To complete exercises covered in this chapter, you will require the following software and OS:
- Wireshark v3.0.0 (https://www.wireshark.org/download.html) installed on Windows 10 OS and Ubuntu 14.04
- PCAP Files for the exercises (https://github.com/nipunjaswal/networkforensics/tree/master/Ch6)
- NetworkMiner (https://www.netresec.com/?page=networkminer) installed on Windows 10
- Required third-party tools:
- Hidden Tear Decryptor (https://github.com/goliate/hidden-tear)
- PyLocky Decryptor (https://github.com/Cisco-Talos/pylocky_decryptor)