If you want to create your custom #packetsniffer based on #Scapy, the recent webcast by #ActiveCountermeasures could be a good starting point.
Bill provided nice explanation and his sniffer template is available on GitHub.

https://github.com/activecm/sniffer-template

https://www.youtube.com/watch?v=gO3OjyyLN40

#networkmonitoring #networkanalysis #networkforensics #networking

GitHub - activecm/sniffer-template: Template for building a packet sniffer

Template for building a packet sniffer. Contribute to activecm/sniffer-template development by creating an account on GitHub.

GitHub

Top 10 #Networking #Tools & Techniques by #ActiveCountermeasures.

I have lot of fun watching this video and there are several useful tips&tricks by Chris and Bill.
Especially recommended to see use cases for #tshark, #tcpdump with #BPF and counting connections per hour from PCAP an #zeek logs

https://www.youtube.com/watch?v=0I6W175cUQk

#networkanalysis #networktraffic #networkforensics