Is this the future of the Internet? UDP Deep Dive.

Поделиться
HTML-код
  • Опубликовано: 30 дек 2024

Комментарии • 181

  • @ChrisGreer
    @ChrisGreer 2 года назад +44

    Didn't know UDP could be a deep dive but with David Bombal there are no limits!! Thank you for having me David. And I LOVE 52:12 - Go Wireshark Yoda!

    • @davidbombal
      @davidbombal  2 года назад +8

      Thanks for sharing your knowledge with us Chris!

    • @CyberDevilSec
      @CyberDevilSec 2 года назад +1

      Thanks for the explanation Chris, i subscribed to you

  • @davidbombal
    @davidbombal  2 года назад +33

    Looks like UDP is going to be more and more important in the future Internet. With QUIC taking over, you better learn more about UDP. We go deep with Chris Greer and use Wireshark captures to learn about UDP.
    // MENU //
    00:00 - Coming up
    00:40 - Intro
    00:45 - What's coming in SharkFest'22 & Defcon 30
    01:34 - Udemy courses coming soon
    02:00 - UDP & its importance
    03:43 - Request For Comments (RFC)
    07:06 - Difference between UDP & TCP
    07:50 - Wireshark UDP demo
    10:16 - How UDP works
    14:51 - Wireshark UDP demo (cont'd)
    25:11 - QUIC & UDP
    28:21 - Wireshark UDP demo (cont'd)
    33:02 - The nightmare of companies blocking QUIC
    39:10 - Advice for learning UDP, TCP & QUIC
    41:15 - Encrypted packets
    44:43 - How to decrypt packets
    48:18 - Knowledge & skills can save you
    49:12 - Last advice
    50:03 - Chris Greer RUclips, Twitter and live courses
    51:42 - Conclusion
    // Wireshark pcap file //
    Wireshark UDP PCAP: www.dropbox.com/s/gpwnjnq41hp4v15/UDPDeepDive-Bombal.zip?dl=0
    // HTTP3 deep dive //
    Robin Marx explains http3: ruclips.net/video/cdb7M37o9sU/видео.html
    // Chris Greer Videos //
    TCP Deep Dive: ruclips.net/video/rmFX1V49K8U/видео.html
    HTTPS Decryption with Wireshark: ruclips.net/video/GMNOT1aZmD8/видео.html
    Decrypting TLS, HTTP/2 and QUIC with Wireshark: ruclips.net/video/yodDbgoCnLM/видео.html
    //CHRIS GREER //
    Udemy course: davidbombal.wiki/chriswireshark
    LinkedIn: www.linkedin.com/in/cgreer/
    RUclips: ruclips.net/user/ChrisGreer
    Twitter: twitter.com/packetpioneer
    // David SOCIAL //
    Discord: discord.com/invite/usKSyzb
    Twitter: twitter.com/davidbombal
    Instagram: instagram.com/davidbombal
    LinkedIn: www.linkedin.com/in/davidbombal
    Facebook: facebook.com/davidbombal.co
    TikTok: tiktok.com/@davidbombal
    RUclips: ruclips.net/user/davidbombal
    // MY STUFF //
    www.amazon.com/shop/davidbombal
    // SPONSORS //
    Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com

  • @Fuzzycap
    @Fuzzycap 2 года назад +44

    I am in love with the content and information this channel provides, been around this channel for sooo long guys we should also make it a hype like Mr Beast!!! Sir David, you deserve millions of subs and respect from all!!!

    • @davidbombal
      @davidbombal  2 года назад +10

      Thank you so much Ayush! I will probably need to change my content a lot to become big like Mr Beast! 😂

    • @andrewferguson6901
      @andrewferguson6901 2 года назад

      Me Too! Subscriber earned

    • @chee_wee
      @chee_wee 2 года назад +1

      @@davidbombal I would rather you stick to the formula 😂

  • @M374L
    @M374L 2 года назад +10

    Miss your motivational videos.
    It were very helpful.
    You changed my life and made me who i am today.
    Thank you for your informative videos and effort.
    Keep growing.
    Love from Kerala , India.

