Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 42 guests and 2 members online
Free Business and Tech Magazines and eBooks
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Other
Wireshark University
EH-Net
May 21, 2013, 04:28:14 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Other
(Moderator:
don
) >
Wireshark University
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: Wireshark University (Read 10371 times)
0 Members and 1 Guest are viewing this topic.
knwminus
Full Member
Offline
Posts: 100
Wireshark University
«
on:
December 18, 2011, 02:03:28 PM »
Has anyone done any of the online courses? If they aren't too bad, 699 isn't a high price. Especially compared to something like SANS training.
https://lcuportal2.com/
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
YuckTheFankees
Sr. Member
Offline
Posts: 324
Re: Wireshark University
«
Reply #1 on:
December 18, 2011, 02:14:17 PM »
I've never taken any of their classes but I definitely looked into it because I wanted to get the wireshark cert. I've read that their videos are pretty good, and they will definitely help anyone gain more knowledge about wireshark and TCP/IP (experienced to rookies).
You really cant compare their pricing to SANS, SANS is in a whole different league. I would rather fork out 4500 for a SANS course rather than wireshark university, but it just depends on your budge, experience, and career path.
If you sign up, definitely let us know what they are like.
Logged
OSCP in progress
WCNA
Full Member
Offline
Posts: 187
Re: Wireshark University
«
Reply #2 on:
December 18, 2011, 04:11:54 PM »
I've taken the course and for me, it was worth every penny. My wireshark knowledge was pretty good before taking the course but after I took the course, I'd say it increased exponentially. In fact, the certification was probably why I got my new job. I'm doing a lot of troubleshooting log files and quite often, we'll have to look at an actual capture to see what exactly is wrong. As they say, packet's don't lie.
Laura is a good teacher and the course materials are extensive and clear. She repeats important topics several times so it really makes it easy to remember. It's not topic specific like a SANS course. It's apples and oranges. It covers all the major protocols and all the different ways wireshark can analyze a problem. For 700 it's not a bad deal. I can't remember exactly how many hours of videos it was but I seem to recall about 40. I don't think you will be disappointed but as always YMMV.
Logged
ISC2 Associate, WCNA, CWNA, OSCP, Network+
millwalll
Guest
Re: Wireshark University
«
Reply #3 on:
December 19, 2011, 04:05:49 AM »
Looks good maybe if i get some time and funds i will do this after OSCP
Logged
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Wireshark University
«
Reply #4 on:
December 19, 2011, 08:07:44 AM »
Quote from: WCNA on December 18, 2011, 04:11:54 PM
I've taken the course and for me, it was worth every penny. My wireshark knowledge was pretty good before taking the course but after I took the course, I'd say it increased exponentially. In fact, the certification was probably why I got my new job. I'm doing a lot of troubleshooting log files and quite often, we'll have to look at an actual capture to see what exactly is wrong. As they say, packet's don't lie.
Laura is a good teacher and the course materials are extensive and clear. She repeats important topics several times so it really makes it easy to remember. It's not topic specific like a SANS course. It's apples and oranges. It covers all the major protocols and all the different ways wireshark can analyze a problem. For 700 it's not a bad deal. I can't remember exactly how many hours of videos it was but I seem to recall about 40. I don't think you will be disappointed but as always YMMV.
Have you read the official book? If so, how do you feel the course compared to it? I thought the book was quite comprehensive and didn't think I'd get much more out of the course.
I'm sure it depends on your learning style too though. I'm usually fine with a book, but I'm sure others prefer more structured instruction.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
knwminus
Full Member
Offline
Posts: 100
Re: Wireshark University
«
Reply #5 on:
December 19, 2011, 10:40:56 AM »
I've read it for the most part (still need to finish up the Tshark stuff). I was looking for something that would be a low cost version of the GCIA training. 4500 isn't happening anytime soon. OSCP looks cool but the WCNA material would be beneficial. I may just try to squeeze the OSCP in at some point late next year (probably after CCIE written if I do it at all).
