
Some Windows versions requires WinPcap to be installed.

Coloring rules can be applied to the packet list, which eases analysis.Hundreds of protocols are supported, with more being added all the time.Capture files compressed with gzip can be decompressed on the fly.Read/write many different capture file formats: tcpdump (libpcap), NAI's Sniffer (compressed and uncompressed), Sniffer Pro, NetXray, Sun snoop and atmsnoop, Shomiti/Finisar Surveyor, AIX's iptrace, Microsoft's Network Monitor, Novell's LANalyzer, RADCOM's WAN/LAN Analyzer, HP-UX nettl, i4btrace from the ISDN4BSD project, Cisco Secure IDS iplog, the pppd log (pppdump-format), the AG Group's/WildPacket's EtherPeek/TokenPeek/AiroPeek, Visual Networks' Visual UpTime and many others.Live capture and offline analysis are supported.The most powerful display filters in the industry.In 4.0.5 Three vulnerabilities have been fixed. Installers for Windows, Mac OS X 10.14 and later, and source code are now available. Multi-interface: Along with a standard GUI, Wireshark includes TShark, a text-mode analyzer which is useful for remote capture, analysis, and scripting Wiki Develop Get Involved Developer's Guide Browse the Code Shop Members Donate What's New Wireshark 4.0.5 and 3.6.13 Released ApWireshark 4.0.5 and 3.6.13 have been released.


Wireshark is one of the world's foremost network protocol analyzers, and is the standard in many parts of the industry.
