Getting started with TCPDump - John Strand

แชร์
ฝัง
  • เผยแพร่เมื่อ 6 ม.ค. 2020
  • Join us in the Black Hills InfoSec Discord server here: / discord to keep the security conversation going!
    John shows why and how to use TCPDump.
    All the thing about TCPDump: www.tcpdump.org/
    Brought to you by:
    Black Hills (Pentesting): www.blackhillsinfosec.com
    Active Countermeasures (Threat Hunting Solution): www.activecountermeasures.com
    Wild West Hackin' Fest (Conference: www.wildwesthackinfest.com
    Security Weekly (Vlog/Podcast) www.securityweekly.com
    Black Hills Infosec Socials
    Twitter: / bhinfosecurity
    Mastodon: infosec.exchange/@blackhillsi...
    LinkedIn: / antisyphon-training
    Discord: / discord
    Black Hills Infosec Shirts & Hoodies
    spearphish-general-store.mysh...
    Black Hills Infosec Services
    Active SOC: www.blackhillsinfosec.com/ser...
    Penetration Testing: www.blackhillsinfosec.com/ser...
    Incident Response: www.blackhillsinfosec.com/ser...
    Backdoors & Breaches - Incident Response Card Game
    Backdoors & Breaches: www.backdoorsandbreaches.com/
    Play B&B Online: play.backdoorsandbreaches.com/
    Antisyphon Training
    Pay What You Can: www.antisyphontraining.com/pa...
    Live Training: www.antisyphontraining.com/co...
    On Demand Training: www.antisyphontraining.com/on...
    Educational Infosec Content
    Black Hills Infosec Blogs: www.blackhillsinfosec.com/blog/
    Wild West Hackin' Fest TH-cam: / wildwesthackinfest
    Active Countermeasures TH-cam: / activecountermeasures
    Antisyphon Training TH-cam: / antisyphontraining

ความคิดเห็น • 11

  • @slipknotfn416
    @slipknotfn416 4 ปีที่แล้ว +2

    Keep up the great work John! Always such helpful videos and guides!

  • @mohammadahmedragab837
    @mohammadahmedragab837 ปีที่แล้ว

    very clear easy explanation, please make more videos ✨✨✨

  • @christianv258
    @christianv258 4 ปีที่แล้ว +2

    I love this John. Hoping to see more content in this format. Thanks

  • @randyr787
    @randyr787 4 ปีที่แล้ว +2

    Great stuff as always, Mr Strand!

  • @vonniehudson
    @vonniehudson 4 ปีที่แล้ว +1

    Never heard of fish shell but definitely going to look into it noe

  • @-dash
    @-dash 4 ปีที่แล้ว

    awesome. thoughts on Sysinternals' Tcpvcon and Tcpview?
    Tcpview seems relatively CPU intensive, on my machine at least.

  • @TheCodeTinkerer
    @TheCodeTinkerer 3 ปีที่แล้ว +1

    Super walktrough

  • @pedrojones7110
    @pedrojones7110 4 ปีที่แล้ว +5

    Not naming the machine "Johnion"
    I feel disappointed.

  • @salamdrik
    @salamdrik 4 ปีที่แล้ว

    Can i do similar stuff whit usb devices
    Make USB signal recorder that sniffs all data that enters into pc from usb port 0X001 and than i can replay it by sending again to pc, or i have to do signal record before it enters pc ?

  • @andrewferguson6901
    @andrewferguson6901 4 ปีที่แล้ว

    I'm attempting to replicate this with kali and when i get to the step where I use netcat to send something like "AAAAAAAAA" over my loopback address, tcpdump updates and shows that there was traffic but the content of the packets looks like garbage, and it's different every time. Is there some sort of default encryption going on here that doesn't exit in security onion? Did I goof somewhere along the way?

  • @user-eu2yf6ij2t
    @user-eu2yf6ij2t 2 ปีที่แล้ว

    What terminal program are you using?