Simplify your work and find faults faster.
Created by Regula Gönner
Last updated 6/2016
  31 mins on-demand video
  3 Articles
  3 Supplemental Resources
  • Full lifetime access
  • Access on mobile and TV
  • Certificate of Completion
What Will I Learn?
Work more efficiently with Wireshark
Know useful features from Wireshark
Be able to decide when to use capture filters and when to prefer display filters.
  • You need some experience with Wireshark and should already have installed and used it successfully.

Why Wireshark?

Wireshark is the world's foremost network protocol analyzer. It lets you see what's happening on your network at a microscopic level. It is the de facto (and often de jure) standard across many industries and educational institutions.

Perform analysis more efficient

Wireshark has many features that simplify your analysis. Do you know what you can achieve by using different profiles in Wireshark? You will be able to adjust the tool for different situations.

Discover hidden features in Wireshark

Many valuable features are quite hidden. You will see how you add comments for documentation purposes or how you limit the file size of your trace without loosing relevant data.

The course will not cover installation and first steps with Wireshark and it also does not contain details about protocol analysis. It is suited for anybody with basic knowledge of Wireshark and even experts may discover a few tricks.

Wireshark is the most important tool and the part of the weapon list of every infosec professional. Wireshark plays an important role during the penetration testing process and even hackers use it to sniff the confidential data. But, have you ever tried using the advance features of Wireshark? Do you really know what Wireshark is able to do? Or do you know what you can achieve using Wireshark? And, how you can effectively use Wireshark to achieve your pentesting objectives?
Don’t you know the answers? Well, this is why we have launched this course, it unearths the advanced features of Wireshark, it is a short crash course that focuses on how you can get the maximum value of using Wireshark during the penetration testing. This course does not teaches the installation process, but it teaches the features that are important and that you should consider.

This course also helps to achieve the Wireshark certifications, for example, WCNA (Wireshark certified Network Analyst). 

Who is the target audience?
  • If you have already used Wireshark before and want to learn about specific features, this would be a course for you.
  • The course is not suited for complete beginners as it assumes you already have some initial knowledge.
  • Even if you often use Wireshark, there are some well hidden features that can simplify your work. Give it a try.
  • The course is intended for any engineer, network supporter, computer science student, college student etc that wants to use Wireshark more efficient
Curriculum For This Course
Expand All 17 Lectures Collapse All 17 Lectures 32:53
Get started
2 Lectures 01:57

Learn where you find many important hints on how to use and configure Wireshark.

Preview 00:44
5 Lectures 12:28

Some important things you can change in the preference settings.

Preview 01:35

Learn how to efficiently adjust settings for different use cases.

Preview 04:31

The configuration settings are stored in files. Learn what can be found in which file and which files you need to create yourself.

Preview 02:44

Define human readable names for MAC and IP addresses.

Assign human readable names

Colours in IO graph

Features for your analysis
5 Lectures 07:49

Configure the time format according to your needs.

The best timeformat and your own time reference

If there are too many packets you can simply ignore irrelevant ones.

Preview 00:44

Export specific packets to have smaller traces without overhead.

Export packets

Add comments to files and packets for documentation.

Use capture properties and comments

Search for strings in the trace.

Preview 01:11

Use filters and optimise trace size
4 Lectures 10:23

Filter at capture and during analysis. Understand the differences between capture filters and display filters.

Understand the difference between capture and display filters

more about filters

See different methods to efficiently capture packets and have traces with reasonable file size.

Limit the trace size

Learn how to install plugins in Wireshark.

Preview 01:07

1 Lecture 00:22
About the Instructor
Regula Gönner
3.9 Average rating
35 Reviews
1,753 Students
3 Courses
Network Analyst

Finding faults is one of my "hobbies"; with a broad background on networking technologies and experience in development, testing and analysis and a good intuition finding anomalies becomes simple. To share this know-how in various courses is as important as applying it on different types of analysis. A master in electrical engineering and many years in the telecommunication industry provide the technical background.