Parsing Wireshark packet captures to find the goods

In the following exercise, we'll be using capture from The Honeynet Project (www.honeynet.org) to help us understand packet analysis. To perform the parsing of Wireshark packets, observe the following steps:

  1. Go to https://www.honeynet.org/node/1220 and download the conference.pcapng file. Additionally, the following URL, https://honeynet.org/sites/default/files/conference.pcapng.gz, is a direct download link to the file.
  2. Once downloaded, open the conference.pcapng file using Wireshark; you should have the following view:
  1. A helpful feature of Wireshark is to auto-resolve IP addresses to ...

Get Learn Kali Linux 2019 now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.