  • @meow-iskander
    @meow-iskander 2 года назад +14

    You both are awesome! I'm in the middle of my CCNA course and I love these deep dive videos ☺️

  • @MrBitviper
    @MrBitviper 2 года назад +3

    it's always a treat to see Chris on these collab videos.
    I love this channel

  • @Zerback
    @Zerback 2 года назад +1

    One of the best Duo in terms of networking knowledge. Been a while since you were together! Thank you both for all the amazing job you do for us!

  • @raginranga3494
    @raginranga3494 2 года назад +18

    UDP has always been underrated due to the design. Excited to see what the future holds

  • @josephljessop2344
    @josephljessop2344 2 года назад

    Absolute love this video, channel and all the amazing content you freely give out to the community David. Thank you for looking out for us little guys!

  • @CarlForgey
    @CarlForgey 2 года назад +1

    Thanks for letting me sit in on this great conversation.

  • @producermind9030
    @producermind9030 Год назад +1

    I’ve learnt so much from these videos. U da man. Awesome for refreshing as well.

  • @202Electrics
    @202Electrics 2 года назад +3

    Great! one of the best tech interviewer with one of the best explainer. You two are the best duo talking "on the same frequency"
    Best content on the webz at the moment

  • @delta666SoT
    @delta666SoT 2 года назад +1

    Your content continues to amaze me. Hands on wire shark deciphering videos are a god send. I'm just working on a network + at this point but its never too early to learn how to packet sniff.

  • @vyasG
    @vyasG 2 года назад +1

    Great Interview. Thank you both for this content. Would like to see more interviews with Chris for more deep dives on protocols.

  • @SharkUte
    @SharkUte 2 года назад +3

    I recently stumbled on your channel and watched a few of your interviews like this one.
    This is absolutely invaluable content for the masses.
    As an IT Dev, we are less than trained in network, even though we interact with it literally at all times. These interviews provides a very different perspective and are absolutely full packed of resources for further reading, which as I said, is invaluable, especially coming in a free form, thanks.

  • @BelieveTruthDisbelieveFallacy
    @BelieveTruthDisbelieveFallacy 2 года назад +3

    As someone who helps large organizations troubleshoot media quality on almost a daily basis, its almost always large organizations attempting (and failing) to do deep packet inspection on UDP media traffic using something like ALG or FirePower. Putting in a bypass/override for the appropriate source and destination traffic has a measurable and immediate impact. Its so prevalent, I lead with this question. And as Dr. House often says, everyone lies. Show me your ALG/FirePower config, if I don't see the override/bypass I stop all further troubleshooting until its in place.

    • @jteds711
      @jteds711 2 года назад

      Do you post engineering? I work in LA as a technician helping in Post houses and other creative media spaces dealing with storage, networking, and software. Haven't come across ALG or FirePower just yet sounds interesting.

  • @Mature990
    @Mature990 2 года назад

    Dear David, you are doing excellent/extraordinary job for the awareness among the security community. Thank you! Thank you so much.

  • @joerockhead7246
    @joerockhead7246 2 года назад +1

    I've yet to kick off this video and I already know it's gonna be great. Thanks David, & Chris

  • @nealiumj
    @nealiumj 2 года назад +1

    Newer audiences member, really like this series.. what would be great is when pointing out issues like “woah! This one took a full second” - sorta just throw out 2-3 potential/common reasons for it.. not so much in detail, just keywords or general concept. This would point us in **a** direction if we come across the problem IRL and we could branch out from there.

  • @cokegen
    @cokegen 2 года назад +1

    You two are GREAT. Thanks for everything you're doing !

  • @tthtlc
    @tthtlc 2 года назад

    I think the title really understated the sheer amount of technical contents this talk contained.

  • @faran_siddiqui-d3t
    @faran_siddiqui-d3t 2 года назад +2

    Chris and David back again together 🔥🔥

    • @davidbombal
      @davidbombal  2 года назад

      Hope you enjoy the video Faran!

