Do You Use VirusTotal? Give PacketTotal a Spin!, (Mon, Feb 13th)

Packettotal ( http://www.packettotal.com ) is a new site that does some nifty analysis of Packet Captures for you if youre not so familiar with Wireshark or other analysis tools

Out of the gate, this site maps out connections, certificates, encryption algorithms and gives up files that are transfered in the session. A great start (I accidentally found another app that runs their own private CA with this), were looking forward to more great things from this site as they get on! So far everything you can do on Packettotal you can do in Wireshark, but its as quick and easy as can be on the PT site!

Of course – the standard rules apply – be sure that youre not uploading sensitive informaiton to cloud-based sites of this type! If youre analyzing client data, you might need permission to upload. They also still allow http access to their site (oops) – be sure to browse to them using https explicitly until they fix this.

===============
Rob VandenBrink
Compugen

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.