#PacketCapture

Dan Hansendanhansen
2025-11-26

Amplification Attacks, SYN Floods, Ping Sweeps, Port Scans, Duplicate IP Addresses, Segment Gaps, ARP Request Storms, Extraneous Data …

Are they lurking in your capture files? Find out with Capture File Forensics version 4.0
apple.co/4onAVxD

Capture File Forensics version 4.0 running on a MacBook Air
Dan Hansendanhansen
2025-11-18

Amplification Attacks, SYN Floods, Ping Sweeps, Port Scans, Duplicate IP Addresses, Segment Gaps, ARP Request Storms, Extraneous Data …

Are they lurking in your capture files? Find out with Capture File Forensics.
apple.co/4onAVxD

Capture File Forensics 3.1 update announcement
Dan Hansendanhansen
2025-11-04

Amplification Attacks, SYN Floods, Ping Sweeps, Port Scans, Duplicate IP Addresses, Segment Gaps, ARP Request Storms, Extraneous Data ...

Are they lurking in your capture files? Find out with Capture File Forensics.
apple.co/4onAVxD

Capture File Forensics running on a MacBook Air
2025-08-06

I think I've worked out why my string matching in `iptables` hasn't been working.

When I do get it to log, it's reporting 64 byte packets. For packets that Wireshark says are 78 bytes. Because it's just reporting the IP frame size, not the full Ethernet frame size. And so my offsets have been out by an Ethernet header size that I assumed was in the packet calculations.

Because it's IP Tables, of course 😑

#PacketCapture #Networking #SysAdminProblems

2025-07-11

Just getting started with Wireshark?

Check out “Packet Capture 101” for a beginner-friendly intro to packet analysis! Taught by @packetjay, this session covers everything you need to know to get up and running with Wireshark.

youtube.com/watch?v=rWHWOat5_X

Want to learn live from experts? Join us at SharkFest'25 EUROPE for hands-on classes, networking, and all things packet analysis.

Don’t miss your chance to level up your network troubleshooting skills—visit sharkfest.wireshark.org for details!

#Wireshark #PacketCapture #sf25eu

Tim (Wadhwa-)Brown :donor:timb_machine@infosec.exchange
2025-03-29

Released a new tool, packet-monkey:

github.com/timb-machine/packet

Packet Monkey is a tool to filter and classify PCAPs using Wireshark filters. I use it for layer 2/3 traffic analysis on engagements.

#tool, #code, #packetcapture, #trafficanalysis, #wireshark

2025-03-24

​Join us at SharkFest'25 US for the #TCP Analysis Masterclass with network security expert @packetjay on June 16th.

This pre-conference class delves deep into TCP troubleshooting, from basic concepts to complex scenarios involving multi-point captures for packet loss and timing issues. Elevate your network analysis skills and tackle challenging cases with confidence. Reserve your spot now! ​

sharkfest.wireshark.org/sfus

#Wireshark #sf25us #SharkFest #PacketCapture

​Join us at SharkFest'25 US for the TCP Analysis Masterclass with network security expert Jasper Bongertz. This pre-conference class delves deep into TCP troubleshooting, from basic concepts to complex scenarios involving multi-point captures for packet loss and timing issues. Elevate your network analysis skills and tackle challenging cases with confidence. Reserve your spot now! ​
halil denizhalildeniz
2024-12-26

Hello everyone.
In today's article we learn tshark in detail and with usage examples

I wish everyone good work:
denizhalil.com/2024/02/16/tsha

Nayab Sayednayab
2024-10-01
Ichinin :verified: :verified_paw: ✅🎯🙄Ichinin@infosec.exchange
2024-09-18

So there is an NDIS Capture driver in the virtual switches for Hyper-V... guess what you can do with those? :o) #pcap #packetcapture #networkforensics #dfir

Dustin [BusySignal-KE2EFX]dustinfinn@infosec.exchange
2024-08-07

Nothing like feeling major FOMO when your internet friends go to #HackerSummerCamp #DEFCON and you’re watching the fun begin - to kick of an ADHD side quest that’s been sitting in your office.

Here is a #MikroTik 4 slot PCIe card with 4 #AsiaRF #WiFi6E cards installed.

Final photos to come. Still cleaning it up.

#Intel #NUC #KismetWireless @kismetwireless #PacketCapture

2023-11-10

I took a #network #PacketCapture of the #Mondaine MSM.25S11, a smart wifi wall clock. How smart exactly is this clock? #InternetOfShit lieven.kks36.be/2023/11/08/how

The top half of the dial of a smart wall clock by Mondaine showing a red second hand. The background has some information on captured network packets showing ARP, DNS and NTP traffic.
Alexandre Dulaunoyadulau@infosec.exchange
2023-08-14

ssldump version 1.8 has been released.

A huge thanks to @wr for the new build and all the tremendous contribution for this release.

ssldump is an SSLv3/TLS network protocol analyzer. It identifies TCP connections on the chosen network interface and attempts to interpret them as SSLv3/TLS traffic. When it identifies SSLv3/TLS traffic, it decodes the records and displays them in a textual form to stdout. If provided with the appropriate keying material, it will also decrypt the connections and display the application data traffic. It also includes a JSON output option, supports JA3 and IPv6.

github.com/adulau/ssldump

#opensource #ssldump #PacketCapture #pcap #dfir #cti #ssl #tls

Dustin [BusySignal-KE2EFX]dustinfinn@infosec.exchange
2023-01-10

All the #WiFi #Channels Please.

Kudos to the Pentoo Linux group for getting the the latest Linux Kernel running with MediaTek WiFi 6E radios...

Screenshot from @kismetwireless running on #ZIMABoard with the SquidCard...

#WiFi #Security #PacketCapture #WiFi6E

Jim JonesGreatBigTable
2022-12-15

Last night I caught up with the challenge and completed days 13 and 14.

Day 13 covered analyzing a () file using . I have some familiarity with the tool, so I was able to burn through that challenge. I did enjoy the twist of exporting a captured file data stream and then running its hash through .

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst