Wireshark
Sniffing & Spoofingkali · parrotWorld's foremost network protocol analyzer. Capture and inspect traffic graphically.
Install
sudo apt install wireshark
Common commands
wireshark tshark -i eth0 -w capture.pcap
Use only on systems you are authorized to test. Follow program scope.
Related tools
Bettercap
Modern, modular MITM framework for network recon and attacks.
Ettercap
Comprehensive suite for MITM attacks on LAN — ARP spoofing and content filtering.
Macchanger
Change network interface MAC addresses for privacy during wireless assessments.
Proxychains
Force any TCP connection through a proxy (SOCKS/HTTP). Useful with Tor/AnonSurf.