Alerts
Events
DCR
Explore Cyware Products
Alerts
Events
DCR
Go to listing page
Direct Kernel Object Manipulation (DKOM) Attacks on ETW Providers
Threat Actors
February 22, 2023
Security Intelligence
ETW is a high-speed tracing facility built into the Windows operating system. It enables the logging of events and system activities by applications, drivers, and the operating system.
Read More
Direct Kernel Object Manipulation
DKOM Attacks
Event Tracing for Windows (ETW)
Kernel ETW Structures
Windows
Publisher
Previous
A Deep Dive into the Evolution of Ransomware Part 1
Trends, Reports, Analysis
Next
Accidental WhatsApp account takeovers? It's a thing
Social Media Threats