My first little bit of packet analysis, where I discovered a strange Ethernet II packet type;
https://codeberg.org/cisene/UsbServer/src/branch/main/re/Ethernet-II-Discovery.md
My first little bit of packet analysis, where I discovered a strange Ethernet II packet type;
https://codeberg.org/cisene/UsbServer/src/branch/main/re/Ethernet-II-Discovery.md
Amplification Attacks, SYN Floods, Ping Sweeps, Port Scans, Duplicate IP Addresses, Segment Gaps, ARP Request Storms, Extraneous Data …
Are they lurking in your capture files? Find out with Capture File Forensics version 4.0
apple.co/4onAVxD
#pcap #packetcapture #forensics #security #monitoring #Wireshark
Amplification Attacks, SYN Floods, Ping Sweeps, Port Scans, Duplicate IP Addresses, Segment Gaps, ARP Request Storms, Extraneous Data …
Are they lurking in your capture files? Find out with Capture File Forensics.
apple.co/4onAVxD
#pcap #packetcapture #forensics #security #monitoring #Wireshark
Amplification Attacks, SYN Floods, Ping Sweeps, Port Scans, Duplicate IP Addresses, Segment Gaps, ARP Request Storms, Extraneous Data ...
Are they lurking in your capture files? Find out with Capture File Forensics.
apple.co/4onAVxD
#pcap #packetcapture #forensics #security #monitoring #Wireshark
Wireshark 4.6.0 Supports macOS Pktap Metadata (PID, Process Name, etc.)
https://nuxx.net/blog/2025/10/14/wireshark-4-6-0-supports-macos-pktap-metadata-pid-process-name-etc/
#HackerNews #Wireshark #Pktap #macOS #Metadata #NetworkAnalysis #PacketCapture
I think I've worked out why my string matching in `iptables` hasn't been working.
When I do get it to log, it's reporting 64 byte packets. For packets that Wireshark says are 78 bytes. Because it's just reporting the IP frame size, not the full Ethernet frame size. And so my offsets have been out by an Ethernet header size that I assumed was in the packet calculations.
Because it's IP Tables, of course 😑
Just getting started with Wireshark?
Check out “Packet Capture 101” for a beginner-friendly intro to packet analysis! Taught by @packetjay, this session covers everything you need to know to get up and running with Wireshark.
https://www.youtube.com/watch?v=rWHWOat5_Xg
Want to learn live from experts? Join us at SharkFest'25 EUROPE for hands-on classes, networking, and all things packet analysis.
Don’t miss your chance to level up your network troubleshooting skills—visit https://sharkfest.wireshark.org for details!