Reconstructing data from PCAP sniff

前端 未结 5 1318
挽巷
挽巷 2021-02-01 09:40

I am trying to sniff HTTP data through libpcap and get all the http contents (header+payload) after processing the TCP payload.

As per my discussion at Writing an http s

5条回答
  •  孤街浪徒
    2021-02-01 09:50

    PCapPlusPlus includes an example console program TCPReassembly which sniffs traffic and outputs each stream to a separate text file. You can instruct which stream to listen to, amongst many options.

    The documentation also mentions a linux app tcpflow with even more options.

提交回复
热议问题