Lab 4 - Network hunting & forensics lab issue

Hello,

I m unable to open wireshark in terminal, it says

QXcbConnection: Could not connect to display
Aborted (core dumped)

let me know if any workaround present.
@sparpulev-8dc005c0c8

Can you please confirm the course name and lab you are having difficulties with?

1 Like

Hey @bughunt365-5dcfc1b5c, without some added configuration, it isn’t possible to access an application’s Graphical User Interface(like Wireshark) via SSH.

What I did for this lab was download the PCAP from here → https://github.com/activecm/threat-hunting-labs/releases/download/v1.0/sample-200.pcap, and use Wireshark on my local machine to go through the packets.

This worked for me, if there is another way to do this, please do let me know!

I hope that this helps :slight_smile:

Hey @rene-af9f7c3f227d4c0

thanks for sharing.

Doing the same !

1 Like

Course name: Threat Hunting: Hunting the Network & Network Analysis
Lab 4 : Network hunting & forensics lab