tcpdump - Traffic Capture & Analysis

Поділитися
Вставка
  • Опубліковано 8 січ 2025

КОМЕНТАРІ • 173

  • @YagwitOG
    @YagwitOG Рік тому +8

    Excellent content, and presentation. I was unsure why they were using both tools in my course. Thank you for clearing up my questions.

  • @gustavstreicher4867
    @gustavstreicher4867 10 місяців тому +2

    For a better help menu, just use the 'man' command for manual pages: 'man tcpdump'. This works with most commands on Linux: 'man COMMAND'

  • @JC-od3tg
    @JC-od3tg 10 місяців тому +14

    Why do professors always teach the theory stuff and never explain the practical stuff? Doesn't make any sense. Thank you for teaching me the important stuff that my very expensive high education fails to do.

  • @thechaker
    @thechaker Рік тому +2

    Excellent ! i went from begginer to expert thanks to you !

  • @piyaneeeeee
    @piyaneeeeee 4 роки тому +7

    Love your videos, very helpful to fill in missing gaps that I come across. Keep it up!

  • @sh4d0wst0rm5
    @sh4d0wst0rm5 6 років тому +8

    Man I love your channel, I keep learning new things all the time. I’m looking to getting my CEH myself

    • @gaelcullen668
      @gaelcullen668 3 роки тому

      you probably dont give a damn but does anyone know a tool to get back into an instagram account..?
      I was stupid lost my account password. I love any tricks you can offer me.

    • @harleyjesiah1645
      @harleyjesiah1645 3 роки тому

      @Gael Cullen instablaster :)

    • @gaelcullen668
      @gaelcullen668 3 роки тому

      @Harley Jesiah i really appreciate your reply. I found the site on google and Im trying it out atm.
      Seems to take quite some time so I will get back to you later with my results.

    • @gaelcullen668
      @gaelcullen668 3 роки тому

      @Harley Jesiah it did the trick and I actually got access to my account again. I'm so happy:D
      Thanks so much you really help me out :D

    • @harleyjesiah1645
      @harleyjesiah1645 3 роки тому

      @Gael Cullen Happy to help :)

  • @byTrophus
    @byTrophus 6 років тому +3

    Always loving the videos. Keep up the great work!

  • @fm0x1
    @fm0x1 8 місяців тому

    Perfect explained! Thanks you a lot brotherrr!!

  • @clark-r
    @clark-r 11 місяців тому

    Extremely helpful- much appreciated!

  • @andremonteiro4409
    @andremonteiro4409 6 років тому +5

    Hey man, can you do a video on how to test firewall rules and the kind of techniques that its usually done when testing a firewall inside a company?

  • @flyslinger2
    @flyslinger2 5 років тому +2

    Excellent clear concise training. Thank you!

  • @santhyamurugan5861
    @santhyamurugan5861 3 роки тому

    Great explanation,Keep rocking!

  • @EraofAI-o1x
    @EraofAI-o1x Рік тому

    very insightful brother , thanks

  • @danielmartino424
    @danielmartino424 4 роки тому +1

    thank you for the videos and for making easy to understand. I appreciated!

  • @davidweeks1997
    @davidweeks1997 10 місяців тому

    Note that the -w is required (so far as I've seen), that printing to a file with > or >> does not open in wireshark.

  • @orloestrada
    @orloestrada 2 роки тому

    very well explained! you rocked it!!

  • @fotismpouraimis3192
    @fotismpouraimis3192 6 років тому +6

    Hey man, great video as always.Any chance on making a tmux evaluation and usage video?

  • @loganloechel2483
    @loganloechel2483 Рік тому

    Awesome Video! I am currently reading about tcpdump on hackthebox and I was getting confused! After watching your video and taking through notes I have a good basic understanding, thank you so much

  • @dedeepyareddy4091
    @dedeepyareddy4091 4 місяці тому

    Nice content for the beginners

  • @ZeroKool_
    @ZeroKool_ Рік тому +1

    Read ASCII data from PCAP file. Came up in an exam FYI: sudo tcpdump -vr FilePath.pcap -X

  • @jasonsandoval2700
    @jasonsandoval2700 2 роки тому

    thank you pretty interesting video , learnt a lot

  • @Aleksandr_Voronkov
    @Aleksandr_Voronkov Рік тому

    Thank you, it was really useful

  • @marinmiletic5780
    @marinmiletic5780 6 років тому +22

    can we get some Rootkit series? :)

    • @HackerSploit
      @HackerSploit  6 років тому +13

      Yes, that is a great suggestion. I will also work on this.

