Process Parameter Poisoning: A New Windows Process Injection Technique

P³-Shellcode Loader is a loader that implements a code injection technique which leverages the Process Parameters structure (Process Parameter Poisoning) as an execution and staging location for shellcode injection into remote processes, without triggering common detection mechanisms.

Detection opportunities will look like observing oddities in process creation arguments.