Intro to Wireshark: Basics + Packet Analysis!

Поділитися
Вставка
  • Опубліковано 24 січ 2025

КОМЕНТАРІ • 166

  • @Andrei-ds8qv
    @Andrei-ds8qv 7 років тому +160

    maaan I love the way he smiles the whole video, he seems so happy that I have watched the video smiling too :D

  • @gauravdhiman5846
    @gauravdhiman5846 5 років тому +26

    Forget the video , just the smile of yours made my day for the rest of the week , seeing someone enjoying what they do

  • @_Akrex
    @_Akrex 5 років тому +11

    ngl, i usually don't like people that smile for everything but I LOVE how you are so enthusiastic about your videos and explaining things to others, you are a great human!

  • @limplin7
    @limplin7 5 років тому +1

    You have explained this so much better than everyone else that I saw in UA-cam. Thank You for your thoroughness .

  • @AriannaEuryaleMusic
    @AriannaEuryaleMusic 3 роки тому

    I´ve been watching countless Wireshark tutorial videos and this is the most basic understandable Tuto, I´ve encounter.

  • @EG-ne7yp
    @EG-ne7yp 2 роки тому

    I wish I could be as happy as you doing this stuff! This guy never ceases smiling.

  • @Ziinogre
    @Ziinogre 3 роки тому

    You just made my life in school 10x easier I know what I'm looking at now

  • @kevinparsley6806
    @kevinparsley6806 6 років тому +75

    That is one happy guy

  • @jessicapatterson1347
    @jessicapatterson1347 2 роки тому

    I have to say, looking at your face just makes me happy. Did you know you smile all the time?

  • @sudipkoirala5963
    @sudipkoirala5963 3 роки тому

    You make wireshark look easy. your way of teaching is amazing

  • @souravb4068
    @souravb4068 6 років тому +9

    Thanks man.. Spent hours but Finally got a compact and concise tutorial for wireshark.. Great work.. keep smiling :)

  • @mayankpathak4622
    @mayankpathak4622 5 років тому

    Smiling all through the video. Prime example of 'Love what you do and it'll never be work again'

  • @tingfenglin1720
    @tingfenglin1720 6 років тому +1

    The best teaching video I never seen before. I really love your video. The explanation of how to anlayis log from wireshare is really clear and easy understand. I hope that more video about how to use this tool in prcatical application can be uploaded.

  • @skywarnjlw3
    @skywarnjlw3 6 років тому +7

    This guy right here.....Wicked Smart. Appreciate the info buddy learned a lot.

  • @AshutoshKumar-mv5um
    @AshutoshKumar-mv5um 6 років тому +1

    Brooooooooooooo I'v beeeeeen searching for a tutorial like thissss. Such an amazing tutorial, I went to ur playlist to check for more videosssss... Mannnnnnnn neeeeeed more n more vidsss from U. U r trulyy an awesome teacher

  • @hangeroo2439
    @hangeroo2439 8 років тому +19

    You are an awesome teacher/trainer. I like how you go into the pertinent details that everyone glosses over and that you used live examples to show us exactly what is going on. I have been looking for some help with wifi packet captures. Any chance you will upload a detailed and long video about that so I can get a clue as I've watched so many videos and I just feel like people leave out important details. I am using Windows but purchased Acrylic WiFi and an adapter to try and capture wifi traffic on Windows. In the meanwhile, the issue I am facing is a classroom of elementary students using chromebooks to access a graphics-intensive test and getting disconnects, sluggish behavior, or are stuck in a processing screen. Can you walk me through how to troubleshoot this if I have the capture files? Thank you in advance for your time and for this amazing video!

    • @SinnohStarly
      @SinnohStarly  7 років тому

      Thanks a lot for your comment! Were you able to solve this?

    • @hangeroo2439
      @hangeroo2439 7 років тому

      UA-cam did not notify me when you responded...yet weirdly they sent me notification when you hearted the comment just now.
      In response to your question, no. There were just so many components involved and everyone was pointing fingers at everyone else. My peeps said it's the schools' network (that they were overloading the APs when all the students test at once), but the school district's IT folks seemed to really know what they're doing and they appear to have the spiffiest network set up of any of the districts I've been to. There were whispers of jitter on the firewall, but no one seemed to be able to figure it out because no one knew what to capture or how to interpret it. If I recall correctly, they captured traffic on the AP using MacBooks, but they did it after the 4-way handshake. They also didn't provide a specific chromebook's MAC address at a specific time the issue occurred, etc., etc. Would love to hear what you would you if you were to go on site and properly capture traffic in an environment like that and how you would go about troubleshooting the issue.

    • @hangeroo2439
      @hangeroo2439 7 років тому

      BTW, if given a choice of courses or certs to be taken to learn Wireshark on a more in-depth level, what would you recommend? For example, would you say CBT Nuggets since it's got all kinds of courses one can learn from or would you say go with Laura Chappell's Wireshark Univeristy or something else altogether?

  • @EZ-HACK
    @EZ-HACK Рік тому

    wire shark changed my life i recommend anyone in the networking field to start using wire shark asap and get use to it

  • @randyorton06
    @randyorton06 7 років тому +25

    BEST TEACHER EVER!

  • @moon1614
    @moon1614 4 роки тому +4

    loving the xenoblade desktop

  • @TKD_Phantom
    @TKD_Phantom 4 роки тому

    I like him he seems like he would always be happy and he's just sending out good vibes

  • @Martin-ot7xj
    @Martin-ot7xj 2 роки тому

    Your Explanation about Wireshark was awesome .thnx

  • @eduardorpg64
    @eduardorpg64 5 років тому +3

    This helped me finish a homework. Thank you very much! Also, awesome Xenoblade wallpaper!

  • @GhostsInSpace_
    @GhostsInSpace_ 6 років тому +10

    Need more networking videos Ross!

  • @f.i.l.o5301
    @f.i.l.o5301 Рік тому

    I don't really comment much on youtube trust me, but dude, u explain really good, I would really like you to do some tutorials basics of linux, python, etc, ur a really good teacher!

  • @clydefrog8711
    @clydefrog8711 3 роки тому

    This is so over my head but I MUST LEARN THE WAYS.

  • @coming..back..in..2027
    @coming..back..in..2027 4 роки тому

    wow the way you smile all the video makes me happy i wish you are my teacher .please load videos about you as normal life you are spread smile even in corona times

  • @francislambert5189
    @francislambert5189 6 років тому +3

    Hey! Great video. Very easy to understand and easy to use. Everybody else has to much of the little shit involved that is distracting to me. I needed this tutorial because of the fact that I wish to become CEH(certified ethical hacker). Thank you for this video and I hope to see more on this topic. PEACE :)

  • @tahersadeghi6773
    @tahersadeghi6773 Рік тому

    You have described this technology in a classic way. That comes from a beautiful mind.
    In this video, what kind of problem do you attribute to the packet behavior?

  • @adedejiemmanuel1
    @adedejiemmanuel1 4 роки тому

    You make me a believer. Thanks. Need more of this stuff.

    • @SinnohStarly
      @SinnohStarly  4 роки тому

      What do you believe?

    • @adedejiemmanuel1
      @adedejiemmanuel1 4 роки тому

      @@SinnohStarly You teach convincingly and with enthusiasm; your video is so good to me that I saved it in my playlist as a reference point. Thank you.

    • @SinnohStarly
      @SinnohStarly  4 роки тому

      Azza Cameron glad to hear! Thank you

  • @AJ-sh8uv
    @AJ-sh8uv 6 років тому

    I'm not gonna lie, I'm getting into Networking and you make it sound a bit easier.

  • @greengreekloyalfan
    @greengreekloyalfan 6 років тому

    A very intelligent humorours teacher! Good job!

  • @fksociety137
    @fksociety137 7 років тому +6

    Holy shit bro, bravo! Now whats the next lesson? ARP poisoning by sending 50k packets to a cisco switch to force hub mode for traffic redirection on a network? Please say yes. Whatever, you won a new subscriber. Thanks Boss.

    • @SinnohStarly
      @SinnohStarly  7 років тому +1

      Sounds like you already know more about Cisco than I do! Thanks dude

    • @fksociety137
      @fksociety137 7 років тому +1

      SinnohStarly Hahaha, an idea in addition to ur wireshark tutorial maybe to introduce sidejacking via stealing cookie sessions to bypass those frustrating encrypted passwords and SSL protocol. When decrypting in wireshark fails, make like Cookie monster and jack cookies. Dont worry this only works when machines are on LAN via same subnet. And for educational purposes, u can simply state to delete ur cookies and protect urself from the Cookie Monsters. Good presentation skills champ. Thanks B-Ross!