  • @recon496
    @recon496 6 років тому +1

    Good video. I always prefer command line video.

  • @alejo5862
    @alejo5862 6 років тому

    Nice! Always wondered what else could be done with tcpdump

  • @zulhilmizainudin
    @zulhilmizainudin Рік тому

    Very helpful. Thanks!

  • @gurejalectures
    @gurejalectures 6 років тому

    Can we get coding of tools using decompiler? Or decompiler is used for normal softwares? Reply please

  • @gerryvalenzuela9158
    @gerryvalenzuela9158 6 років тому

    this is a bad ass video of frame capture thank you very much i just subscribed to your channel

  • @huscachafe
    @huscachafe 2 роки тому

    Great work ! Very clear

  • @sethunder332
    @sethunder332 3 роки тому

    thanks for your tutorial video. very helpful for me

  • @ak9tgaming714
    @ak9tgaming714 4 роки тому +2

    video starts at 02:50

  • @KillerKlown707
    @KillerKlown707 11 місяців тому

    do you have to be in monitor mode for this? when i try to listen to a device and im surfing the web on google and stuff nothing shows up for me

  • @daniell_leall
    @daniell_leall 6 років тому

    Thank you very much! Your video help me a lot!

  • @martinndzelen88
    @martinndzelen88 3 роки тому

    thank you bro. Very helpful

  • @jadhaber7020
    @jadhaber7020 4 роки тому

    I Found your video very interesting thank you for sharing your information with us

  • @pwn0x80
    @pwn0x80 5 років тому

    11.00 dst local ip and src gateway ip command will work with only lan network???

  • @gussta1
    @gussta1 5 років тому

    This was a very good vid, thank you.

  • @Super_Cool_Guy
    @Super_Cool_Guy 6 років тому +2

    *My friend can you make a video on how to set up TOR with a VPN like ProtonVPN...thanks*

  • @AP-sb3vl
    @AP-sb3vl 3 роки тому

    Great work. Thanks.👍

  • @gerryvalenzuela9158
    @gerryvalenzuela9158 6 років тому

    very informative and useful for CCNA 1

  • @younesmohssen8158
    @younesmohssen8158 6 років тому +1

    Hey, I'm new into hacking and I don't know how to find exploits for a certain version. Let's say I did an nmap Scan and got the version of the port. Do I just open msfconsole and search for that version and I'll find exploits or are there other ways?

  • @syedalbaher
    @syedalbaher Рік тому

    To capture all the packets through the net filter your kali should have its NIC in promiscous mode

  • @GameNon-Quitters
    @GameNon-Quitters 3 роки тому

    So I guess when you specify dst ip you mean all the traffic that is downloaded from that ip adress over 443 port from the internet. And if you specify src ip of your host 192.168.1.x that would be the uploaded traffic from that ip address captured. Maybe not the strongest networking knowledge hope I am correct 😂 by the way awesome content!

  • @piedmont9391
    @piedmont9391 6 років тому +3

    Can you bring Tor.. Or stay anonymous while hacking.

  • @kamaljeetkaur8891
    @kamaljeetkaur8891 Рік тому

    Bro Port 443 is usually HTTPS not TCP. By the way content is really good thanks for your help.

    • @Tacos691
      @Tacos691 Рік тому +1

      Bro do you know what you are talking about? Https uses tcp. More rarely sctp

  • @kethanharish4724
    @kethanharish4724 2 роки тому

    Can we capture the data traffic for a specific date

  • @uniqrat
    @uniqrat 2 роки тому

    Got Your Uploaded You Video On Telegram Channel Seen Your Video Immediately Left That Channel And Subscribed To You Channel 🙏💫

  • @riccoc.6507
    @riccoc.6507 2 роки тому

    Thank you for the tutorial

  • @pradhyumanpandey5055
    @pradhyumanpandey5055 Рік тому

    can this be used on Mesh networks?

