Posts tagged: #dfir
A fair comparison of Wireshark, tshark, NetworkMiner, Zeek, Zui and PCAP Parser for pcap analysis: strengths, limits, and which tool fits which job.
Why packet captures are sensitive under GDPR and client contracts, how in-browser WebAssembly analysis avoids uploads, and how to verify nothing leaves.
Step-by-step guide to PCAP Parser: load a capture, then read conversations, protocol hierarchy, DNS, HTTP, TLS, extracted files and IOCs, and export results.