  • @Jarek.
    @Jarek. 2 года назад +6

    20:07 I consider myself as a Wireshark power user 😀 But this way of defining filters was new to me. Cheers!

    • @martinh9099
      @martinh9099 2 года назад +2

      Same here...I like to think I know wireshark inside out, but have never seen that before! Tried it on my on implementation to check it worked...and it did

  • @zekicay
    @zekicay 2 года назад +4

    QUIC is encrypted not because they wanted, but because they needed it to be. Someone created an appliance to mangle the connection flags, counters etc, and if that was allowed to proliferate, making newer versions of QUIC would have been impossible. Look at what happened with MPTCP - they had to do so much to appease middle-boxes (make it look like TCP) that they couldn't achieve all their goals.

    • @autohmae
      @autohmae 2 года назад

      I wonder if we'll see Encrypted ClientHello, which sort of does double encryption, could we easily get the outer keys, then we could have a lot better idea of flows, etc. Without getting access to the encrypted data.

  • @joeferreti9442
    @joeferreti9442 2 года назад +2

    I think it should always be emphasized that QUIC is actually a full-fledged, complex layer 4 protocol by concept, it uses UDP only for compatibility with (older) middleboxes.
    And that is possible and fine because UDP is basically as bare and simple as a layer 4 protocol could be.

  • @hennessy6996
    @hennessy6996 2 года назад +2

    Sweet, great content.
    I sincerely appreciate it guys.

    • @davidbombal
      @davidbombal  2 года назад +1

      Thank you RJ. Glad you enjoy it!

  • @bsgumajames7226
    @bsgumajames7226 2 года назад +2

    Am enjoying these shows nonstop ❤️

    • @davidbombal
      @davidbombal  2 года назад +1

      Glad you like them Bsguma!

  • @ozzman530
    @ozzman530 2 года назад +1

    Would love to see a session with Chris specifically about IPERF. I noticed that he went to the typical webpage when describing IPERF, which is several versions behind the latest which the developers often call out when they get requests for help. Might also be interesting to note that IPERF doesn't seem to have native support in Windows.

  • @Rogerson112
    @Rogerson112 2 года назад +1

    Guess who's back! Best duo finally back!

    • @davidbombal
      @davidbombal  2 года назад +1

      Thank you! Hope you enjoy the video :)

  • @majiddehbi9186
    @majiddehbi9186 2 года назад

    woow when ever chris is around the subject become very intersting normal he is the radiologist of the packets thx Mr Bombal for this inovating subject thx Chris also

  • @chriscook7049
    @chriscook7049 2 года назад

    This is such a great video.
    It would be great to see a deep dive into iperf and diagnosing the performance issues mentioned in this video.

  • @TheRich464
    @TheRich464 2 года назад

    its been 20 years since i had a phone that rang like that and yet i sill had to check my cell.....that has never been out of silent mode since i got it. lol great video. love this deep dive.

  • @dave24-73
    @dave24-73 2 года назад

    It sounds like learning WireShark is a must, so having it run, and reviewing what’s there would be a key skill to have.

  • @jobinuw
    @jobinuw 2 года назад

    David thank You for your effort .

  • @davidmcken
    @davidmcken 2 года назад +1

    I would not phrase this as a TCP vs UDP debate. As Robin mentioned in that interview the only reason they chose UDP is because it was already established and could get through aggressive firewalls. If QUIC effectively becomes the new transport layer thats fine as its still standardized and predictable (as Chris mentions its very much like TCP just optimized for current world networks not dial up from the 80s).
    If everyone tries building their own protocols on UDP you risk ending up with situations like MPEG transport streams where a packet arriving out of order is treated as lost (look up Continuity count error which can occur the 3 instances - incorrect packet order, a packet occurs more than twice or a packet is lost). Simply having a etherchannel in the path of that type of traffic will have the users up in arms because the video streams are unusable. This occurs because those specific protocols were never adapted to the general internet and only serve to hold the standardization process. It might give job security but it just as easily give gray hair, how Skype handles latency on a video stream may not translate to how google meet or twitch handles the same scenario. Gaming with all the variations to lag compensation, etc are a pretty good idea of what such a world could look like just with business critical stuff not your bullets not registering circa BF2048.

