code snippet provided demonstrates how to patch the EtwEventWrite function in the ntdll.dll library on Windows using CGO (C Go).
-
Updated
Jun 27, 2024 - Go
code snippet provided demonstrates how to patch the EtwEventWrite function in the ntdll.dll library on Windows using CGO (C Go).
2017-09-14 Tokyo MasterCloud presentation files.
Two in one, patch lifetime powershell console, no more etw and amsi!
Go library for ETW (Event Tracing for Windows) events processing
Adversary tradecraft detection, protection, and hunting
Add a description, image, and links to the etw topic page so that developers can more easily learn about it.
To associate your repository with the etw topic, visit your repo's landing page and select "manage topics."