Module 8: Sniffing

Section 1: Sniffing Concepts

Network sniffing is the process of capturing and analyzing network traffic flowing through a network.

Types

  • Passive Sniffing: Listening to network traffic without interfering
  • Active Sniffing: ARP poisoning to capture traffic meant for other hosts

Tools

  • Wireshark: Packet analysis and capture
  • Tcpdump: Command-line packet analyzer
  • Snort: Network intrusion detection