You've got an absolutely amazing ability to explain things quickly and clearly. I tend to get bored and distracted when I visit KZbinr videos explaining topics like these so I quickly jump to something else. People can talk so slow and repeat themselves so many times, I get antsy to hear what's next. I'm learning a lot from your video. I just downloaded Wireshark yesterday. I graduated over 30 years ago with a BSEE and haven't written ANY code for well over 20 years. I've been able to pick up enough to start troubleshooting the massive data consumption issue I'm having on my plan. Consumption has more than doubled in one month with only 2 of us in our home. I can now identify which device is consuming the largest amount of data at any given time. WOO HOO!! Still waiting for Comcast to call me after multiple calls and Agent Chats. I hope to figure out my issue myself with help from providers like you! THANK YOU!!
@littop04 ай бұрын
@@yeayea8334 it's meant for beginners
@AnsonAlexander Жыл бұрын
CORRECTION: At 11:45 HTTPS traffic goes on port 443, not 80. The correct filter is: "tcp.port==443". Port 80 is usually HTTP traffic. Sorry, had a lot going on in this one!
@BettyDuBois11 ай бұрын
You were looking at compressed (gzip) data. That's why it looks like encrypted data.
@edwinfrancisco811611 ай бұрын
@@BettyDuBois This clarified my confusion. I was wondering why the HTTP packets were encrypted. I was starting to doubt my knowledge of computer networking, haha
@mikkio53718 ай бұрын
Yea I was waiting to hear 443 . But thanks .
@bazejczuk89725 ай бұрын
😅
@bazejczuk89725 ай бұрын
It is always possible to not know or forget something. Don't worry, you're doing a good job!
@CD-ch8ex6 күн бұрын
Studying at university and this video is a job well done! Lot of time saved. A very good starting point. Also appreciate the part where you go a little further like the security key to decrypt what's in encrypted protocols. I'll for sure check your other videos. Continue your great work.
@CameronCollege-i3p Жыл бұрын
Where was this when I was in university, that actually sums up more than I learned on how to use wireshark in my first semester.
@3DComputing7 ай бұрын
Nice someone that actually makes it work in the real world for IOT and such, not just big url talk. Thanks
@eechaze12 Жыл бұрын
Thanks for this tutorial. I'm new to using Wireshark
@hadestech814711 ай бұрын
Anson, outstanding fast simple straight forward. Thanks
@collectorscloset81311 ай бұрын
Seriously the most useful video on this thanks
@edwinfrancisco811611 ай бұрын
I have been watching videos on the topic of Wireshark. Your video blew all of those videos out of the water! Your step-by-step examples and tips were so helpful! I also really like how your video was straight to the point! THANK YOU!!
@arumugasamyk448 ай бұрын
Nice
@johnrieley140411 ай бұрын
Thanks much for clear teaching and nice graphics. Just studying my ham radio UDP multicasting network with WSJT-X, JTAlert, Log4OM, and Grid Tracker. This is getting deep!
@ipaemer2604 Жыл бұрын
Very helpful and great video! I would also like to watch more videos about wireshark, to learn more. Excellent work!
@bricejackson157611 ай бұрын
Amazing video. Very clear and to the point! Subscribed!
@furkanozdemir1ify3 ай бұрын
One single video explained all my questions about Wireshark. Thanks.
@DawgShawgАй бұрын
Thank you so much for this video. I'm trying to switch careers and have decided to focus on Cybersecurity. Currently taking the Google Cybersecurity Cert course. Hopefully everything goes well.
@JAXXYT-wt8tz6 ай бұрын
I am impressed by the easy way this boy giving the information you really make me eager to learn how this Wireshark works.
@AnsonAlexander6 ай бұрын
Thanks! Hope you enjoy WS!
@eddiegerlach71216 ай бұрын
Thank you for this tutorial. I am starting my new career in Cybersecurity and really appreciate the Malware-Traffic-Analysis suggestion. The class I'm taking just started discussing tools and I find Wireshark a bit overwhelming and intimidating, hence my search to your video. I believe this will assist greatly in gaining a greater understanding and competency with Wireshark! Subscribed!! :)
@SabrinaBlackburn-g5uАй бұрын
Subscribed half way through your video. I love the pacing you have in your content as well as the use and instructions. I encourage you to please continue posting things as I will certainly watch every one of them and apply them to my career.
@kishorebabu432 Жыл бұрын
Excellent presentation
@brucegavin7614Ай бұрын
Outstanding overview. Fed with a fire hose, but valuable. Kudos for an excellent presentation.
@soverintysons75488 күн бұрын
you killed this and saved me so many headaches. thank you
@isaacberhe52239 ай бұрын
Do mor of Wireshark presentation you best teacher as I have seen it!
@morganwebster663610 ай бұрын
So helpful for a newbie like myself. Totally able to comprehend your whole video. Thank you.
@mikewoodard14527 ай бұрын
@AnsonAlexander I appreciate this. I was going to do this but I love your delivery and your examples appreciate your detail.
@cals0ul9 ай бұрын
I love this video and the resources you've provided. I have been studying and getting into cybersecurity and am grateful for your informational video. Subscribed!
@AnsonAlexander9 ай бұрын
That's awesome to hear, I'm glad to be able to help. Good luck with the degree and thanks for the sub!
@littop04 ай бұрын
great video, really helped me grasp the basics of wireshark
@EthicalKali16 күн бұрын
wow, u made me understand what i was struggling with thanks alot
@AnsonAlexander16 күн бұрын
You're welcome. I really tried to make this video in a way that would change peoples' understanding of Wireshark.
@ArjanSheraz9 ай бұрын
Excellent presentation
@AnsonAlexander9 ай бұрын
Thanks!
@MC-ew7sc Жыл бұрын
Great update video.
@AnsonAlexander Жыл бұрын
Thanks! It was long overdue...
@StoryBookPalace056 ай бұрын
Im In information tech doing my Bach, Wireshark is something i learning right now.
@prernamullick32059 ай бұрын
Very Well Explained and Easy to understand
@AnsonAlexander9 ай бұрын
Thanks, I'm glad you found it helpful!
@rajeevpuri831911 ай бұрын
very good video .Thank You.
@washingtonochieng5106 Жыл бұрын
Thank you
@mohammedimranchoudhari80822 ай бұрын
Loved your educational content and quality 😊.
@MosesGithinji-r4l2 ай бұрын
To enable Packet Diagrams on Windows Wireshark version, go to Edit > Preferences > Appearance > Layout, and under Pane 3, choose Packet Diagram
@AnsonAlexander2 ай бұрын
Thanks for the tip!
@TylersLeftSock9726 күн бұрын
This is fricken good bud! I just found your you tube page. I need wireshark for CCTV testing and troubleshooting.
@inspectorratchet76149 ай бұрын
Thank you brother, you seem like a good man.
@AnsonAlexander9 ай бұрын
Haha, thanks... and you're welcome!
@daedalusjones42282 ай бұрын
Excellent video. Content is great, your explanations are crystal clear, and made even clearer by the excellent production values (use of zoom, annotation, etc., making everything VISIBLE, easy to see and read). Great info! Thanks, brother!
@Adventure_Food_Fun_US3 ай бұрын
What a great video and explanation man! Good job!
@christianminardi62308 ай бұрын
Thank you for the Knowledge!! Great videos
@AnsonAlexander8 ай бұрын
You're welcome, glad to help!
@foxart1387 Жыл бұрын
Thanks!
@AnsonAlexander Жыл бұрын
You're welcome!
@josephjefferson63686 ай бұрын
Excellent, Anson. Deserves both thumbs up and "Subscribed." joe.
@andrewwhite8898 ай бұрын
Excellent tutorial. Thank you.
@train490511 ай бұрын
Awsome😊😊
@MarkinChiangMai3 ай бұрын
Excellent video. Thank you, brother.
@jayhmedmustafa3 ай бұрын
nice job my friend, greats from Morocco
@Hatch-vg7pw7 ай бұрын
EASY TUTORIAL TO FOLLOW. Step by step clear explanation NOT CLICK BAIT! Thanks Subbed.
@danielkolesnikov12782 ай бұрын
from what Im seeing on the internet port 80 is used for regular http communication but port 443 is used for secure https communication
@AnsonAlexander2 ай бұрын
Yeah… check comments
@MrKashifiq6 ай бұрын
Outstanding and thanks for sharing the knowledge!!
@m.haseebshahzad90585 ай бұрын
best one very concise and save alot of time
@mohdkaifkhan201215 күн бұрын
Great Video👍
@francissaanane58746 ай бұрын
Thank You, awesome Wireshark details.
@shreyaskarthik21857 ай бұрын
really helpful , very consise and amazing pacing, thank you :)
@ao45148 ай бұрын
Hey Alex, would you consider doing some contents on how to detect malware or spywares utilizing Wireshark?!
@AnsonAlexander8 ай бұрын
It's definitely on my radar. It's just that setting up the environment is tough. I think I would use the PCAPS from Malwarebytes. Thanks for the suggestion, I will take it into account for sure!
@allangomez989010 ай бұрын
Thanks for the great explanation.
@TheGalactusDiet8 күн бұрын
more of this please
@albfresh5 ай бұрын
Extremely helpful thanks
@cherronetwork87299 ай бұрын
thanks for well explaining
@MUHAMADBINTAYYIB7 ай бұрын
gudluck for yours new project
@konteezy2039 ай бұрын
This is a great video
@AnsonAlexander9 ай бұрын
Thanks - sorry again about the port mix up.
@dragospalade94605 ай бұрын
Really useful. Thanks!
@WesleyKanye9 ай бұрын
Thank you sir!
@AnsonAlexander9 ай бұрын
You are welcome!
@BigBoy-nw2ur8 ай бұрын
I'm a complete noob at this. Just installed it and have no idea what to do..hopefully your video helps
@AnsonAlexander8 ай бұрын
It definitely should - one of my main goals was showing people what to look for. Good luck!
@MrDayinthepark7 ай бұрын
Hi Anson, I'm routing UDP telemetry data from a drone to my external IP, then using router port forwarding to route to my PC, which I've assigned a fixed IP. It's not working, I downloaded Wireshark yesterday and tried to debug. I see a bunch of UDP transmissions, but my phone is connected so it might be just my phone. I was overwhelmed by all the data in Wireshark. Still trying to figure out where the problem is.
@LukasKopcaАй бұрын
Díky!
@AnsonAlexander16 күн бұрын
You’re welcome and thank you!!
@macm30862 ай бұрын
Thanks !!!
@AnsonAlexander2 ай бұрын
Welcome!
@roseandmose10 ай бұрын
You are very helpful thank you
@alfonstabz97412 ай бұрын
thanks man
@AnsonAlexander2 ай бұрын
Welcome!
@user-mc4lb1jy7b10 ай бұрын
Thanks for sharing. Quick question, can you use Wireshark to only monitor activities on your personal computer or laptop?
@terrykilpatrick579910 ай бұрын
Port 80 is unencrypted traffic via http and 443 is encrypted traffic via https, I think you mistakenly said port 80 for secure traffic.
@Fantasmagorikus9 ай бұрын
Yup I found this out while looking through the video as well. The statement "generally to see secure traffic you need to look on port 80" is incorrect under conventional networking standards. Here's a clarification: - **Port 80** is traditionally used for **HTTP** traffic, which is **not secure**. HTTP (Hypertext Transfer Protocol) is the foundation of data communication on the World Wide Web, and when it's used without SSL/TLS, the data is sent in plaintext. This can be easily intercepted and read by third parties. - **Port 443** is used for **HTTPS** traffic, which is **secure**. HTTPS (HTTP Secure) encrypts the data sent and received with SSL (Secure Sockets Layer) or TLS (Transport Layer Security) protocols, providing confidentiality, integrity, and authentication. This is why when you access a website with HTTPS, your browser shows a lock icon, indicating that the connection is secure. To see secure traffic using a network protocol analyzer like Wireshark, you would typically filter for traffic on port 443, not port 80. Filtering traffic on port 443 allows you to see encrypted HTTPS communication. However, without the appropriate decryption keys, you would not be able to see the plaintext of the encrypted traffic; you would only see that the data is being encrypted and transferred securely. There might be some confusion or a misunderstanding in the way the statement was made. If the intent was to demonstrate or inspect HTTPS traffic specifically, then the correct port to focus on would be 443, not 80. It's possible that the context in which this statement was made was misunderstood, or there was a communication error in the tutorial. Always remember, for secure web traffic, look towards port 443 for HTTPS.
@TOMESHTI10 ай бұрын
Thanks bruh! Nice vid.
@aslammadathil78719 ай бұрын
superb
@AnsonAlexander9 ай бұрын
Thanks 🤗
@bonnefe99439 ай бұрын
Good explanation about wireshark but is wireshark safe to use?
@AnsonAlexander9 ай бұрын
Thanks and good question. Wireshark doesn't introduce any security concerns that aren't already there. An insecure network is an insecure network regardless of whether or not you're using Wireshark. If anything, you could use it to do a manual security scan on an insecure network. If you bring in network security guys to do almost anything, Wireshark is one of the first software applications they're going to open up.
@rayalvarez517210 ай бұрын
excellent intro
@QueenChineye-di8ie3 ай бұрын
Very simplified and detailed.. Do you have tutorials on using splunk
@franksterkb89110 ай бұрын
Thank you!!!
@andeo17072 ай бұрын
Can you use Wireshark to see which cables inside a keystone are potentially faulty?
@Pvail263 ай бұрын
Do you have more videos on Wireshark?
@ayessedd10 ай бұрын
hey, what to do after you want to finish monitoring the network? after checking the network with wireshark, many sites refuse to give me access to browse, which didn't happen before
@johnvardy95599 ай бұрын
Hi anson great video.on malware analysis there arent anymore the answers.
