RT @citronneur@twitter.com
Do you miss Microsoft Message Analyzer? Try Winshark, a set of #Wireshark plugins to capture and analyze #ETW in real time! #DFIR #WindowsInternals #SSTIC
https://github.com/airbus-cert/Winshark
🐦🔗: https://twitter.com/citronneur/status/1268187631042605056
#wireshark #etw #dfir #WindowsInternals #sstic