Day 07 - The Grinch Really Did Steal Christmas
Fundamentals
Solutions
Open "pcap1.pcap" in Wireshark. What is the IP address that initiates an ICMP/ping?
If we only wanted to see HTTP GET requests in our "pcap1.pcap" file, what filter would we use?
Now apply this filter to "pcap1.pcap" in Wireshark, what is the name of the article that the IP address "10.10.67.199" visited?
Look at the captured FTP traffic; what password was leaked during the login process?
Continuing with our analysis of "pcap2.pcap", what is the name of the protocol that is encrypted?
Analyse "pcap3.pcap" and recover Christmas! What is on Elf McSkidy's wishlist that will be used to replace Elf McEager?
PreviousDay 06 - Be careful with what you wish on a Christmas nightNextDay 08 - What's Under the Christmas Tree?
Last updated