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Wireshark University
«
Reply #6 on:
December 19, 2011, 11:11:56 AM »
Quote from: knwminus on December 19, 2011, 10:40:56 AM
I've read it for the most part (still need to finish up the Tshark stuff). I was looking for something that would be a low cost version of the GCIA training. 4500 isn't happening anytime soon. OSCP looks cool but the WCNA material would be beneficial. I may just try to squeeze the OSCP in at some point late next year (probably after CCIE written if I do it at all).
My GCIA self-study strategy is the following:
http://www.amazon.com/Wireshark-Network-Analysis-Official-Certified/dp/1893939995/ref=sr_1_1?ie=UTF8&qid=1324314553&sr=8-1
http://www.amazon.com/Snort-Toolkit-Beales-Source-Security/dp/1597490997/ref=sr_1_1?ie=UTF8&qid=1324314558&sr=8-1
http://www.amazon.com/TCP-Guide-Comprehensive-Illustrated-Protocols/dp/159327047X/ref=sr_1_6?ie=UTF8&qid=1324314569&sr=8-6
http://www.amazon.com/Tao-Network-Security-Monitoring-Intrusion/dp/0321246772/ref=sr_1_1?s=books&ie=UTF8&qid=1324314623&sr=1-1
Snort has changed quite a bit since that book was released, but it's still good for foundation concepts, etc. Just supplement with official docs.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
knwminus
Full Member
Offline
Posts: 100
Re: Wireshark University
«
Reply #7 on:
December 19, 2011, 12:28:54 PM »
I'm a little shocked that you didn't include the other "TAO" book:
http://www.amazon.com/Extrusion-Detection-Security-Monitoring-Intrusions/dp/0321349962/ref=sr_1_1?ie=UTF8&qid=1324319286&sr=8-1
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Wireshark University
«
Reply #8 on:
December 19, 2011, 01:01:00 PM »
Quote from: knwminus on December 19, 2011, 12:28:54 PM
I'm a little shocked that you didn't include the other "TAO" book:
http://www.amazon.com/Extrusion-Detection-Security-Monitoring-Intrusions/dp/0321349962/ref=sr_1_1?ie=UTF8&qid=1324319286&sr=8-1
I have it, and it's a great book. I just don't know if it adds much to GCIA studies after all those others. It certainly wouldn't hurt though.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
l33t5h@rk
Jr. Member
Offline
Posts: 79
Re: Wireshark University
«
Reply #9 on:
December 19, 2011, 01:03:32 PM »
Isn't this a much, much cheaper alternative?
http://www.amazon.com/Practical-Packet-Analysis-Wireshark-Real-World/dp/1593272669/ref=wl_it_dp_o_npd?ie=UTF8&coliid=I2C55HVZC0QAX3&colid=13CPC8DZ1Z4LY
With WireShark being free and all I'd think downloading the tool and reading up on this material would be pretty good for those on a budget. I have heard the Laura Chappel courses are amazing, but again, for the price.
Logged
hurtl0cker
Jr. Member
Offline
Posts: 73
Re: Wireshark University
«
Reply #10 on:
December 19, 2011, 08:02:55 PM »
I had that book "Practical Packet Analysis, Second Edition". it is a nice book, especially for beginners but it could have been even better. you can find official EHNet review here:
http://www.ethicalhacker.net/content/view/380/2/
. but for the price of 30 bucks it is still quite a good introduction to the topic.
Logged
“Knowing is not enough; we must apply. Willing is not enough: we must do.”
- Bruce Lee
knwminus
Full Member
Offline
Posts: 100
Re: Wireshark University
«
Reply #11 on:
December 20, 2011, 08:59:24 AM »
Quote from: l33t5h@rk on December 19, 2011, 01:03:32 PM
Isn't this a much, much cheaper alternative?
http://www.amazon.com/Practical-Packet-Analysis-Wireshark-Real-World/dp/1593272669/ref=wl_it_dp_o_npd?ie=UTF8&coliid=I2C55HVZC0QAX3&colid=13CPC8DZ1Z4LY
With WireShark being free and all I'd think downloading the tool and reading up on this material would be pretty good for those on a budget. I have heard the Laura Chappel courses are amazing, but again, for the price.