  • @kundaichivasa2684
    @kundaichivasa2684 2 года назад +1

    Zimbabwe🇿🇼🇿🇼🇿🇼 among the first top 10 to comment

    • @davidbombal
      @davidbombal  2 года назад +1

      Thank you for your support Kundai! It's really important that a new video gets views when it first is posted. So, thank you for watching so quickly!

  • @jeroenboogaard5820
    @jeroenboogaard5820 9 месяцев назад

    Thanks for this great video! I subscribed on Davids channel and started the Wireshark Udemy course of Chris.

  • @jan-philippschmitz6356
    @jan-philippschmitz6356 2 года назад

    Amazing Video, thanks for the Quality Content!

  • @ispiretechnologies
    @ispiretechnologies 2 года назад

    Thank you so much Mr David, this year you're too much.

  • @CyberDevilSec
    @CyberDevilSec 2 года назад

    Bless you David

  • @dustcore
    @dustcore 2 года назад

    Great partnership here 👏🏽

  • @LoayMatar
    @LoayMatar 2 года назад

    Awesome video! By the way, I want one of those Packet Head shirts. It looks cool.

  • @rhrabar0004
    @rhrabar0004 2 года назад

    Chris Greer is SUCH A GREAT COMMUNICATOR

  • @buraksahin7297
    @buraksahin7297 2 года назад

    Thank you for the demo! Appreciate it :)

  • @yaghiyahbrenner8902
    @yaghiyahbrenner8902 2 года назад

    Amazingly - "flow control" is found in serial systems like UART where the RTS pin optionally is used to initiate exchange, it seems UDP was founded on the foundational elements of serial data transmission.

  • @tiktoktoosh9594
    @tiktoktoosh9594 2 года назад

    Hey!!! Lots of love from Bangladesh🇧🇩🇧🇩❤️❤️❤️

  • @cobraviky2799
    @cobraviky2799 2 года назад

    Im in love of this kind of video’s:-) thanks a gain David and you guest -:)

  • @Cueteman
    @Cueteman 2 года назад

    Perfect refresher

  • @x0rZ15t
    @x0rZ15t 2 года назад

    Oh hell YESSSSS! I'll be getting my hands on those Udemy courses the day they come out!

  • @peterbaumgartner4878
    @peterbaumgartner4878 2 года назад

    Hey David do you have this up as a podcast? I would really enjoy listening to stuff like this while on the road or when doing mundane tasks at work since it is a nice deep dive!

  • @beofonemind
    @beofonemind 2 года назад

    I just heard John Carmack say that most times when developers try to implement UPD, they end up implementing TCP/IP badly. He was on Lex Fridman's podcast.

  • @johnczech7074
    @johnczech7074 2 года назад

    Really excellent! Very informative! Thanks!

  • @nwenneiyasele2570
    @nwenneiyasele2570 2 года назад

    Great content ! Any chance you can do a deepdive on Microsoft Teams traffic analysis specifically?

  • @doop00
    @doop00 2 года назад

    UDP sounds like Event Dispatchers in Blueprint scripting in Unreal Engine. Fires of a message and anyone waiting for that call will join, basically fire and forget. I'm not sure if I'm correct in that analogy since it was long since I dabbled in that, it's based on C++ so a more technical person that use both might know what I'm talking about.

  • @fyzzlefry
    @fyzzlefry 2 года назад

    Not going to lie. When you played the telephone sound the back of my brain wanted to look for an old phone for a millisecond.

  • @HardwaremagazineBrasil
    @HardwaremagazineBrasil 2 года назад

    Thank you for this video! Very informative!

  • @waynesrealworld5801
    @waynesrealworld5801 2 года назад

    Yes please more on Udemy with the labs very helpful

  • @autohmae
    @autohmae 2 года назад

    No mention of the QUIC Latency Spin Bit ? Do we expect it to help us ?
    And don't we expect tools like Wireshark to get better ? Similar to the TCP statistics.