@SandeepKumar-bv6wl2 ай бұрын
Sir on switch ...switch does not allow to capture other devices one to one conversations ,it only allows traffic between your pc and pc devjces broadcast mcast ARP stp traffic only ...not other pc to pc communications
@Graham_Wideman28 күн бұрын
You can get an inexpensive "managed" switch (eg: TP-Link TL-105E) which can be configured for various special functions. One function is "Port Mirroring", which configures a port to duplicate the traffic on another port. So you can interpose this switch in a leg of the existing network, and you can attach your PC/Mac to the mirror port. You can then use WireShark to "snoop" on the ongoing traffic on the original network.
@angeloc7006 ай бұрын
Oh man. You're probably not going to see any encrypted traffic on port 80, since it's just plain HTTP. Port 443 is encrypted HTTP (SSL).
@AnsonAlexander6 ай бұрын
Yeah... (check pinned comment)
@janrymar2229 Жыл бұрын
Hello, can you show or tell me how and where to install the master key on mac, where the protocols are stored, it's clear on windows, but for mac I can't find the answer, please help
@cosmicblack2 ай бұрын
is it possible to capture the request made by Internet Download Manager with wireshark? i cant find out how
@Darkregen95459 ай бұрын
Captured an IP private IP that wasn't listed in clients for my router utilizing my wifi and i was trying to figure out why this IP was receiving massive amounts of packets. I then tried blocking all tcp and udp packets and for some reason one of the computers in my house that had a different private ip no longer had internet connection. Why would a device have two private IPs?
@bryantapia310110 ай бұрын
Extremely helpful video but side note he looks alot like nadeshot!
@bayoumick1826Ай бұрын
I'm having a very hard time finding HTTP protocols, and when I expand on the HTTP stream, the website where I am at does not show up. I have turned on all the dissectors and nothing, it usually takes a long while for me to get a HTTP protocol packet, but it does not show the actual website I am visiting.
@JJFlores19725 күн бұрын
Most modern webpages use HTTPS rather than HTTP. HTTPS is an encrypted version of HTTP which offers more security and privacy compared to HTTP which is just plaintext. That's why you're not seeing much HTTP traffic.
@phillipmaser1326 ай бұрын
I have a Programmable Logic Control that sends out packets but wireshark cant see the data as it sends to the pc. Filtering use TCP.port == 1234 no data on this port coming for the PLC. have if i use labview and build out a TCP send protocol it see it and the data I am sending out. I can filter IP or Port works fine?
@1DumbSquirrel2 күн бұрын
so can't you do this stuff 12:20 just by right clicking a inspecting
@m_b91872 ай бұрын
How did you add the website?
@Starlite43216 ай бұрын
Do I understand correctly that Wireshark doesn't have the capability to inspect COM ports, for example on a Win10 machine ?
@angeloc7006 ай бұрын
Can't you just use PuTTY for that?
@travelingnomad8873 Жыл бұрын
how to find timestamp in wireshark packets?
@tanawatjukmongkol21787 ай бұрын
"Wire-shark is one of the most powerful tools for both Mac and Windows" Linux and BSDs: Am I a joke to you?
@tanawatjukmongkol21787 ай бұрын
Jokes aside, it's a good video tho
@cjhardknocks70406 ай бұрын
how would you tract a browser hijacker?
@harisankar_nc3 ай бұрын
grt
@hi5wifi-s56711 ай бұрын
How to protect the network away from people using supper tools like Kaili and White-shark around you?
@fireteamomega23438 ай бұрын
Whitelisting IP addresses and within your browser is probably the easiest way but if someone is intent and knows what they're doing then they can spoof it and potentially still gain access. If you want to get more complicated there are plenty of programs available for IP traffic monitoring where you can set alerts, rules, and notification preferences.
@the_original_dreamer9 ай бұрын
Port 80 for encrypted traffic?
@AnsonAlexander9 ай бұрын
See pinned comment.
@WeatherLockz-dv6sd10 ай бұрын
how do you load websites
@we-are-electric14453 ай бұрын
I downloaded Wireshark selected my Ethernet connection and then typed http into the search bar and it doesn't filter out http protocol it just caries on dumping everything. Anyone any suggestions as to what is wrong ?
@JJFlores1973 ай бұрын
Did you press enter after typing http ?
@we-are-electric14453 ай бұрын
@@JJFlores197 It has now cleared itself. I gave up for the day and next day when I started the PC Wireshark ran OK !
@cs51207Ай бұрын
Speed at 0.95
@AnsonAlexanderАй бұрын
Smart…
@satstube2 ай бұрын
Except isn't port 80 unencrypted and 443 encrypted TLS 🤔🤷🏼♂️ What Am I missing anyone? Thanks