Process Argument Spoofing (1)

Source provenance. Raw material catalogued for the wiki ingest pipeline. Lives offline at raw_sources/offensive-security/Process Argument Spoofing (1).md.

Status: catalogued

Excerpt

Module 48 - Process Argument Spoofing (1) Process argument spoofing is a technique used to conceal the command line argument of a newly spawned process in order to facilitate the execution of commands without revealing them to logging services, such as Procmon. The image below shows the command powershell.exe -c calc.exe being l…

Likely wiki targets

Pending — this source has not yet been distilled into wiki pages. Future ingest can populate links to the concept / technique / CVE pages this material would inform.