Wireshark
Wireshark is the industry defacto standard for packet sniffing and analyzing network packets. Not only does it work for TCP/IP but it also works for just about every other known protocol and standard. There are versions of Wireshark for every well-known operating system. You will need the WinPcap drivers from earlier in the chapter to run Wireshark on Windows. On Linux/UNIX and OSX, the drivers are generally already there. Wireshark comes preloaded on Kali.
Wireshark is an extremely complex application. There have been many books written on its use. I do suggest getting one and learning the in-depth use of this tool. We will only cover the basics here.
What is the internet if you really think about it? Some people point to their ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access