I might pick it up but I was looking for something a little higher level.
Logged
A+ N+ CCNA CCNA:S CNSS 4011 Security+
Next Up: CCNP CCNP:S
WCNA
Full Member
Offline
Posts: 187
Re: Wireshark University
«
Reply #12 on:
December 21, 2011, 09:03:50 PM »
Laura's course is NOT a security course. It covers the same material as in the book she wrote. It just makes it easier because you are following along in the traces she demonstrates. It is not a substitute for a GCIA or OSCP or any other security course. As I said that's comparing apples and oranges. What you will learn is how to dissect packets so later on, you'll understand how an attack does what it does at a packet level. It covers a few attacks but mainly it's about all the other stuff you can use Wireshark for like troubleshooting http, ftp, dhcp, etc.
Logged
ISC2 Associate, WCNA, CWNA, OSCP, Network+
docrice
Newbie
Offline
Posts: 27
Re: Wireshark University
«
Reply #13 on:
December 22, 2011, 12:42:27 AM »
I've never taken Wireshark University courses, but I've seen Laura Chappell teach at the first Sharkfest a few years ago. She also has free videos online on different sites. You can always learn this stuff on your own, but I think it's really helpful when someone is walking you through the fundamentals and stepping through different analysis scenarios, explaining the approach for each one. She's very good at this and her instruction style keeps you engaged.
I've read her Wireshark Network Analysis book. I also have the WCNA and GCIA certification. The WCNA is partially about Wireshark as a tool, but it's also very much about doing protocol analysis and understanding how networks function from a packet's point of view. It's an extremely valuable skill in this day and age as it'll help you find the smoking gun at work. If you get the WCNA cert, you'll be required to upkeep it with CPEs if you want to maintain the cert, but you can do that through the WCNA Portal where they have all kinds of additional instructional videos. Good stuff.
As for the GCIA, there's not a whole lot of Wireshark mentioned, but much of the concepts still apply. It's more tcpdump-focused and you'll be expected to know how to interpret packet headers by looking at the raw binary values. WCNA covers traffic analysis, but doesn't necessarily get into "how attackers craft malicious packets and how to identify them" like the GCIA covers. I'd say the WCNA and GCIA material complement each other very well. I also think TCP/IP Weapons School is a nice additional complement, but that's another subject altogether. You can always read Richard Bejtlich's books and get a good idea of what his class is like.
Logged
GSEC, GCFW, GCIA, GCIH, GWAPT, GAWN, OSWP, WCNA, CCNA, CCNA Security, [...and other resume filler]
Hopefully-useful stuff I've written:
http://kimiushida.com/bitsandpieces/articles/
Solinus
Newbie
Offline
Posts: 31
Re: Wireshark University
«
Reply #14 on:
December 27, 2011, 09:55:35 AM »
I have not taken the official course, but have read her books as well as have viewed several training sessions with Laura. She is a great teacher and I think that the course must be worthwhile. I also would say that her three books would more than get you through the exam as well as make you an excellent troubleshooter of packet flowing through a network.
This is a great skill to learn and can really seperate you from the others. I highly recommend any of her material.
«
Last Edit: December 27, 2011, 09:57:19 AM by Solinus
»
Logged
Kerry
MCITP:EA | MCTS(x5) | MCSA+ | MCSE+ | Security + | CCNA | WCSP |
DSCE | PCT |CIW Security Analyst | CSSA
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Programming
: Finished Python Course in Codecademy now what?
(11) by
securitian
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
Tutorials
: Need guidance
(8) by
r0ckm4n
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
Other
: BSides Boston
(0) by
3xban
Career Central
: InfoSec in Central, FL
(2) by
tturner
Web Applications
: Web vulnerability scanner
(4) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.