757-216-3656 | Monday–Friday 8:30 AM – 4:30 PM | info@itdojo.com
|

Course Duration

3 Days

Audience

Employees of federal, state and local governments; and businesses working with the government.

Prerequisites

Familiarity with TCP/IP networking, Wi-Fi fundamentals, and network infrastructure devices such as switches, routers, etc.

Course Description

In this hands-on course, you will receive in-depth training on Wireshark® and WiFi communications analysis. You will develop the skills to capture, decrypt and analyze wireless packets. The student will walk away with a set of analysis techniques focusing on the use of vendor-neutral, open source tools.

Learning Objectives

  • Capture wireless packets across WiFi communications using Wireshark
  • Decrypt and analyze encrypted wireless traffic
  • Apply vendor-neutral, open-source analysis techniques to WiFi traffic
  • Develop a repeatable methodology for WiFi communications analysis

Course Outline

Capture and Decryption
  • Perform unattended captures with auto-stop conditions
  • Apply a decryption key to reveal upper layer protocols for analysis Verify the key decrypted traffic
  • Troubleshooting steps if decryption is unsuccessful
Filtering and Analysis
  • Capture and Display filter syntax
  • Statistics and graphs
  • Filter on addresses, protocols, fields or traffic characteristics
  • Filter on keywords using wildcards and regular expressions
  • Reassemble and extract files from captured traffic
  • Dissect and fix malformed packets
Aircrack-ng Suite
  • Aircrack-ng Suite Switch the capture adapter into monitor mode with Airmon-ng
  • Capture with Airodump-ng
  • Crack WPA/WPA2 passphrase keys with Aircrack-ng
  • Inject packets with Aireplay-ng
Command-Line Capture Tools
  • Capinfos
  • Dumpcap
  • Editcap
  • Mergecap How to merge pcaps of a similar file type; cap, pcap, pcappi, pcapng, and kismet
  • Reodercap Reordering EAPOL handshakes
  • Tcpdump Filter on large pcaps
  • Tshark Streamline analysis especially for large pcaps
Network Mapping and 802.11 Operation
  • Traffic analysis to perform network mapping of access points of interest and associated clients given a large pcap
  • Extracting packets for specific MAC/BSSID/SSID/etc to a smaller file for analysis
  • Nmap
  • 802.11 Operation Modes Device-to-Device (Adhoc) Communication
  • Basic Service Set (BSS)

Frequently Asked Questions

What does the Wireshark Deep Dive from a WiFi Perspective course cover?

In this hands-on course, you will receive in-depth training on Wireshark® and WiFi communications analysis. You will develop the skills to capture, decrypt and analyze wireless packets. The student will walk away with a set of analysis techniques focusing on the use of vendor-neutral, open source tools. IT Dojo delivers it as live instructor-led training for government and business professionals.

How long is IT Dojo's Wireshark Deep Dive from a WiFi Perspective training?

Wireshark Deep Dive from a WiFi Perspective is a 3 days course. It is available as live remote online instruction or on-site at your facility.

Is this course available as live remote online training?

Yes. IT Dojo offers Wireshark Deep Dive from a WiFi Perspective as live remote online training led in real time by a certified instructor. On-site delivery at your government facility or contractor location is also available.

Who should attend this course?

Employees of federal, state and local governments; and businesses working with the government.

Does IT Dojo offer this training on-site at government or DoD facilities?

Yes. IT Dojo delivers Wireshark Deep Dive from a WiFi Perspective on-site at government agencies, DoD commands, military installations, and contractor facilities. On-site training is ideal for teams and can be customized to your organization's workflows. Contact IT Dojo to schedule.

How do I register for this course?

IT Dojo training is employer sponsored. Your organization registers and pays for seats. To schedule Wireshark Deep Dive from a WiFi Perspective for your team, contact IT Dojo via the Request Training form or call 757-216-3656.

Get More Information