

Network Tunneling

  • socks - Start/stop SOCKS5 proxy
  • rpfwd - Start/stop reverse port forwarding

System Operations

Credential Access

  • samdump - Dump SAM database (NTLM hashes)

Code Execution

Control Commands

  • sleep - Adjust beacon interval
  • exit - Terminate agent

Back to Cazalla Documentation