    • @autohmae
      @autohmae 2 года назад

      An other option is widespread use of Encrypted Client Hello, wouldn't that allow us to get the outer keys and see all the flows without having access to the data ?

    • @autohmae
      @autohmae 2 года назад

      Something else I'm thinking: if you can just do F12 and get latency information from the browser that would also be very useful. The browser already keep statistics for the Performance and Navigation Timing API. Some graphs people can screenshot or create an export button in JSON or CSV would be very useful.

    • @autohmae
      @autohmae 2 года назад

      No mention of qlog and qvis ?

  • @rhondaverma6358
    @rhondaverma6358 2 года назад

    I can’t watch the entire video right now, but I think next weekend is going to be the “Bombal Binge”.

  • @ahmedmedhat2894
    @ahmedmedhat2894 2 года назад +1

    hi David Bombal i really enjoyed your videos i just want to ask a question i am don`t knowing anything in computer i want to learn cyber security any suggestions cause i feel as if i am in a maze right now

  • @the_graytest
    @the_graytest 2 года назад

    Always top notch 😎

  • @EngrDJDebug
    @EngrDJDebug 2 года назад

    can we have a troubleshooting video of video of DNS on udp. Thanks

  • @catillacs5181
    @catillacs5181 2 года назад

    Awesome video!

  • @TheVfXDteam
    @TheVfXDteam 2 года назад

    I just took a networking class. I built both a client and servers for utp, tcp, and smtp in Java. How well does these skills translate to the real world ? Tia

  • @ebrahimmohammed1055
    @ebrahimmohammed1055 2 года назад +1

    I love these topics David 🤟🤟
    I'm the second btw

    • @davidbombal
      @davidbombal  2 года назад

      Thank you Ebrahim! It's really important that a new video gets views when it first is posted. So, thank you for watching so quickly!

  • @MrMkhabela
    @MrMkhabela 2 года назад +1

    if we ever see Mr Bombal not posting every sunday around this time then we should be worried

    • @davidbombal
      @davidbombal  2 года назад

      lol... I am a bit late today.... but managed to get the video posted 😀

  • @siennajohan8742
    @siennajohan8742 2 года назад

    Wow, so interesting 😍

  • @yaghiyahbrenner8902
    @yaghiyahbrenner8902 2 года назад

    David there's a company from South Africa, Cape Town called CapeNetworks have you covered their product ?

  • @jasonabarquez2508
    @jasonabarquez2508 2 года назад

    Do you have a discussion video concerning RTP, I can get the link here please? TIA...

  • @droid2645
    @droid2645 2 года назад

    Very interesting, Thanks!

  • @76739
    @76739 2 года назад

    Thanks David !

  • @yuu.relief
    @yuu.relief 2 года назад

    Sometime i wonder, what wireshark packet look like of UDP over NAT.

  • @StevenKroeger
    @StevenKroeger 2 года назад

    The last time i tried Zoom
    a couple years ago
    The sound didnt work
    It didnt work on Winblows
    and didnt work in Linux
    Why? I have no idea

  • @kuttysiva7929
    @kuttysiva7929 2 года назад

    Hi sir iam new of learning in python but i am poor so not of money to gadgets buying so simply learning videos posted sir thank you

  • @majiddehbi9186
    @majiddehbi9186 2 года назад

    question for both of u guys is QUIC have to do with web.3 ?

  • @shareefubaig8002
    @shareefubaig8002 2 года назад

    Very informative

  • @rayhanfoinshola7037
    @rayhanfoinshola7037 2 года назад

    is defcon going to hold in the uk or us.?

