Win10Pcap

Daiyuu Nobori, University of Tsukuba, Japan · DaiyuuNobori.Win10Pcap

New WinPcap-based packet capture library for Windows 10,8 and 7. Compatible with NDIs 6.x driver model. Supports IEEE802.1Q VLAN tags.

Win10Pcap is a new WinPcap-based Ethernet packet capture library. Unlike original WinPcap, Win10Pcap is compatible with NDIS 6.x driver model to work stably with Windows 10. Win10Pcap also supports capturing IEEE802.1Q VLAN tags. Win10Pcap has the binary-compatibility with the original WinPcap DLLs. You can run Wireshark or other WinPcap-compatible applications with Win10Pcap by simply installing Win10Pcap DLLs, instead of original WinPcap. Win10Pcap is written as a personal project by Daiyuu Nobori, a Ph.D student of Computer Science of University of Tsukuba, Japan. The many parts of Win10Pcap was from WinPcap.

winget install --id DaiyuuNobori.Win10Pcap --exact --source winget

Latest 10.2.5002

Release Notes

Added the security check code on the read/write/ioctl procedures on the Win10Pcap kernel-mode driver. In the previous version of Win10Pcap, the kernel-mode driver did not check the virtual addresses which are passed from the user-mode. A local user was able to exploit this to read or write data bytes in the kernel-space memory. This had a risk to allow a local user to gain the escalated privilege on the local system. This security check code is to prevent such as illegal access from a local user. For details, please see https://github.com/SoftEtherVPN/Win10Pcap/commits/master. The problem was reported by Meysam Firozi on October 7, 2015. I greatly appreciate Meysam Firozi's contribution to report this problem.

Installer type: wix

Architecture Scope Download SHA256
x86 — Download CE1169C7CAC4BC9BC45E159CEC069F0AB57C42FC3F636456A2E404CC6B91E855

Details

Homepage
https://www.win10pcap.org/download/
License
GPL-2.0
Publisher
Daiyuu Nobori, University of Tsukuba, Japan
Support
https://github.com/SoftEtherVPN/Win10Pcap/issues
Copyright
Copyright (c) 2015 Daiyuu Nobori, University of Tsukuba, Japan.

Tags

analyzercapturenetworkprotocolsniffertrafficwinpcap