software:free
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
software:free [2018/08/23 06:28] – [alternate data streams] superwizard | software:free [2020/07/27 01:38] (current) – [afterglow] superwizard | ||
---|---|---|---|
Line 234: | Line 234: | ||
====== afterglow ====== | ====== afterglow ====== | ||
+ | <WRAP center round box > | ||
http:// | http:// | ||
Line 248: | Line 249: | ||
additional (Secfurity Visualization) : http:// | additional (Secfurity Visualization) : http:// | ||
+ | |||
+ | |||
+ | Visualizing Packet Captures For Fun and Profit | ||
+ | Filed under: Log Analysis, | ||
+ | |||
+ | Have you ever collected a packet capture and you needed to know what the collected traffic is about? Here is a quick tutorial on how to use AfterGlow to generate link graphs from your packet captures (PCAP). | ||
+ | I am sitting at the 2012 Honeynet Project Security Workshop. One of the trainers of a workshop tomorrow just approached me and asked me to help him visualize some PCAP files. I thought it might be useful for other people as well. So here is a quick tutorial. | ||
+ | |||
+ | From < | ||
+ | |||
+ | |||
+ | |||
+ | </ | ||
====== gnuplot ====== | ====== gnuplot ====== | ||
Line 297: | Line 311: | ||
gcm -ParameterName stream | select name | gcm -ParameterName stream | select name | ||
+ | |||
The returned list of cmdlets which support Alternate Data Streams is: | The returned list of cmdlets which support Alternate Data Streams is: | ||
+ | |||
Add-Content | Add-Content | ||
+ | |||
Clear-Content | Clear-Content | ||
+ | |||
Get-Content | Get-Content | ||
+ | |||
Get-Item | Get-Item | ||
+ | |||
Out-String | Out-String | ||
+ | |||
Remove-Item | Remove-Item | ||
+ | |||
Set-Content | Set-Content | ||
software/free.1535005684.txt.gz · Last modified: 2018/08/23 06:28 by superwizard