  • @AlexanderMak51
    @AlexanderMak51 2 года назад

    Hello David, I have such a problem when I run hahscat on my computer, I get a message that this application cannot be run on your PC. I installed hahscat on linux but it doesn't see my nvidia graphics card, only the CPU. David if you know how to solve these problems please help me. Thanks in advance

  • @fahadbawazir1771
    @fahadbawazir1771 2 года назад +2

    Good morning

    • @sammedbanu8962
      @sammedbanu8962 2 года назад

      Good midnight

    • @davidbombal
      @davidbombal  2 года назад +1

      Nice to see people from around the world here 😀

    • @sammedbanu8962
      @sammedbanu8962 2 года назад

      @@davidbombal because your content hits me right at my brainspot😄😄

  • @sreekanth5009
    @sreekanth5009 2 года назад +1

    Second one from India 🇮🇳

    • @davidbombal
      @davidbombal  2 года назад +1

      Thank you Sreekanth! It's really important that a new video gets views when it first is posted. So, thank you for watching so quickly!

  • @aakash9179
    @aakash9179 2 года назад

    Sir when will you make the video of attacking wifi using nethunter , without root

  • @lifebreath1015
    @lifebreath1015 2 года назад

    Im not understanding how DNS takes control of packets that dont get sent properly through UDP...

    • @tactileslut
      @tactileslut 2 года назад

      If the client doesn't see an answer pretty quickly, meaning question or answer was dropped (or we didn't wait long enough), then it asks again a few times (and waits longer each time.)

    • @lifebreath1015
      @lifebreath1015 2 года назад

      @@tactileslut hmmm

    • @lifebreath1015
      @lifebreath1015 2 года назад +1

      ok

  • @JO-xq3kl
    @JO-xq3kl 2 года назад

    David, you said what if you do a Cisco TFTP update and you lose some of the data? ... or if it is corrupted... well XMODEM is your friend. Takes forever, but no better Lazarus chamber than XMODEM.

  • @SpiritVector
    @SpiritVector Год назад

    UDP is apparently unreliable and connectionless; is there something I am missing here or is there some outside of the box design going on around this protocol?

  • @becomingbesthackerprogramm4644
    @becomingbesthackerprogramm4644 2 года назад +1

    Hey David ✨

    • @davidbombal
      @davidbombal  2 года назад +1

      Hello!

    • @becomingbesthackerprogramm4644
      @becomingbesthackerprogramm4644 2 года назад

      @@davidbombal thanks for such great content and helping us to learn , got great advantage from all your giveaways too sir , thanks a ton ! Love from India ❤️

  • @hashim357
    @hashim357 2 года назад

    Yes, you are

  • @tyrojames9937
    @tyrojames9937 2 года назад

    INTERESTING!

  • @2012mrmoh
    @2012mrmoh Год назад

    Thank you is not enough

  • @rodrigogomessantos-suprema4609
    @rodrigogomessantos-suprema4609 2 года назад

    what the hellllll ...I'm stil trying to understand tcp conections :( quic ???? with udp ???? reliability ????

  • @martinh9099
    @martinh9099 2 года назад

    In the spirit of UDP, you guys should have chopped a couple of sections out of the video 😁

  • @henrysmith5266
    @henrysmith5266 2 года назад

    My pc was remotely hacked , how do I a novice attempt to fix it?

  • @ekistic
    @ekistic 2 года назад

    This stuff is not just interesting for those seeking a carreer in IT. In times of Zoom and VOIP it should be compulsory in every secondary school to make people understand the way the world works..

  • @yeah8364
    @yeah8364 2 года назад

    Why they use wired earphones. ??

  • @gamereditor59ner22
    @gamereditor59ner22 2 года назад +1

    Well, not so much for TCP.

  • @aliqjoken25
    @aliqjoken25 2 года назад

    hi dave ,
    may be you can teach , how to hack gamble situs like pragmatic or sumn
    🙏🏻

  • @fahadbawazir1771
    @fahadbawazir1771 2 года назад

    David you are doing the latest now

  • @amazingvidguyz
    @amazingvidguyz 2 года назад

    I was going to tell you a joke about UDP, but i was not sure you would get it :)

  • @VEl0000000
    @VEl0000000 2 года назад

    ty

  • @maroofmaroof2251
    @maroofmaroof2251 2 года назад

    Sir David is legend here have a alot of information please anyone guide I want to learn about the hacking please guide me how I can start this type of information from where

  • @Anon-world
    @Anon-world 2 года назад +1

    Waiting for "wifi hacking with Android"