Certified Incident Handler (CIH) Practice Ecam

Disable ads (and more) with a membership for a one time $2.99 payment

Prepare for the Certified Incident Handler (CIH) Exam. Enhance your knowledge with interactive quizzes and detailed insights into cyber incident handling. Boost your exam readiness with our expert-designed questions!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


Which tool did Max use to capture the network traffic of Internet-connected devices?

  1. NetSpot

  2. Wireshark

  3. Aircrack-ng

  4. SnoopDroid

The correct answer is: Wireshark

Wireshark is widely recognized as one of the most powerful tools for capturing and analyzing network traffic. It provides a detailed view of the packets traveling across a network, allowing users to inspect and analyze the raw data. This capability makes it an excellent choice for network surveillance and troubleshooting, as well as for analyzing network performance and security incidents. Wireshark supports a variety of protocols and offers extensive filtering options, making it possible to hone in on specific traffic, such as that from Internet-connected devices. Its user-friendly interface and robust feature set have made it a standard tool in both corporate and educational settings for professionals involved in network management and cybersecurity. While other options presented may serve specific functions associated with network tools, they generally do not match the comprehensive features and general-purpose application of Wireshark for capturing and analyzing network traffic.