0Pricing
Cyber Security Academy · Lesson

Extracting Artifacts

Recover files and creds.

What Are Artifacts

Artifacts are the meaningful items hidden inside a capture: transferred files, credentials, images, and session data.

Recovering them turns a stream of packets into concrete evidence of what was sent and seen.

Reassembly Is Key

A single file is split across many TCP segments. To recover it you must reassemble the stream in order.

Wireshark and specialized tools handle this automatically when you follow a stream or export objects.

All lessons in this course

  1. Capturing Packets
  2. Reading Protocols
  3. Detecting Anomalies
  4. Extracting Artifacts
← Back to Cyber Security Academy