<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://www.advancedwindowsdebugging.com/forums/utility/FeedStylesheets/atom.xsl" media="screen"?><feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en"><title type="html">Daniel's blog</title><subtitle type="html">Supplement to Advanced Windows Debugging book </subtitle><id>http://www.advancedwindowsdebugging.com/forums/blogs/daniel/atom.aspx</id><link rel="alternate" type="text/html" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/default.aspx" /><link rel="self" type="application/atom+xml" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/atom.aspx" /><generator uri="http://communityserver.org" version="2.1.60809.935">Community Server</generator><updated>2007-10-18T00:17:00Z</updated><entry><title>Wireshark is at version 1.0.0</title><link rel="alternate" type="text/html" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/04/03/Wireshark-is-at-version-1.0.0.aspx" /><id>http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/04/03/Wireshark-is-at-version-1.0.0.aspx</id><published>2008-04-04T03:52:00Z</published><updated>2008-04-04T03:52:00Z</updated><content type="html">&lt;p&gt;The current stable release of Wireshark is 1.0.0. It supersedes all previous releases, including all releases of Ethereal. You can get it from many&amp;nbsp;locations, check &lt;a href="http://www.wireshark.org/download.html"&gt;http://www.wireshark.org/download.html&lt;/a&gt;&amp;nbsp;for details.&amp;nbsp;Thanks &amp;nbsp;to its authors. &lt;/p&gt;&lt;p&gt;&lt;span&gt;Because&amp;nbsp;Wireshark &lt;/span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;opens/interprets each packet&amp;nbsp;received by the networking card, it is essential to&amp;nbsp;use a version which is up to date. This version contains update&amp;nbsp;parser for the following protocols (from the release notes &lt;a href="http://www.wireshark.org/docs/relnotes/wireshark-1.0.0.html"&gt;http://www.wireshark.org/docs/relnotes/wireshark-1.0.0.html&lt;/a&gt;): &lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/p&gt;&lt;div&gt;AFS, ALCAP, ATM, BACapp, CIGI, DCC (renamed from DCCP), DCCP (renamed from DCP), DCERPC SPOOLSS, DCERPC NT, DHCP, DirectPlay, EtherCAT, FIX, GIOP, GTP, H.248, HTTP, ICMPv6, ICQ, IPv6, ISIS, JXTA, NCP, P_Mul, PCAP, PKIX1Explicit, PTP, RADIUS, Roofnet, RTCP, RTMPT, RTP, RX, SABP, SCSI OSD, sFlow, SMPP, SNMP, SSCOP, TAPA, TIPC, TPNCP, UNISTIM, X.25, X.509sat, XML&amp;nbsp;&amp;nbsp;.&amp;nbsp; &lt;h3&gt;&lt;/h3&gt;&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;Unrelated to this post, my group &lt;a href="http://www.microsoft.com/systemcenter/scvmm/default.mspx"&gt;System Center Virtual Machine Manager&lt;/a&gt; is hiring software developers. If you are looking for a nice twist in your carrer send me a note (daniel at advancedwindowsdebugging dot com). &lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;Chers, &lt;/div&gt;&lt;div&gt;Daniel&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;img src="http://www.advancedwindowsdebugging.com/forums/aggbug.aspx?PostID=70" width="1" height="1"&gt;</content><author><name>daniel</name><uri>http://www.advancedwindowsdebugging.com/forums/members/daniel.aspx</uri></author><category term="Network capture" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Network+capture/default.aspx" /><category term="Packet sniffer" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Packet+sniffer/default.aspx" /><category term="Wireshark" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Wireshark/default.aspx" /><category term="Ethereal" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Ethereal/default.aspx" /></entry><entry><title>Advanced Windows Debugging sources moved to Codeplex</title><link rel="alternate" type="text/html" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/04/01/Advanced-Windows-Debugging-sources-moved-to-Codeplex.aspx" /><id>http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/04/01/Advanced-Windows-Debugging-sources-moved-to-Codeplex.aspx</id><published>2008-04-02T04:24:00Z</published><updated>2008-04-02T04:24:00Z</updated><content type="html">&lt;p&gt;After making several changes to a software project, you begin to understand why a source revision control system is a necessity. This is even more important when more than one developer contributes to the same project. I looked for an inexpensive source revision control server hosted on public location and I was surprised by the number of options that I found, some of them being sponsored by software corporation. We decided to host the source code project on &lt;a