  • @joshuagarza8654
    @joshuagarza8654 Рік тому

    Thank you for the video. Very beneficial for a newbie!

  • @dosomething3
    @dosomething3 6 років тому +52

    wow. a youtube video made by someone who seems to actually know what he is talking about. how bizarre!

  • @sandyh10
    @sandyh10 7 років тому +2

    Very clear and great examples

  • @zentao5146
    @zentao5146 7 років тому +1

    Thanks for the presentation, very helpful on the congestion control analysis. Just one comment on the 3 Dupacks where the sender will totally receive 4 Acks including the first Ack + 3 duplicate Acks.

  • @chieesntra
    @chieesntra 3 роки тому

    you just made my day sir!

  • @vikas9358
    @vikas9358 6 років тому +1

    Great video bud, can you please make a quick series of videos on Wireshark?

  • @kw8538
    @kw8538 6 років тому +1

    Most excellent video and explanation... A+!!

  • @RahulChauhan-sb7rx
    @RahulChauhan-sb7rx 7 років тому +1

    Superb work. Very very helpful..thanks a lot

  • @sagarpardeshi9002
    @sagarpardeshi9002 6 років тому +1

    Good job man, you made it simple. Thanks for the excellent work :)

  • @paulmorrey733
    @paulmorrey733 6 років тому +1

    Great tutorial and very smiley Thanks

  • @James_Knott
    @James_Knott 2 роки тому

    One thing I've noticed is presenters of these videos seem to prefer display filters and ignore capture filters. This is like ignoring half your toolbox. There's no reason why you can't use both, with capture filters determining what you capture and then refining it with display filters. One other factor is if you rely on display filters only, you are more likely to fill the buffers. By using capture filters, you capture only what you're interested in, rather than everything on the wire.
    BTW, you might want to use the second layout shown in preferences, with panels 2 & 3 beside each other. This provides maximum space for panel 1. Also, adjust the border between panels 2 & 3, so that panel 3 is just wide enough to show all the hex data, leaving more room for panel 2.

  • @BobHansenJokes
    @BobHansenJokes 6 років тому +5

    What a nice guy! Thanks Ross!

  • @i.h.5561
    @i.h.5561 7 років тому +5

    excellent explanation

  • @Mahadonation1
    @Mahadonation1 5 років тому

    as a british person, I find the smiles of America rather fascinating. I did some research and I heard it's because of the history of the countries. Americans in North America relied more on non-verbal communication to create a sense of friendliness because the country was made up of people from different countries. But damn, it still confuses me as a Brit. I mean why the hell are you so happy dude hahaha
    thanks for the vid tho, very helpful

  • @aniziobragaassis9155
    @aniziobragaassis9155 2 роки тому

    Thank you - and Google - to recommend me this!

  • @jibunorufoegbune9567
    @jibunorufoegbune9567 2 роки тому

    Thank you for this tutoring Analysis

  • @lukewarmramen468
    @lukewarmramen468 6 років тому +1

    Awesome video mate, thanks!

  • @Recon_Racing
    @Recon_Racing 5 років тому

    This guy knows his shit. Subscribed!

  • @dre_sensei95
    @dre_sensei95 2 роки тому

    How do you set up your usb wifi adpater to bridge your host machine so that you can use Wireshark to analyze the packets that come through.

  • @bleh22292
    @bleh22292 3 роки тому

    Thanks for the tutorial!!

  • @mohammadchaudhary2247
    @mohammadchaudhary2247 5 років тому

    Are you a professor as you are reallly good in teaching

  • @vickyyang1322
    @vickyyang1322 6 років тому +1

    This video really helped me a lot, twice

  • @alperencnar2490
    @alperencnar2490 3 роки тому +1

    Hello,
    First of all thanks for this wonderful video. I have a question when I went the website (www.1112.net/lastpage.html), I can not see any http packages. Actually I can not see http packages in any website. What can be the problem ?
    Thank you.

  • @andypratama100
    @andypratama100 3 роки тому

    One i want to asked is when you catch weird ip address either your device or website you visited, what you do? How to protect that so is not happend for next connection, when you log in internet.

