etw
Here are 7 public repositories matching this topic...
TraceLogging events and tracing
-
Updated
Jan 20, 2026 - Rust
Windows EDR agent in Rust. ETW telemetry → Sigma/YARA detection → ECS alerts. User-mode, open-source, high-performance.
-
Updated
Feb 4, 2026 - Rust
Monitor windows kernel event, based on etw, development in rust. A replacement of procmon. more events and useful filter. Typically can check handle leak for a few weeks.
-
Updated
Oct 22, 2025 - Rust
Event Tracing for Windows EDR bypass in Rust (usermode)
-
Updated
Jun 9, 2024 - Rust
Blue-Team tool detecting untrusted processes accessing sensitive data using ETW
-
Updated
Jan 30, 2026 - Rust
Loonaro - Automated Malware Analysis
-
Updated
Dec 22, 2025 - Rust
Improve this page
Add a description, image, and links to the etw topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the etw topic, visit your repo's landing page and select "manage topics."