[Full-Disclosure] Sniffing ICQ traffic
jeremiah at nur.net
Mon Nov 10 17:10:23 GMT 2003
-----BEGIN PGP SIGNED MESSAGE-----
On Monday 10 November 2003 08:55, ttsoares at orion.ufrgs.br wrote:
> By the way... do you know a good text or some examples about how do write
> filters to ethereal? The syntax, variables, etc...
The filters are constructed just like tcpdump filters. All of this is because
of the libpcap format.
It is pretty hard to beat the UNIX man page that comes with Etheral, if you
want a concise reference.
Windows users can find this if they get the source package, or online:
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)
-----END PGP SIGNATURE-----
Full-Disclosure is hosted and sponsored by Secunia.