Guarding all the doors
There are many, many skills that cybersecurity defenders can learn about to be more proficient at their job. This section will teach you about defensive skill development through analyzing actual malicious network traffic for indicators of compromise and interesting attributes.
There are whole books dedicated to just learning about blue team skills. This section of this book covers just a few of those many skills, but it is intended to give you a good taste of that world and to give you practical hands-on experience. We will gain some experience with Wireshark, a network traffic analysis tool, and take a brief look at malware analysis.
Wireshark is a network analysis tool that every cybersecurity professional should be familiar with, especially if you're going to be a blue team or a security operations analyst. Wireshark analyzes network packet capture (PCAP) files. PCAP files are captured network traffic files.
Wireshark has a nice, clean graphical...