Skip to content

A graphical user interface to easily read through, and filter, DotDumper JSON-based logs

License

Notifications You must be signed in to change notification settings

advanced-threat-research/DotDumperGUI

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

The DotDumper logo, a dumping truck

DotDumperGUI

A graphical user interface (GUI) for DotDumper, first released at Black Hat Asia 2023's Arsenal.

The goal and purpose of DotDumperGUI is to provide an easy-to-use and intuitive way for analysts to open the DotDumper JSON output, and filter through it, based on custom filters. These filters, as well as the filtered results, can be saved for later reuse. The feature-rich context menus in all parts of the program allow for an intuitive and easy-to-use user experience, all while using a DotNet Core based Windows Forms application.

The main UI is given below.

DotDumperGUI's main UI

Note how the information for each trace is shown in the respective data fields within the UI, making it easy for an analyst to spot key details.

When selecting a trace and right-clicking on it, the rich context menu will pop-up, allowing one to easily create a filter from the selected trace.

DotDumperGUI's main context menu

Additionally, one can also create filters within the dedicated menu, which can be kept open along side the main UI for easy access.

DotDumperGUI's filter UI

Note that conflicting filters can be created, using any of the variety of filters within the selectable options, as can be seen below.

DotDumperGUI's filter options

About

A graphical user interface to easily read through, and filter, DotDumper JSON-based logs

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages