Detect Suspicious Traffic with "TCP Conversation Completeness"
- Tony Fortunato
- Mar 11, 2024
- 1 min read
In my last blog entry, I explained how Wireshark calculates TCP Conversation Completeness based on the TCP flags and whether data is seen in a TCP conversation (stream).
To use this feature, I recommend that you add three columns to Wireshark:
tcp.completeness
Heres the link to the full post
留言