  • @iammuslim8263
    @iammuslim8263 Місяць тому

    if am in wireless how i can capture the traffic of other devices in the same wireless

  • @condoresfomeado
    @condoresfomeado 6 років тому

    amazing video, thanks!

  • @sanjus910
    @sanjus910 6 років тому +1

    Hey HackerSpolit.. Plz make a video "Maltego tool" . I'm your old subscriber.

  • @johnvardy9559
    @johnvardy9559 Рік тому

    tcpdump is usedo from soc analyst1?

  • @shivraj940
    @shivraj940 5 років тому +13

    can you do how to analyze the traffic in a detailed manner ? :)

    • @enos5192
      @enos5192 4 роки тому +1

      Malayali illathe Nth hacking ?

    • @arunisto
      @arunisto 3 роки тому

      Ath athreye ullu

    • @8080VB
      @8080VB 3 роки тому

      Edaa anthasss venam da anthass !

  • @rupeshmgds8834
    @rupeshmgds8834 6 років тому

    Nice work sir strong basis

  • @decoder6878
    @decoder6878 3 роки тому

    Amazing content

  • @supersmart671
    @supersmart671 4 роки тому

    I connected to website that is not hosted on Amazon aws but it still showing amazon services in the dump? why is that

  • @Nandhakumar-rf9jx
    @Nandhakumar-rf9jx Рік тому

    Hi, thanks for the wonderful video! I'm facing issue-> I' m trying to capture tcp traffic between two computers A and B using computer C , all three computers connected through same network. But, iam able to get udp traffic but not tcp. could you please help me out to solve the issue.

  • @bigbilly205
    @bigbilly205 Рік тому

    great informative video, i was wondering could you use splunk to analyse network traffic?

  • @aimeruko
    @aimeruko 6 років тому

    Thank you for your video, just to clarify : you can only capture and see packets passing on ur eth0, to see other packets you must use wlan0mon correct?

    • @mndphaser
      @mndphaser 5 років тому

      Hi, no can get a list of devices you can capture from by running tcpdump -D for a list of devices that is supported. You can also capture on all at the same with any. man tcpdump should give you a manual of things.

  • @Mattykingg
    @Mattykingg 6 місяців тому

    Whats "sudo" before putting tcpdump

  • @harshamannewton
    @harshamannewton Рік тому

    i am using tcp dump in android with termux with root but tcpdump can't scan traffic outside my device on the same lan. i have tried all the available interfaces. is there any way or app to scan my gateway router traffic with my rooted android device.?

  • @ayesha7113
    @ayesha7113 4 роки тому

    whats the solution to -w: command not found?
    when trying to export pcap traffic file

  • @wonderboygaming
    @wonderboygaming 3 роки тому

    What does it mean if the TOS value is 0x0?

  • @arleneyoung8562
    @arleneyoung8562 5 років тому +1

    I am really new to this I have Kali installed on a virtual box. I typed in tcpdump -i eth0 -v and I get nothing.

    • @Bleachiiigo
      @Bleachiiigo 4 роки тому

      What version?
      Try to install tcp dump utility
      sudo apt-get install tcpdump

  • @KingSpice-g6d
    @KingSpice-g6d 4 місяці тому

    Thank you so much!

  • @muhammadkhanyusuf6336
    @muhammadkhanyusuf6336 3 роки тому

    Good Video Thanks

  • @situationxd8650
    @situationxd8650 6 років тому +2

    Please make a video about anonymous information gathering...

  • @nuszkat9953
    @nuszkat9953 6 років тому

    Pardon my ignorance, but why would you like to launch tcpdump inside CTF box ?

  • @clarkminor
    @clarkminor 5 років тому

    You guys got that intro song on soundcloud??