href="http://www.codeplex.com/AWD"&gt;Codeplex&lt;/a&gt; (project sponsored by Microsoft) because we like the client tools (free) offered as well as the project management interface. Now the project is live and our readers can check-in the bug fix in the code bugs sooner than we will be able to do it. The previous download location will continue to host a static version of the source files, as well as the associated binary and symbol files. It is impressive how easy it is nowadays for open source developers to use a professional source revision control with zero investment. &lt;/p&gt;&lt;p&gt;Keep on reading, &lt;br /&gt;Daniel &lt;/p&gt;&lt;img src="http://www.advancedwindowsdebugging.com/forums/aggbug.aspx?PostID=69" width="1" height="1"&gt;</content><author><name>daniel</name><uri>http://www.advancedwindowsdebugging.com/forums/members/daniel.aspx</uri></author><category term="Codeplex" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Codeplex/default.aspx" /><category term="Source revision control system" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Source+revision+control+system/default.aspx" /></entry><entry><title>The cost of software bugs</title><link rel="alternate" type="text/html" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/03/16/Worst-Software-Bugs.aspx" /><id>http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/03/16/Worst-Software-Bugs.aspx</id><published>2008-03-17T04:33:00Z</published><updated>2008-03-17T04:33:00Z</updated><content type="html">&lt;p&gt;After reading&amp;nbsp;a relatively old &lt;a href="http://www.wired.com/software/coolapps/news/2005/11/69355?currentPage=all"&gt;article published in Wired Magazine&lt;/a&gt; about few nasty software bugs, I searched for similar list on the Internet. &lt;a href="http://en.wikipedia.org/wiki/List_of_notable_software_bugs"&gt;Wikipedia&lt;/a&gt; has an impressive list of &lt;a href="http://en.wikipedia.org/wiki/Software_bugs"&gt;software bugs&lt;/a&gt; that moved from the bug tracking systems into the&amp;nbsp;history. Don&amp;#39;t forget to check out&amp;nbsp;the external links, they are very informative. &lt;/p&gt;&lt;p style="font-size:10pt;margin:0in;font-family:Arial;"&gt;Do you have similar bug histories to share? &lt;/p&gt;&lt;p style="font-size:10pt;margin:0in;font-family:Arial;"&gt;&amp;nbsp;&lt;/p&gt;&lt;p style="font-size:10pt;margin:0in;font-family:Arial;"&gt;Thanks, &lt;/p&gt;&lt;p style="font-size:10pt;margin:0in;font-family:Arial;"&gt;Daniel&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;img src="http://www.advancedwindowsdebugging.com/forums/aggbug.aspx?PostID=60" width="1" height="1"&gt;</content><author><name>daniel</name><uri>http://www.advancedwindowsdebugging.com/forums/members/daniel.aspx</uri></author><category term="Software bugs" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Software+bugs/default.aspx" /></entry><entry><title>Two sides of reliability</title><link rel="alternate" type="text/html" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/03/10/Two-sides-of-reliability.aspx" /><id>http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/03/10/Two-sides-of-reliability.aspx</id><published>2008-03-11T05:38:00Z</published><updated>2008-03-11T05:38:00Z</updated><content type="html">&lt;p class="PadderBetweenControlandBody" style="margin:0in 0in 6pt;"&gt;&lt;span&gt;&lt;font face="Calibri" size="3"&gt;One of the projects I finished recently was to assembly a microcontroller board and written the &amp;quot;driver&amp;quot; for the small LCD screen. The &lt;/font&gt;&lt;a href="http://www.myavr.com/"&gt;&lt;font color="#0000ff" face="Calibri" size="3"&gt;board&lt;/font&gt;&lt;/a&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt; uses an RISC AVR-microcontroller from ATMEL (ATmega8) with only 8K FLASH and 1K RAM and is connected to a 2x16 characters display. As you can see after few days of &amp;quot;debugging&amp;quot;, the controller learns to spell &amp;quot;Advanced Windows Debugging&amp;quot;, nicely centered on the LCD. &lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;While working on this project I understood better the difference in the entry barrier between building hardware building software. What are exactly the differences? &lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;First there are the tools. &lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;For software development, the free tools can be found everywhere and we can use them after a simple download. For example, in &amp;quot;Advanced Windows Debugging&amp;quot; book we used WDK(free) to build the applications,&lt;span&gt;&amp;nbsp; &lt;/span&gt;we used Debugging Tools for Windows (free) to troubleshoot the applications which can be written created very well in any text editor(Notepad is free).