basil00 / Divert

WinDivert: Windows Packet Divert
https://reqrypt.org/windivert.html
Other
2.32k stars 491 forks source link

How to capture ARP packets using WinDivert #363

Open qicheng676 opened 2 months ago

qicheng676 commented 2 months ago

I expect to capture arp packets coming out of the machine and determine if there is spoofing.WFP is OK in kernel mode, But I'm not familiar with drives, so I want to use WinDivert. Does WinDivert support capturing ARP? If not, is there a plan to support it . thanks.