Tcpdump
Capture your packets to prove your work
tcpdump -nnX tcp and dst $IP
tcpdump -nn udp and src $IP
tcpdump -nn tcp and port 80 and host $IP
tcpdump -nv -s0 -w /tmp/winauth.pcap port 445
sudo tcpdump -i loopback ..to watch
sudo tail -f /var/log/auth.logtcpdump options:
Wireshark Extracts
Last updated