Wireshark Fundamentals
Master the essential packet analysis skills required for SOC Analysts, Network Engineers, and Security Professionals using real-world traffic captures and hands-on labs.
Overview
This project introduces you to Wireshark from the ground up, focusing on practical packet analysis skills used daily in Security Operations Centers (SOCs).
You will learn how to capture, filter, inspect, and analyze network traffic to understand normal behavior and identify suspicious or malicious activity. Through guided exercises, you’ll decode real packets, analyze common protocols, and investigate attack patterns such as scans, brute force attempts, and suspicious DNS or HTTP activity.
Each topic is paired with hands-on labs designed to simulate real SOC investigations, helping you build confidence in network traffic analysis — a core skill for threat detection, incident response, and threat hunting.
What You'll Learn
-
Wireshark Basics & Interface
Understand what Wireshark is, how it works, and how to navigate the interface. Learn packet capture vs packet analysis, capture methods, and how Wireshark fits into SOC workflows.
-
Packet Capture Fundamentals
Learn how network packets are captured, the role of NICs and interfaces, promiscuous mode, and best practices for safe and effective traffic capture.
-
Display Filters & Capture Filters
Master Wireshark filters to quickly isolate relevant traffic. Learn how to filter by IP, protocol, ports, flags, errors, and application data — a critical skill for fast investigations.
About Trainer
Rajneesh Gupta
Rajneesh Gupta is a seasoned cybersecurity professional with over 11 years of industry experience. With a remarkable career focused on incident response, penetration testing, security compliance, and risk management, Rajneesh has established himself as a leading expert in the field. He is also an accomplished author, having penned the book "Hands-on with Blockchain and Cybersecurity". As a dedicated educator, Rajneesh has made a significant impact on the cybersecurity community by training over 60,000 students globally.
Related Projects
Practical AWS Cloud Security Posture Assessment Using Scout Suite
Identify real-world AWS attack surfaces through visual security posture analysis.
Wazuh + n8n + Anyrun: Automated Malware Analysis
Automate malware analysis by sending Wazuh-detected suspicious files into ANY.RUN, retrieving detailed reports and IOCs, and integrating results back into your SOC workflow.
Apache Web Server Log Monitoring using Wazuh
Real-time detection of HTTP errors, brute-force and suspicious requests from Apache logs