Release of network analyzer Wireshark 3.2

Took place release of the new stable version of the network analyzer Wireshark 3.2. Recall that the project was originally developed under the name Ethereal, but in 2006, due to a trademark conflict with the owner of Ethereal, the developers were forced to rename the project to Wireshark.

Key innovations Wireshark 3.2.0:

  • Support for HTTP/2 stream reassembly has been implemented.
  • Support for importing profiles from zip archives or existing directories on the file system has been added.
  • Support for unpacking HTTP/HTTP2 sessions that use the Brotli compression algorithm has been added.
  • Drag-and-drop composition mode has been added, allowing fields to be dragged into the header to create a column for that field or into the display filter input area to create a new filter. To create a new filter for a column item, it can now simply be dragged into the display filter area.
  • The build system now checks for the installation of the SpeexDSP library (if the library is missing, the built-in implementation of the Speex codec handler is used).
  • Decryption of WireGuard tunnels is now possible using keys embedded in the pcapng dump, in addition to the existing key log settings.
  • An action for extracting credentials from a file with captured traffic has been added, invoked via the '-z credentials' option in tshark or through the 'Tools > Credentials' menu in Wireshark.
  • Support for splitting files based on fractional interval values has been added to Editcap;
  • In the 'Enabled Protocols' dialog, protocols can now be enabled, disabled, and inverted only based on the selected filter. The protocol type can also be determined based on the filter value.
  • Dark theme support has been added for macOS. Dark theme support has been improved for other platforms.
  • In the packet list and detailed information menu, presented in the 'Analyze > Apply as Filter' and 'Analyze > Prepare a Filter' actions, a preview of the relevant filters has been ensured.
  • Protobuf files (*.proto) can now be configured to parse serialized Protobuf data, such as gRPC.
  • The ability to parse gRPC stream method messages using HTTP2 stream reassembly function has been added.
  • Support for the following protocols has been added:
    • 3GPP BICC MST (BICC-MST),
    • 3GPP log packet (LOG3GPP),
    • 3GPP/GSM Cell Broadcast Service Protocol (cbsp),
    • Bluetooth Mesh Beacon,
    • Bluetooth Mesh PB-ADV,
    • Bluetooth Mesh Provisioning PDU,
    • Bluetooth Mesh Proxy,
    • CableLabs Layer-3 Protocol IEEE EtherType 0xb4e3 (CL3),
    • DCOM IProvideClassInfo,
    • DCOM ITypeInfo,
    • Diagnostic Log and Trace (DLT),
    • Distributed Replicated Block Device (DRBD),
    • Dual Channel Wi-Fi (CL3DCW),
    • EBHSCR Protocol (EBHSCR),
    • EERO Protocol (EERO),
    • evolved Common Public Radio Interface (eCPRI),
    • File Server Remote VSS Protocol (FSRVP),
    • FTDI FT USB Bridging Devices (FTDI FT),
    • Graylog Extended Log Format over UDP (GELF), GSM/3GPP CBSP (Cell Broadcast Service Protocol),
    • Linux net_dm (network drop monitor),
    • MIDI System Exclusive DigiTech (SYSEX DigiTech),
    • Network Controller Sideband Interface (NCSI),
    • NR Positioning Protocol A (NRPPa) TS 38.455,
    • NVM Express over Fabrics for TCP (nvme-tcp),
    • OsmoTRX Protocol (GSM Transceiver control and data),
    • Scalable service-Oriented MiddlewarE over IP (SOME/IP),

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster