What you will learn
- Understand TCP/IP and common protocols
- Read packet and flow data
- Recognize suspicious network behavior
Learn TCP/IP, DNS, packet analysis, and network attack evidence through safe, reproducible exercises.
11 challenges available.
NetworkLevel 1Networks use port numbers to identify services. For example, a web server (HTTP) usually uses port 80, and encrypted…
NetworkLevel 2An unauthenticated DNS zone transfer (AXFR) against a misconfigured authoritative server was captured. Download the…
NetworkLevel 2An attacker enumerating SMB shares on the network was captured. Download the packet capture (traffic.pcap), follow the…
NetworkLevel 2A legacy server was administered over Telnet in clear text. Download the packet capture (traffic.pcap), follow the…
NetworkLevel 2An anonymous FTP session was captured in clear text. Download the packet capture (traffic.pcap), follow the FTP data…
NetworkLevel 2Analyze traffic intercepted on public Wi-Fi where someone logged in over plain HTTP. Download the packet capture…
NetworkLevel 3A device speaking SNMPv2c with a weak community string (public) was captured returning a GetResponse. Download the…
NetworkLevel 3An SSL Strip attack downgraded HTTPS to HTTP, so the victim's credentials traveled in clear text and were captured.…
NetworkLevel 3Traffic from a system using a small custom binary protocol was captured. Download the packet capture (traffic.pcap),…
NetworkLevel 4capture.pcap contains TCP retransmissions with duplicate sequence numbers. Extract retransmissions whose payload…
NetworkLevel 5The UDP datagram with IPv4 ID 0xbeef in fragments.pcap contains overlapping fragments that overwrite earlier bytes.…