Back to category browse
Signal Reconstruction
Event Tracing
Telemetry, provider behavior, and system activity reconstructed from event streams.
ETW-centric notes that focus on providers, collection pivots, and the kinds of traces defenders can actually build around.
Notes3
Latest Update2025-04-08
Route/research/categories/event-tracing
Category Index
All research filed under this constellation.
Latest notes appear first so the category stays useful as a focused, living archive rather than a dead taxonomy page.