release of the new stable version of the network analyzer . Recall that the project was originally developed under the name Ethereal, but in 2006, due to a trademark conflict with the owner of Ethereal, the developers were forced to rename the project to Wireshark.
Key Wireshark 3.2.0:
- Support for HTTP/2 stream reassembly has been implemented.
- Support for importing profiles from zip archives or existing directories on the file system has been added.
- Support for unpacking HTTP/HTTP2 sessions that use the Brotli compression algorithm has been added.
- Drag-and-drop composition mode has been added, allowing fields to be dragged into the header to create a column for that field or into the display filter input area to create a new filter. To create a new filter for a column item, it can now simply be dragged into the display filter area.
- The build system now checks for the installation of the SpeexDSP library (if the library is missing, the built-in implementation of the Speex codec handler is used).
- Decryption of WireGuard tunnels is now possible using keys embedded in the pcapng dump, in addition to the existing key log settings.
- An action for extracting credentials from a file with captured traffic has been added, invoked via the '-z credentials' option in tshark or through the 'Tools > Credentials' menu in Wireshark.
- Support for splitting files based on fractional interval values has been added to Editcap;
- In the 'Enabled Protocols' dialog, protocols can now be enabled, disabled, and inverted only based on the selected filter. The protocol type can also be determined based on the filter value.
- Dark theme support has been added for macOS. Dark theme support has been improved for other platforms.
- In the packet list and detailed information menu, presented in the 'Analyze > Apply as Filter' and 'Analyze > Prepare a Filter' actions, a preview of the relevant filters has been ensured.
- Protobuf files (*.proto) can now be configured to parse serialized Protobuf data, such as gRPC.
- The ability to parse gRPC stream method messages using HTTP2 stream reassembly function has been added.
- Support for the following protocols has been added:
- 3GPP BICC MST (BICC-MST),
- 3GPP log packet (LOG3GPP),
- 3GPP/GSM Cell Broadcast Service Protocol (cbsp),
- Bluetooth Mesh Beacon,
- Bluetooth Mesh PB-ADV,
- Bluetooth Mesh Provisioning PDU,
- Bluetooth Mesh Proxy,
- CableLabs Layer-3 Protocol IEEE EtherType 0xb4e3 (CL3),
- DCOM IProvideClassInfo,
- DCOM ITypeInfo,
- Diagnostic Log and Trace (DLT),
- Distributed Replicated Block Device (DRBD),
- Dual Channel Wi-Fi (CL3DCW),
- EBHSCR Protocol (EBHSCR),
- EERO Protocol (EERO),
- evolved Common Public Radio Interface (eCPRI),
- File Server Remote VSS Protocol (FSRVP),
- FTDI FT USB Bridging Devices (FTDI FT),
- Graylog Extended Log Format over UDP (GELF), GSM/3GPP CBSP (Cell Broadcast Service Protocol),
- Linux net_dm (network drop monitor),
- MIDI System Exclusive DigiTech (SYSEX DigiTech),
- Network Controller Sideband Interface (NCSI),
- NR Positioning Protocol A (NRPPa) TS 38.455,
- NVM Express over Fabrics for TCP (nvme-tcp),
- OsmoTRX Protocol (GSM Transceiver control and data),
- Scalable service-Oriented MiddlewarE over IP (SOME/IP),
Source: opennet.ru