  • @rupeshmgds8834
    @rupeshmgds8834 6 років тому +1

    Thanks so much

  • @brandonevans3449
    @brandonevans3449 5 років тому

    tcpdump -w /root/Desktop/traffic.pcap where I specified my interface, verbosity and traffic types didnt allow me to create a file. Error: "tcpdump: /root/Desktop/traffic.pcap: No such file or directory", perhaps this is an issue with my version of linux mint or could it be something else?

    • @neovictorius
      @neovictorius 5 років тому +1

      Just change the destination: '~/Desktop/traffic.pcap/'
      (It seems like the folder /root/Desktop/ does not exist on your system - also I know that the Desktop folder is located in your home directory in mint, so the above destination should work)

  • @sdsd5770
    @sdsd5770 6 років тому

    sir how can creat a reverse tcp scrpit ?

  • @mahdiabedian6382
    @mahdiabedian6382 2 роки тому +1

    yes

  • @QBelly
    @QBelly 3 роки тому

    Awesome thanks.

  • @ALLAOUAOKBA
    @ALLAOUAOKBA Рік тому

    let's say I have a backend server, can I get what requests he's performing?

  • @mndphaser
    @mndphaser 5 років тому +3

    let me clear that for you!

  • @Sourabh-q4h
    @Sourabh-q4h 6 років тому +8

    Sir please make video on how to make hacking tool using python

  • @teechmehowtohack3507
    @teechmehowtohack3507 5 років тому +2

    I believe I can do this with Parrot Security OS
    and parror has wireshark pre-installed

  • @mnageh-bo1mm
    @mnageh-bo1mm 6 років тому

    can tcp dump work for https ?

  • @boombang5750
    @boombang5750 6 років тому

    Can you make a video on where to find malware for penetration testing and ethical hacking .

  • @viprin1664
    @viprin1664 3 роки тому

    Nice Video

  • @xs--3866
    @xs--3866 5 років тому

    So this will tell me who keeps hitting my ovh?

  • @harishkumarNK
    @harishkumarNK 5 років тому

    Can you please post a video on hackthebox access machine

  • @vs8624
    @vs8624 3 роки тому

    Awesome!

  • @allyrojas2273
    @allyrojas2273 Рік тому

    thank you!

  • @abhijitroy9604
    @abhijitroy9604 4 роки тому

    Thank you.

  • @NoName-pf8mh
    @NoName-pf8mh 6 років тому

    do you still have discord?

  • @fabiojesus5966
    @fabiojesus5966 5 років тому

    congrats!

  • @pahtashow
    @pahtashow 5 років тому

    how to find suspicious connection on my VPS server ?

  • @ritabandas
    @ritabandas 5 років тому

    Tcpdump is available in Ubuntu also😐

  • @purpleegg5050
    @purpleegg5050 6 років тому +2

    I need more explanation

  • @Got_Wings
    @Got_Wings 5 років тому

    Is it open source software??

    • @wroobyplays
      @wroobyplays 4 роки тому +1

      Both tcpdump and wireshark are open source.

  • @ravindraprajapati468
    @ravindraprajapati468 6 років тому

    One video in golang install of tko-sub tool subdomain scanr

  • @gurejalectures
    @gurejalectures 6 років тому

    Can you teach how to make own tools instead of using others.

  • @kubak3381
    @kubak3381 3 роки тому +1

    Because I'm racist I usually immediately turn off a video whenever I hear an Indian accent, but year videos are really nice. GJ!

  • @generalfacts909
    @generalfacts909 6 років тому

    Please can you tell me how to find out hidden email address of someone on Facebook if he/she set a privacy to only me? Anyone?

  • @judithmalshini5428
    @judithmalshini5428 3 роки тому

    why this error comes when i give this command,can someone tell
    tcpdump -i eth0 -v
    tcpdump: eth0: You don't have permission to capture on that device
    (socket: Operation not permitted)

  • @anonymousglobal9093
    @anonymousglobal9093 6 років тому

    Automation using python make a play list

  • @jayrajshirali6327
    @jayrajshirali6327 7 місяців тому

    informative