Direct Kernel Object Manipulation (DKOM) Attacks on ETW Providers

22 February 2023
ETW is a high-speed tracing facility built into the Windows operating system. It enables the logging of events and system activities by applications, drivers, and the operating system.

>>More