You do not get in the middle. Your wireshark system needs to listen in on *all* the traffic as it goes over the air. Using tcpdump only captures the information after it has been processed by the driver. You need the raw data over the air.