• Post author:
  • Post category:Blog
  • Reading time:1 mins read
  • Post last modified:June 12, 2024

Which tool generates data packet captures and is appropriate for both threat hunting and forensic activities?

  • IPS logs
  • Wireshark
  • SIEM
  • Cisco Secure Malware Analytics
Explanation & Hint:

Wireshark is the tool that generates data packet captures and is appropriate for both threat hunting and forensic activities. Wireshark is a widely-used network protocol analyzer that allows security analysts and incident responders to capture and analyze network traffic in detail. It is a valuable tool for examining network communications, identifying anomalies, and conducting both threat hunting and forensic investigations by analyzing packet-level data.

For more Questions and Answers:

Security Operations Center Post-Assessment | CBROPS

Subscribe
Notify of
guest
0 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments