Packet analysis using NetworkMiner
Analyzing captured data from Wireshark can be a bit of a challenge to people who may be new to the protocol analyzer, as it requires knowledge of protocols, filters, and the ability to follow data streams (all of which becomes easier with practice).
NetworkMiner is an easy-to-use packet capture viewer that some users may find easier to use for .packet
capture (PCAP) analysis, as it extracts and sorts the found data into categories of hosts (with operating system fingerprinting), files, images, messages, sessions, and more by parsing the PCAP file.
NetworkMiner comes in a free as well as a paid professional version, and can be installed on Windows and Linux.
We will now download NetworkMiner, which will be installed using Wine, and then analyze a sample PCAP file:
- You can visit the official website for NetworkMiner at this link: https://www.netresec.com/?page=NetworkMiner.
You can also download the installation file at https...