<?xml version="1.0" encoding="utf-8"?>
<!-- generator="FeedCreator 1.7.2-ppt DokuWiki" -->
<?xml-stylesheet href="https://static.trisul.org/devzone/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://static.trisul.org/devzone/feed.php">
        <title>Trisul Network Analytics &lt;br/&gt; Developer Zone  offline</title>
        <description></description>
        <link>https://static.trisul.org/devzone/</link>
        <image rdf:resource="https://static.trisul.org/devzone/tatic.trisul.org/devzone/lib/tpl/dokuwiki/images/favicon.ico" />
       <dc:date>2026-04-20T06:35:09+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://static.trisul.org/devzone/doku.php/offline:defcon26ctf?rev=1542043800&amp;do=diff"/>
                <rdf:li rdf:resource="https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps?rev=1526150408&amp;do=diff"/>
                <rdf:li rdf:resource="https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps_results?rev=1526150324&amp;do=diff"/>
                <rdf:li rdf:resource="https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps_trisulnsm?rev=1526150535&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://static.trisul.org/devzone/tatic.trisul.org/devzone/lib/tpl/dokuwiki/images/favicon.ico">
        <title>Trisul Network Analytics &lt;br/&gt; Developer Zone </title>
        <link>https://static.trisul.org/devzone/</link>
        <url>https://static.trisul.org/devzone/tatic.trisul.org/devzone/lib/tpl/dokuwiki/images/favicon.ico</url>
    </image>
    <item rdf:about="https://static.trisul.org/devzone/doku.php/offline:defcon26ctf?rev=1542043800&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2018-11-12T17:30:00+00:00</dc:date>
        <title>Processing the DEFCON 26 CTF PCAPS using Trisul NSM</title>
        <link>https://static.trisul.org/devzone/doku.php/offline:defcon26ctf?rev=1542043800&amp;do=diff</link>
        <description>Processing the DEFCON 26 CTF PCAPS using Trisul NSM

With the right tools, analyzing large PCAP dumps can be lots of fun.  This article is a step-by-step of using TrisulNSM to dive into the DEFCON26 CTF PCAP 

Given only a large PCAP dump, your first task as an analyst is to make sense of it from multiple angles. I typically like to start off with a statistical overview.</description>
    </item>
    <item rdf:about="https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps?rev=1526150408&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2018-05-12T18:40:08+00:00</dc:date>
        <title>Analyzing the WRCCDC PCAP dump using TrisulNSM : Part 1 Approach</title>
        <link>https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps?rev=1526150408&amp;do=diff</link>
        <description>Analyzing the WRCCDC PCAP dump using TrisulNSM : Part 1 Approach

The good folks at WRCCDC   were kind enough to release packet captures (PCAPS) of the recently concluded event. The entire corpus is roughly 1TB.  Now the question is :</description>
    </item>
    <item rdf:about="https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps_results?rev=1526150324&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2018-05-12T18:38:44+00:00</dc:date>
        <title>Analyzing the WRCCDC PCAPs : Part 3 Analysis using TrisulNSM</title>
        <link>https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps_results?rev=1526150324&amp;do=diff</link>
        <description>Analyzing the WRCCDC PCAPs : Part 3 Analysis using TrisulNSM

In this article we will just show pictures and a video of how you might analyze the imported PCAP dumps using Trisul.

This is Part-3 of a 3 Part series 

	*  Part 1: Approach how to avoid getting overwhelmed by large PCAPS 
	*  Part 2: How to use the free TrisulNSM Docker Image to analyze the PCAP dump
	*  Part 3: Screenshots &amp; video of analysis paths (using TrisulNSM)</description>
    </item>
    <item rdf:about="https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps_trisulnsm?rev=1526150535&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2018-05-12T18:42:15+00:00</dc:date>
        <title>Analyzing the WRCCDC PCAP dump using TrisulNSM : Part 2 How to run TrisulNSM over the PCAP dump</title>
        <link>https://static.trisul.org/devzone/doku.php/offline:wrccdc_pcaps_trisulnsm?rev=1526150535&amp;do=diff</link>
        <description>Analyzing the WRCCDC PCAP dump using TrisulNSM : Part 2 How to run TrisulNSM over the PCAP dump

In this article, we show you step by step instructions to run the free TrisulNSM Docker image over the PCAP dumps.

This is Part-2 of a 3 Part series 

	*</description>
    </item>
</rdf:RDF>
