Zeek AlternativesNetwork Monitors and other similar apps like Zeek

Zeek is described as 'Powerful network analysis framework that is much different from the typical IDS you may know' and is a Network Monitor in the network & admin category. There are seven alternatives to Zeek for a variety of platforms, including Linux, Windows, Mac, BSD and Self-Hosted apps. The best Zeek alternative is Nmap, which is both free and Open Source. Other great apps like Zeek are snort, Suricata, LOKI Free IOC Scanner and Arkime.

Copy a direct link to this comment to your clipboard
Zeek alternatives page was last updated

Alternatives list

  1. Nmap icon
     331 likes

    Open-source utility for security auditing and network exploration, utilizing raw IP packets to scan hosts and services, identify OS and service versions, and assess network infrastructure, compatible across major operating systems with advanced GUI and tool suite.

    59 Nmap alternatives

    Cost / License

    • Free
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
     
    • Nmap is the most popular Windows, Mac & Linux alternative to Zeek.

    • Nmap is the most popular Open Source & free alternative to Zeek.

    • Nmap is Free and Open SourceZeek is also Free and Open Source
  2. snort icon
     23 likes

    Snort® is an open source network intrusion prevention and detection system (IDS/IPS) developed by Sourcefire. Combining the benefits of signature, protocol, and anomaly-based inspection, Snort is the most widely deployed IDS/IPS technology worldwide.

    10 snort alternatives

    Cost / License

    • Free
    • Open Source

    Application type

    Platforms

    • Linux
     
  3. Suricata icon
     10 likes

    Suricata is a high performance Network IDS, IPS and Network Security Monitoring engine. Open Source and owned by a community run non-profit foundation, the Open Information Security Foundation (OISF). Suricata is developed by the OISF and its supporting vendors.

    6 Suricata alternatives

    Cost / License

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
    • FreeBSD
     
  4. Arkime icon
     2 likes

    Moloch augments your current security infrastructure to store and index network traffic in standard PCAP format, providing fast, indexed access. An intuitive and simple web interface is provided for PCAP browsing, searching, and exporting.

    8 Arkime alternatives

    Cost / License

    Platforms

    • Linux
    • Self-Hosted
     
    • Arkime is the most popular Self-Hosted alternative to Zeek.

    • Arkime is Free and Open SourceZeek is also Free and Open Source
  5. Maltrail icon
     1 like

    Maltrail is a malicious traffic detection system, utilizing publicly available (black)lists containing malicious and/or generally suspicious trails, along with static trails compiled from various AV reports and custom user defined lists, where trail can be anything from domain...

    Cost / License

    • Free
    • Open Source (MIT)

    Application type

    Platforms

    • Linux
    • Self-Hosted
     
  6. Redborder icon
     1 like

    redborder is an Open Source, Big Data cybersecurity and traffic analysis platform accompanied by a set of active probes managed in an integrated manner. Can be deployed on-premise or used as a cloud service. Managing SNORT events.

    Cost / License

    • Free
    • Open Source

    Platforms

    • Mac
    • Windows
    • Linux
     
7 of 7 Zeek alternatives