  • @venkatesh46577
    @venkatesh46577 7 років тому +1

    can plz tell me my info is cmg encoded format how to chage text format and this where is get this wire shark?begging...?plz tell me if any one knows

  • @Strokecity1
    @Strokecity1 4 роки тому

    Very informative, thanks for this. Keep smiling! :)

  • @alphatv712
    @alphatv712 4 роки тому

    Would you make small video on Flent : the Flxsible network tester

  • @train4905
    @train4905 Рік тому

    Awsome info sir thanku loads😊

  • @The51stAgent
    @The51stAgent 7 років тому

    Fantastic video, sir. Props.

  • @hurnaumkaushik1055
    @hurnaumkaushik1055 7 років тому +2

    Very helpful man ;) Keep up the good work (y)

  • @shitijaverma2217
    @shitijaverma2217 6 років тому +2

    Thanks a lot for this video! It was very helpful! :-)

  • @marshall02019
    @marshall02019 6 років тому +8

    best nerd ever

  • @JP-vg8vl
    @JP-vg8vl 6 років тому

    What is the title of that topic in pdf at 10:47 ? Can someone explain? I want to dig deeper on that topic

  • @nikhiljayanand8225
    @nikhiljayanand8225 Рік тому

    Very good video

  • @sree101
    @sree101 4 роки тому

    Do you have more videos? I am looking to understand the fundamentals of network.

  • @rlstric1
    @rlstric1 7 років тому +1

    How can you assume the identity of an access point to view all packets being sent through a router?

    • @SinnohStarly
      @SinnohStarly  7 років тому +1

      You either need to run a packet capturer on the router itself (hard), or use an ARP spoofing attack to fool other devices on the network into thinking that your computer is the router (easy).

  • @danvelgtr
    @danvelgtr 4 роки тому

    Good video , I am still new to all this , can you kindly tell me how I would set up a filter to locate the IP Addr. of a remote machine that takes control on my machine using a program like Team Viewer ? tia.

  • @julieta7507
    @julieta7507 3 роки тому

    Hi, love this video, do you have more of wireshark I can learn from you?

  • @normalnani893
    @normalnani893 5 років тому

    wow, it was a very useful video, thanks a lot !

  • @harshraj3255
    @harshraj3255 5 років тому

    u r awesome sir, great going!

  • @androidgreen
    @androidgreen 7 років тому

    hey please at the 5:44 mark where you add the Http filter for html-packets; I cant seem to view html packets when i add the filter, could you help me out with what the problem is ?

    • @SinnohStarly
      @SinnohStarly  7 років тому

      Great question! I carefully chose that webpage because it was not protected by HTTPS. If you visit a secure site (it has the green "Secure" lock in the address bar), that traffic will be encrypted and unreadable. You'll be able to spot the TCP connection, but not the actual HTTP data.

    • @SinnohStarly
      @SinnohStarly  7 років тому

      There are ways around this. See jimshaver.net/2015/02/11/decrypting-tls-browser-traffic-with-wireshark-the-easy-way/

  • @vijay44able
    @vijay44able 7 років тому

    what are the filters to find external IP addresses? and how can we find network gateways?

  • @Mr_Addy1
    @Mr_Addy1 2 роки тому

    hey can u please tell me how to trace packets using wireshark

  • @Pradeepkumar-fw9nk
    @Pradeepkumar-fw9nk 6 років тому

    Wonderful video.
    Which book would you suggest. So, i can get all these about packets and wireshark.

  • @sammertalib8898
    @sammertalib8898 5 років тому

    Is there a way to see what user functionality the user searched for a on website? Still a newbie using Wireshark, thank you.

  • @ismaellayth
    @ismaellayth 5 років тому +1

    Thank you Sir

  • @songofyesterday
    @songofyesterday 7 років тому +10

    what desktop background is that...animated? I wannnnt

    • @SinnohStarly
      @SinnohStarly  7 років тому +9

      Finally someone asked! It's the title screen from Xenoblade Chronicles: ua-cam.com/video/gfhom1H77Vo/v-deo.html

    • @sparkeyluv
      @sparkeyluv 7 років тому +2

      I saw it too. DOPE!

    • @santrader1707
      @santrader1707 6 років тому +1

      does it eat alot of cpu or ram

  • @nikhilt3755
    @nikhilt3755 6 років тому

    tcp ip model have physical layer and data link layer combined as link layer

  • @vijay44able
    @vijay44able 7 років тому

    nice video. i am doing my assignment. i have been following your video but i still don't know how to do Attack identification from previous captured data. could you help?

