Getting started with TCPDump - John Strand

preview_player
Показать описание

John shows why and how to use TCPDump.

Brought to you by:

Black Hills Infosec Socials

Black Hills Infosec Shirts & Hoodies

Black Hills Infosec Services

Backdoors & Breaches - Incident Response Card Game

Antisyphon Training

Educational Infosec Content
Рекомендации по теме
Комментарии
Автор

I love this John. Hoping to see more content in this format. Thanks

christianv
Автор

very clear easy explanation, please make more videos ✨✨✨

mohammadahmedragab
Автор

Keep up the great work John! Always such helpful videos and guides!

slipknotfn
Автор

Never heard of fish shell but definitely going to look into it noe

vonniehudson
Автор

awesome. thoughts on Sysinternals' Tcpvcon and Tcpview?


Tcpview seems relatively CPU intensive, on my machine at least.

-dash
Автор

Not naming the machine "Johnion"

I feel disappointed.

pedrojones
Автор

I'm attempting to replicate this with kali and when i get to the step where I use netcat to send something like over my loopback address, tcpdump updates and shows that there was traffic but the content of the packets looks like garbage, and it's different every time. Is there some sort of default encryption going on here that doesn't exit in security onion? Did I goof somewhere along the way?

andrewferguson
Автор

Can i do similar stuff whit usb devices
Make USB signal recorder that sniffs all data that enters into pc from usb port 0X001 and than i can replay it by sending again to pc, or i have to do signal record before it enters pc ?

salamdrik