&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font face="Calibri" size="3"&gt;Looking for highly integrated or managed code development tools? Many are also available for free.&lt;span&gt;&amp;nbsp; &lt;/span&gt;For example Microsoft offers for download an &amp;quot;&lt;/font&gt;&lt;a href="http://www.microsoft.com/express/"&gt;&lt;font color="#0000ff" face="Calibri" size="3"&gt;Express&lt;/font&gt;&lt;/a&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&amp;quot; version to all development tools for free.&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;If open source software is an option, you can easily find a tool that suits you needs. &lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;The tools used in hardware development are not free for a good reason. With few exceptions most are physical objects. You cannot just download a COPY of a physical object, you have to pay the manufacturing and distribution costs. And you need tools from the moment you start building the hardware. Once the circuit is ready and powered on, you need measurement equipment for validating the design correctness. If the circuit uses processors, you must have another set of tools (usually expensive) to validate the application correctness and to debug the code running inside the embedded processors. &lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;After the design is complete, the process of removing the remaining bugs from the products is also different. In software a bug is usually fixed by adding a code line, removing a code line, of even re-architecting a code section. In any case the cost of implementing those changes is relatively small. &lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;The bugs discovered after the products release are easily fixed with a downloadable patch.&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;In hardware the problems are more difficult to fix dues to the high cost of prototyping and the cost of redesigning the circuits. And most important the bugs discovered by customers are causing product returns.&lt;span&gt;&amp;nbsp; &lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;Although it seems that it is in fairly inexpensive and easy to release &amp;quot;bug-free&amp;quot; software products, we somehow accepted the error in software applications. When an internet browser crashes, we just restart it without any bad feelings.&lt;span&gt;&amp;nbsp; &lt;/span&gt;However, we have different expectation for a hardware device. If a cell phone, or a TV, or a music player freezes and require a &amp;quot;restart&amp;quot; we are not happy.&lt;span&gt;&amp;nbsp; &lt;/span&gt;When it happens too often, we end-up returning the products. &lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin-bottom:0pt;"&gt;&lt;span&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;Due to the flexibility offered by providing some of the functionality in software the later devices incorporate more capabilities offered by software modules. Because this trend will continue and even accelerate, is interested what will happen with their reliability? We will learn to live devices that are not working properly or software running on such devices will be more reliable than the current desktop applications?&lt;span&gt;&amp;nbsp;&amp;nbsp; &lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin:0in 0in 10pt;"&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;&lt;/span&gt;&lt;span style="font-size:12pt;font-family:'Times New Roman','serif';"&gt;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin:0in 0in 10pt;"&gt;&lt;span&gt;&lt;font face="Calibri" size="3"&gt;&lt;img align="bottom" alt="Advanced Windows Debugging in FW" height="600" src="http://www.advancedwindowsdebugging.com/forums/photos/daniel/images/57/original.aspx" style="width:401px;height:600px;" title="Advanced Windows Debugging in FW" width="401" /&gt;&lt;/font&gt;&lt;/span&gt;&lt;/p&gt;&lt;img src="http://www.advancedwindowsdebugging.com/forums/aggbug.aspx?PostID=56" width="1" height="1"&gt;</content><author><name>daniel</name><uri>http://www.advancedwindowsdebugging.com/forums/members/daniel.aspx</uri></author><category term="Firmware" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Firmware/default.aspx" /><category term="Reliability" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Reliability/default.aspx" /><category