Eavesdrop 0.5a4 review
DownloadEavesdrop is an application for listening in on TCP conversations on the network your computer is attached to.
|
|
Eavesdrop is an application for listening in on TCP conversations on the network your computer is attached to. See Notes for Newbies if you have not worked with a network sniffer before. I strongly suggest you look into other applications, such as tcpdump (available in Mac OS X 10.3 already) and Ethereal (available through fink and probably other sources).
Here are some key features of "Eavesdrop":
TCP conversation tracking
show last TCP flags sent and flag history
tcpdump filter syntax
live syntax checking
payload reconstruction - display in ASCII or HEX
read tcpdump files
remove or hide idle conversations to save memory or simplify the interface
display images contained in the capture
search for an IP or payload contents
graphing of conversation meta-data (can also export data).
What's New:
Compiled as a Universal Binary.
Promiscuous mode and file capture both work.
Added a button to save images to TIFF (thanks, Will!).
Removed the "Save" and "Save As..." menu options.
Although this does not address the underlying issue, it will reduce questions until the next major release, which should fix that.
Requirements:
administrative rights (for live captures)
network connection (ethernet/airport) or tcpdump capture files.
Eavesdrop 0.5a4 keywords