office politics
It's all just 1s and 0s
- Messages
- 6,555
- Location
- in the lab
Quick and dirty packet capture data extraction - Packet Life
click link for full article
By stretch | Monday, July 13, 2009 at 12:58 a.m. UTC
If you ever find yourself needing to reconstruct binary data contained within a packet capture, there is a simple way to do so on the fly using only Wireshark and a utility called foremost. Reference the attached packet capture containing a JPEG image downloaded via HTTP to play along.
click link for full article