term="Microcontroller" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Microcontroller/default.aspx" /></entry><entry><title>Windows Development Kit 6001 RTM</title><link rel="alternate" type="text/html" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/02/17/Windows-Development-Kit-6001-RTM.aspx" /><id>http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2008/02/17/Windows-Development-Kit-6001-RTM.aspx</id><published>2008-02-17T21:37:00Z</published><updated>2008-02-17T21:37:00Z</updated><content type="html">I have started this blog immediately after we finished all the reviews for &lt;a href="http://www.amazon.com/gp/product/0321374460?ie=UTF8&amp;amp;tag=advanwindodeb-20&amp;amp;linkCode=as2&amp;amp;camp=1789&amp;amp;creative=9325&amp;amp;creativeASIN=0321374460"&gt;Advanced Windows Debugging (The Addison-Wesley Microsoft Technology Series)&lt;/a&gt;&lt;img border="0" height="1" src="http://www.assoc-amazon.com/e/ir?t=advanwindodeb-20&amp;amp;l=as2&amp;amp;o=1&amp;amp;a=0321374460" style="margin:0px;border:medium none;" width="1" /&gt; with the goal to supplement and correct, when necessary, the book content. With all the available hours, previously spent on the book project, I never thought that it will be hard to find time for blogging. However, I found a lot of tasks postponed since some time, waiting for completion. Now I should find more time for contributing to this blog. &lt;br /&gt;&amp;nbsp;&lt;br /&gt;What has been changed since the book has been completed? &lt;br /&gt;&amp;nbsp;&lt;br /&gt;In the last few days, Microsoft announced the release of &lt;a href="http://www.microsoft.com/windowsserver2008/en/us/default.aspx" title="Windows Server 2008"&gt;Windows Server 2008&lt;/a&gt; (formerly known as Longhorn) and the client version, Windows Vista SP1. The Microsoft Connect team promptly sent a notification mail to all Windows Development Kit (WDK) Beta users telling them that the WDK RTM version is ready for downloading. Because our samples designed to be compiled using WDK and a new version can affects many readers, it is better to evaluate its impact ourselves. &lt;br /&gt;&amp;nbsp;&lt;br /&gt;WDK is considered by many as one of the Microsoft best keep secrets, simply because it offers a simple, yet robust platform for creating, building and verification application targeted to multiple platforms. Even better, the footprint is fairly small by today&amp;#39;s standards (less then 1.6 GB installed), the dependences of the guest operating system are minimal. The WDK is self contained, all compilers, libraries and tools are available for all target platforms. It even comes with ATL and MFC libraries. If you need to write a simple application that is happy with the OS installed CRT (msvcrt.dll), WDK is a very good option.&amp;nbsp; &lt;br /&gt;&amp;nbsp;&lt;br /&gt;WDK&amp;#39;s version is set to 6001.18000 that should also represent the build version of the Windows Server 2008 and the corresponding Windows Vista SP1.&amp;nbsp; &lt;br /&gt;&amp;nbsp;&lt;br /&gt;&lt;em&gt;C:\&amp;gt;set base&lt;br /&gt;BASEDIR=C:\WinDDK\6001.18000&lt;/em&gt;&lt;br /&gt;&amp;nbsp;&lt;br /&gt;I just downloaded it and all the samples build without a surprise. As expected, the whole build process worked flawless and the samples are failing as designed.&lt;br /&gt;&amp;nbsp;&lt;br /&gt;What is new in the WDK 6001? &lt;br /&gt;&amp;nbsp;&lt;br /&gt;As with the previous version this one is available only as an ISO file. This version seems smaller than other versions and fit well in a CD image (the web site recommend burning it on a DVD). If you are looking for a free CD/DVD burner search the web for cdburn.exe or dvdburn.exe. Both are available from Microsoft in the Windows Resource Kit Tools.&lt;br /&gt;&amp;nbsp;&lt;br /&gt;The WDK 6001 contains many driver samples using both User Mode Driver Framework and Kernel Mode Driver Framework. There are new tools as well are extension to the existing tools (static verifier, prefast, etc.). &lt;br /&gt;&amp;nbsp;&lt;br /&gt;Perhaps the most important is the Microsoft &lt;a href="http://www.microsoft.com/windowsserver2008/en/us/virtualization-consolidation.aspx" title="hypervisor"&gt;hypervisor&lt;/a&gt; reference which is available as a role in Windows Server 2008. For people not familiar with the hypervisor, it can be described as a thin layer of software that runs above the physical hardware. It allows multiple operating systems to run &amp;quot;simultaneously&amp;quot; on the same physical computer and maintains the isolation between them.&amp;nbsp; Each such virtual computer is called a partition.