Reposted by Olaf Hartong
What if you could leverage Event Tracing for Windows (ETW) to manipulate telemetry data, challenging the trust placed in endpoint detection and response (EDR) tools?
👉 Have a look at our latest blog as presented earlier at Black Hat by @olafhartong.nl: falconforce.nl/in-your-logs...