2024-12-18 (Wednesday): Posted a #pcap with one week of server scans. probes & web traffic hitting my server at www.wiresharkworkshop[.]online.
Window of traffic in the pcap is from 2024-12-13 at 0000 UTC to 2024-12-18 at 2359 UTC
It's an Apache web server (no HTTPS) with a small index page. I have a session of #tcpdump running to capture any traffic over the external interface.
I filter out the internal traffic generated for OS updates, NTP and such, so it should only have the external traffic coming in and the server's response to it.
https://www.malware-traffic-analysis.net/2024/12/18/index.html