Section 1: Networking Basics (54 min)
- TCP / IP vs OSI Model
- Application Layers
- Transport Layer
- Network Layer
- Data Link & Physical Layers
- End-to-End Communication: Putting it all together (Pt 1)
- End-to-End Communication: Three Way Handshake
- End-to-End Communication: Putting it all together (Pt 2)
- Wireshark: First Dive!
Wireshark Basics
- Capture Filters
- Protocol Dissectors
- Navigation
- Exporting Objects
Advanced
- Display Filter Hacks 1
- Display Filter Hacks 2
- Threat Hunting Profiles 1
- Threat Hunting Profiles 2
- Threat Hunting Profiles 3
- GeoIP
Section 3: Beyond Wireshark (32 min)
- Using Wireshark with Brim
- Installing Brim
- Navigating the Brim UI
- Investigating Malware with Brim
- PacketTotal.com
Section 4: Red Teaming Fun (31 min)
- Wireshark + Brim Incident: Investigating a Covenant C2
- Wireshark + Brim Incident: Understanding the Covenant C2
Section 5: Bonus Section: Thank you!
- Bonus Lecture