Parsing pcap files with Perl
Recently I was reading the blogpost on the BrekingPoint labs log about
parsing pcap files with
Perl
and I immediately said to myself: it is impossible that there isn’t a
module on CPAN, because Perl is
great.
Turns out I was right, there is
Net::TcpDumpLog
which can be ...
While most of the time I simply skip / delete any malicious content
encountered, from time to time I do some quick investigation on items
which peak my interest. For example the following comment was posted on



This is an interesting problem which can appear in certain cases
(although not very often). A little searching around led me to many
posts stating that there is no easy solution and
There is a lot of debate on the intertubes if one should or shouldn’t
use wildcard imports. I’m mostly indifferent to the discussion (mainly
because all the package references are resolved compile time – so there
is no performance overhead – and because today’s