  • @sparkeyluv
    @sparkeyluv 7 років тому

    Can I use the sequence number graph to troubleshoot VPN connectivity issues and problems? Does anyone have any pointers or tips for doing this?

  • @anachoudhary1261
    @anachoudhary1261 5 років тому +1

    Thanks for the Video....It's really really very helpfullllllll :)

  • @MubashirAbbas777
    @MubashirAbbas777 6 років тому

    great explained

  • @jimgaither3653
    @jimgaither3653 2 роки тому

    Taking Wireshark as a class. I do have a question? Every time I try to ping a website it will NOT come up in Wireshark why?

  • @negevbattlemaniac9459
    @negevbattlemaniac9459 4 роки тому

    may i know , i type on mobaxterm "ping.google.com" but it doesnt show anythign, can you tell me why? im a bit blurry here

  • @rickjefferson1609
    @rickjefferson1609 3 роки тому

    Thank you for your video, very informative. Question: Can I use Wireshark in order to get my public IP address? I know that I can get it from the site, "What is my IP?" Thanks again.

  • @jirivaltr560
    @jirivaltr560 6 років тому

    What if I see: "No interfaces found" ? I have it on my school laptop, but ethernet cable is plugged in. Is it caused by wrong instalation? :/

  • @ZANGA
    @ZANGA 6 років тому +2

    OMG his voice and look , i like him for some reason !! best teacher ;)

  • @nunuhtet3961
    @nunuhtet3961 6 років тому

    Can I get that TCP captured file that you used for TCP congestion control.

  • @lironofir
    @lironofir 4 роки тому

    Hi, I could not see the packets while I got into www.1112.net, what could be the reason?

    • @SinnohStarly
      @SinnohStarly  4 роки тому

      HTTPS connections are encrypted, so Wireshark cannot decrypt them by default. Here's instructions on how to save the encryption keys for Wireshark: jimshaver.net/2015/02/11/decrypting-tls-browser-traffic-with-wireshark-the-easy-way/

  • @l.p.9568
    @l.p.9568 4 роки тому

    Great teaching. (Underscores how awful my university is because all online courses are completely self-study. This shows it can be done and done well in a virtual setting). Also, his speaking style seems to be very influenced by the funny comedian John Mulaney! Ha! Thank you for sharing this video with us noobs.

  • @stgtvnews
    @stgtvnews 7 років тому

    I haven't taken your class and I'd like to see if someone is watching my network. Do you have a video for begginers?

  • @thomashaines3182
    @thomashaines3182 7 років тому +1

    When I open Wireshark, I can't see any interfaces at all. Any idea why this is? :/

    • @thomashaines3182
      @thomashaines3182 7 років тому +1

      Running as admin fixed it, no problem :D

    • @SinnohStarly
      @SinnohStarly  7 років тому +1

      I was just going to suggest that! Glad it's fixed.

    • @mordenneil5184
      @mordenneil5184 6 років тому

      should not need to run as admin you just need winpcap

  • @sumeetsharma8482
    @sumeetsharma8482 6 років тому +1

    you are super brainy. thanks!

  • @jaguawr1185
    @jaguawr1185 5 років тому

    how to find the hex string of a packet?

  • @maindepth8830
    @maindepth8830 4 роки тому

    pls make more content like this

  • @DLCSquare
    @DLCSquare 7 років тому

    hi, i wonder if you can do another session. thanks.

    • @SinnohStarly
      @SinnohStarly  7 років тому

      What would you like me to cover?

    • @DLCSquare
      @DLCSquare 7 років тому

      a more in depth session with more explanations

    • @sparkeyluv
      @sparkeyluv 7 років тому +1

      I'd like to see you read more packet captures and give explanation to whats happening. Or I would like your discuss layer 1-7 headers in detail.

  • @MicroNuggets
    @MicroNuggets 6 років тому

    impossible to understand how this can help me as I am not a computer guy but think my network and computer has been hacked...any advice for a noob like me?

  • @HampTamp
    @HampTamp 7 років тому

    Do you use a program for snapping windows in different sizes to the corner of the screen?

    • @SinnohStarly
      @SinnohStarly  7 років тому

      On Windows this is built in, I think it was being smart and remembered that I had shrunk the browser window previously to that size. On Mac I use BetterSnapTool to get this snapping, it's a life changer!

    • @HampTamp
      @HampTamp 7 років тому

      Ah yeah that's what it was! Sweet! Yes I do use that on mac as well. Cheers!