Wireshark is a network traffic analyzer, or "sniffer", for Linux, macOS, *BSD and other Unix and Unix-like operating systems and for Windows. It uses Qt, a graphical user interface library, and libpcap and npcap as packet capture and filtering libraries.
The Wireshark distribution also comes with TShark, which is a line-oriented sniffer (similar to Sun's snoop or tcpdump) that uses the same dissection, capture-file reading and writing, and packet filtering code as Wireshark, and with editcap, which is a program to read capture files and write the packets from that capture file, possibly in a different capture file format, and with some packets possibly removed from the capture.
Features
- Packet Capture (Live and Offline): Capture network traffic in real time or analyze saved capture files.
- Deep Packet Inspection: Inspect protocol fields and payload data for many network protocols.
- Filtering (Display/ Capture Filters): Use powerful filter expressions to quickly find specific traffic.
- Statistics and Graphs: Generate protocol breakdowns, conversations, endpoints, and traffic statistics.
- Color Coding & Expert Alerts: Automatically highlight suspicious or important traffic and summarize issues.
License
MIT LicenseFollow Wireshark latest
Other Useful Business Software
$300 Free Credits for Your Google Cloud Projects
Launch your next project with $300 in free Google Cloud credits—no strings attached. Test, build, and deploy without risk. Use your credits across the entire Google Cloud platform to find what works best for your needs. After your credits are used, continue with always-free tier services. Only pay when you're ready to scale. Sign up in minutes and start exploring.
Rate This Project
Login To Rate This Project
User Reviews
-
Wireshark! As always! Design could be better... but ok