&amp;nbsp; &lt;br /&gt;&amp;nbsp;&lt;br /&gt;The documentation contains a node describing the hypervisor implementations and the APIs available for creating hypervisor aware drivers and applications. The node is located strategically hidden under Device and Driver Technology|System|Hypervisor. &lt;br /&gt;&amp;nbsp;&lt;br /&gt;Because the debugger is so close to the hardware layer, the introduction of another layer between debuggers and the physical hardware layer brings some changes to the debugging process. In the future post I will analyze the impact that the hypervisor has to the techniques described in the book. &lt;br /&gt;&lt;img src="http://www.advancedwindowsdebugging.com/forums/aggbug.aspx?PostID=54" width="1" height="1"&gt;</content><author><name>daniel</name><uri>http://www.advancedwindowsdebugging.com/forums/members/daniel.aspx</uri></author><category term="Virtualization" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Virtualization/default.aspx" /><category term="Windows Server 2008" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/Windows+Server+2008/default.aspx" /><category term="WDK" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/WDK/default.aspx" /></entry><entry><title>Wireshark is the newest version of Ethereal</title><link rel="alternate" type="text/html" href="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2007/10/18/Newer-version-of-Ethereal.aspx" /><id>http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/2007/10/18/Newer-version-of-Ethereal.aspx</id><published>2007-10-18T07:17:00Z</published><updated>2007-10-18T07:17:00Z</updated><content type="html">&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;div&gt;&lt;p class="MsoNormal" style="margin:0in 0in 0pt;"&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;A network packet sniffer is a great tool for investigating network communication error. At the time of writing the book,&amp;nbsp;&lt;span&gt;&lt;a href="http://www.ethereal.com/" title="Ethereal"&gt;Ethereal&lt;/a&gt;&amp;nbsp;was one of the best tools&amp;nbsp;network packet sniffer available and we used it to analyze the network communication between two different systems.&amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin:0in 0in 0pt;"&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;However, the last update to Ethereal has been made in April 2006 having the version 0.99.0, that is more than one and a half year ago.&amp;nbsp;&amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;Since then, several &lt;a href="http://www.ethereal.com/appnotes/enpa-sa-00024.html" title="vulnerabilities"&gt;vulnerabilities &lt;/a&gt;have been discovered in protocol parsers and because&amp;nbsp;Ethereal&amp;nbsp;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;opens/interprets each packet&amp;nbsp;received by the networking card, it is essential to&amp;nbsp;use a version which is up to date. &lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin:0in 0in 0pt;"&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;Due to trademark related issues, the latest packet sniffer version is offered under &lt;a href="http://www.wireshark.org" title="Wireshark"&gt;Wireshark&lt;/a&gt; name, last release being 0.99.6. This release fixes several security holes discovered in the previous releases of Wireshark and Ethereal. &lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin:0in 0in 0pt;"&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;Even if the&amp;nbsp;sample capture files available on the website can be opened safely with the&amp;nbsp;Ethereal, it is strongly advised to&amp;nbsp;upgrade to the latest&amp;nbsp;Wireshark version. This is&amp;nbsp;even more important&amp;nbsp;when the captured packets are not received from trusted servers. Wireshark opens the&amp;nbsp;sample capture files described in the chapter 8 without any problem and provides the same user experience as the Ethereal. &lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/p&gt;&lt;p class="MsoNormal" style="margin:0in 0in 0pt;"&gt;&lt;font size="3"&gt;&lt;font face="Calibri"&gt;&lt;span&gt;&lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;/p&gt;&lt;/div&gt;&lt;/font&gt;&lt;/font&gt;&lt;img src="http://www.advancedwindowsdebugging.com/forums/aggbug.aspx?PostID=1" width="1" height="1"&gt;</content><author><name>daniel</name><uri>http://www.advancedwindowsdebugging.com/forums/members/daniel.aspx</uri></author><category term="network" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/network/default.aspx" /><category term="communication" scheme="http://www.advancedwindowsdebugging.com/forums/blogs/daniel/archive/tags/communication/default.aspx" /></entry></feed>