That's a difficult problem, the act of spinning those associated processes up is a new parent-child, maybe an inject depending on what you're doing? Socket duplication/shadowmove-esque techniques might help reduce IOC here. It's gonna get interesting again soon 🙃
#Webinar Alert 📢
IRC for Intelligent Secure Systems and and The Department of Computer Engineering present "ShadowMove: A Stealthy Lateral Movement Strategy" #kikx webinar
🗓️ Happening on 29 March @ 01:00 AM
📍Zoom
For registration : bit.ly/3JBUlvT#strategy
Forwarded from Pentesting News
ShadowMove Pivot Technique
ShadowMove is a novel technique to hijack sockets from non-cooperative processes. It is described in the paper ShadowMove: A Stealthy Lateral Movement Strategy presented at USENIX ‘20. This tech… t.me/hackgit/3940
#ShadowMove@AdeptsOf0xCC Not true
"@aionescu contacted us via twitter to tells us that the “ShadowMove” paper is based on previous work made by himself and @yarden_shafir"
Found it in 2018, the paper submitted to USENIX 2019, received revision, accepted to USENIX 2020
📰 — 210113 | A SHADOWMOVE, uma marca de calçados de luxo, mencionou o STAYC como um dos artistas famosos que compraram seus produtos!
"Como Sunmi, Chungha, Yoona, Tiffany e STAYC."