White Paper
A Look at a Portable USB 3 Network TAP
This white paper evaluates ProfiShark 1G as a portable packet-capture tool for network forensics, incident response, security monitoring, and troubleshooting. Unlike conventional TAPs that require two monitoring interfaces or specialized capture appliances, ProfiShark aggregates both directions of a full-duplex Gigabit link and transfers the traffic to a computer through USB 3.0. The connection provides enough bandwidth to transport up to two gigabits per second and powers the device without a separate supply. Testing found that it integrated with Wireshark, tshark, and dumpcap and captured heavily loaded links without dropping frames. The paper also reviews configuration utilities, direct PCAP capture, timestamping, CRC handling, and operational limitations, including dependence on a USB
