Hello everyone!
I have a question related to networking in general. In a pcap file, how can I differentiate between a “syn scan” and “ack flood” attacks? What are the signs that each of these attacks happened?
I’m using wireshark to analyse a pcap file.