Get in Touch

Course Outline

  • Utilizing Command-Line Tools
  • TShark and Dumpcap Command-Line Utilities
  • Capinfos Command-Line Utility
  • Editcap Command-Line Utility
  • Mergecap Command-Line Utility
  • Text2pcap Command-Line Utility
  • Splitting and Merging Trace Files
  • Advanced Application of Capture and Display Filters
  • Developing Advanced Capture Filter Scripts
  • Crafting Advanced Display Filters
  • Implementing Triggered Filters
  • Advanced Usage of the Expert System
  • Managing Congestion: Shattered Windows and Flooding
  • Establishing Baseline Network Communications
  • Identifying Anomalous Network Communications
  • Vulnerabilities in the TCP/IP Resolution Process
  • Laboratory Exercises and Case Studies
  • Identifying Communication Sources
  • Port Scanning Analysis
  • Mutant Scanning Detection
  • IP Scanning Analysis
  • Application Mapping Techniques
  • OS Fingerprinting Methods
  • Laboratory Exercises and Case Studies
  • VoIP Traffic Analysis
  • SIP Protocol Analysis and Troubleshooting
  • RTP, RTCP, and Media Stream Analysis
  • Designing VoIP Filters and Analysis Profiles
  • Laboratory Exercises and Case Studies
  • Application Analysis and Troubleshooting
  • HTTP Protocol Analysis and Resolution
  • FTP Protocol Analysis and Resolution
  • DNS Operations and Troubleshooting
  • Video Transmission Analysis
  • Database-Related Network Issues
  • Foundations of Network Security and Forensics
  • Information Gathering: Key Indicators
  • Recognizing Unusual Traffic Patterns
  • Utilizing Complementary Diagnostic Tools
  • Detecting Suspicious Security Patterns
  • MAC and IP Address Spoofing Detection
  • Attack Signatures and Their Locations
  • ARP Poisoning Analysis
  • Header and Sequencing Signatures
  • Analyzing Attacks and Exploits
  • TCP Splicing and Anomalous Traffic Detection
  • DoS and DDoS Attack Mitigation
  • Protocol Scanning Analysis
  • Handling Maliciously Malformed Packets
  • Laboratory Exercises and Case Studies

Requirements

Participants are expected to possess in-depth knowledge of the TCP/IP protocol stack and should have completed the “Basic Network Troubleshooting using Wireshark” course or demonstrate equivalent proficiency. Additionally, attendees must bring their own laptops with Wireshark installed (available for free download at www.wireshark.org).

 21 Hours

Number of participants


Price per participant

Testimonials (5)

Upcoming Courses

Related Categories