Skip to main content

Wireshark: Notes

Wireshark Logo: https://upload.wikimedia.org/wikipedia/commons/thumb/b/b9/Wireshark_Logo.svg/1024px-Wireshark_Logo.svg.png

Wireshark lets you dive deep into your network traffic - free and open source.

Install wireshark on Windows using winget

PS C:\Users\tuyen> winget install WiresharkFoundation.Wireshark

Install wireshark-cli on ArchLinux

[tuyen@minipc ~]$ sudo pacman -Sy wireshark-cli
CTRL + SHIFT + O : 

Apply filter

ip.src == 10.10.67.199
ip.dst == 10.10.15.52
tcp.port == 80
udp.port == 67
http.request.method == GET
http.request.method == POST

Extract zip file from .pcap file

Practice

>>> THM | 25 Days of Cyber Security - Day 7

>>> THM | Advent of Cyber 2 - Task 12 (Day 7)

>>> THM | Overpass 2 - Task 1

>>> THM | Startup

>>> Wireshare | THM (for subsribers only)

Popular posts from this blog

Microsoft AI Shell: Notes

AI Shell

Microsoft Windows Server 2019

Microsoft Windows Server 2019 is the latest version of the server operating system by Microsoft, as part of the Windows NT family of operating systems.

Linux command: lastlog

lastlog command reports the most recent login of all users or of a given user. NAME lastlog - reports the most recent login of all users or of a given user SYNOPSIS lastlog [options] DESCRIPTION lastlog formats and prints the contents of the last login log /var/log/lastlog file. The login-name, port, and last login time will be printed. The default (no flags) causes lastlog entries to be printed, sorted by their order in /etc/passwd. OPTIONS The options which apply to the lastlog command are: -b, --before DAYS Print only lastlog records older than DAYS. -h, --help Display help message and exit. -R, --root CHROOT_DIR Apply changes in the CHROOT_DIR directory and use the configuration files from the CHROOT_DIR directory. -t, --time DAYS Print the lastlog records more recent than DAYS. -u, --user LOGIN|RANGE Print the ...