Wireshark is a free, open-source network protocol analyzer that allows users to capture and display packet-level data, providing insights into network communication and troubleshooting capabilities. With Wireshark, users can analyze network protocols, troubleshoot network problems, and detect network intrusion attempts. The tool is widely used in many commercial and non-profit enterprises and is supported by the non-profit Wireshark Foundation. Wireshark offers various resources, including a university program, podcast, and conference, to help users learn and master the tool.
FEATURES
SIMILAR TOOLS
A network protocol panic button operating decentralized through UDP broadcasts and HTTP, intended for sensitive networks to prevent cold boot attacks.
OpenSnitch is a GNU/Linux application firewall with interactive outbound connections filtering and system-wide domain blocking capabilities.
Cilium is a networking, observability, and security solution with an eBPF-based dataplane.
A daemon for blocking USB keystroke injection devices on Linux systems
A blog sharing packet capture files and malware samples for training and analysis, with archived posts and traffic analysis exercises.
A repository of pre-defined detections for security threats and abnormal behaviors in Falco.
Ericsson Enterprise Wireless Solutions provides secure wireless connectivity for businesses through private 5G networks, enterprise coverage solutions, and cloud-managed WWAN infrastructure with integrated zero trust security.
A tool for taking a list of resolved subdomains and outputting any corresponding CNAMES en masse.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.