Talk With an Expert

Simple Traffic Analysis With Ethereal

Simple Traffic Analysis With Ethereal (PDF, 2.38MB)Published: 17 May, 2005
Created by:
Neil Orlando

This paper describes how to use the Ethereal Display Filter to examine a capture log file. The data analyzed was recorded by port and the amount of packet traffic received. The attack patterns that emerged from the data analysis generally correspond with well published vulnerabilities from expected open ports on a server. Attackers also seem to have a variety of ways to get a server and/or firewall to acknowledge traffic and verify a potential target.