Zeek AlternativesNetwork Monitors and other similar apps like Zeek

Zeek is described as 'Powerful network analysis framework that is much different from the typical IDS you may know' and is a Network Monitor in the network & admin category. There are seven alternatives to Zeek for a variety of platforms, including Linux, Windows, Mac, BSD and Self-Hosted apps. The best Zeek alternative is Nmap, which is both free and Open Source. Other great apps like Zeek are Suricata, snort, LOKI Free IOC Scanner and Arkime.

Zeek iconZeek
  0
  • ...

Zeek is a powerful network analysis framework that is much different from the typical IDS you may know.

More about Zeek
Zeek alternatives page was last updated Feb 15, 2025
Copy a direct link to this comment to your clipboard
  1. Nmap icon
     312 likes
    Copy a direct link to this comment to your clipboard

    Open-source utility for security auditing and network exploration, utilizing raw IP packets to scan hosts and services, identify OS and service versions, and assess network infrastructure, compatible across major operating systems with advanced GUI and tool suite.

    58 Nmap alternatives

    License model

    • FreeOpen Source

    Application types

    Country of Origin

    • US flagUnited States

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD

    Nmap Features

    1.  Connectivity Testing
    2.  Command line interface
    3.  Website Monitoring
    4.  Network Usage History

    Nmap VS Zeek

     
    • Nmap is the most popular Windows, Mac & Linux alternative to Zeek.

    • Nmap is the most popular Open Source & free alternative to Zeek.

    • Nmap is Free and Open SourceZeek is also Free and Open Source
  2. Suricata icon
     9 likes
    Copy a direct link to this comment to your clipboard

    Suricata is a high performance Network IDS, IPS and Network Security Monitoring engine. Open Source and owned by a community run non-profit foundation, the Open Information Security Foundation (OISF). Suricata is developed by the OISF and its supporting vendors.

    7 Suricata alternatives

    License model

    • FreeOpen Source

    Application type

    Platforms

    • Mac
    • Windows
    • Linux
    • BSD
    • FreeBSD

    Suricata Features

    1.  Network Tools
    2.  Heuristic Detection

    Suricata VS Zeek

     
  3. snort icon
     21 likes
    Copy a direct link to this comment to your clipboard

    Snort® is an open source network intrusion prevention and detection system (IDS/IPS) developed by Sourcefire. Combining the benefits of signature, protocol, and anomaly-based inspection, Snort is the most widely deployed IDS/IPS technology worldwide.

    11 snort alternatives

    License model

    • FreeOpen Source

    Application type

    Platforms

    • Linux

    snort Features

    1.  Network intrusion detection system

    snort VS Zeek

     
  4. Copy a direct link to this comment to your clipboard

    LOKI is a free and simple IOC - "Incidents of Compromise" scanner - that goes beyond AV and malware scans to detect evidence of hacking.

    License model

    • Free PersonalOpen Source

    Application type

    Platforms

    • Windows

    LOKI Free IOC Scanner Features

    1.  Portable

    LOKI Free IOC Scanner VS Zeek

     
  5. Arkime icon
     2 likes
    Copy a direct link to this comment to your clipboard

    Moloch augments your current security infrastructure to store and index network traffic in standard PCAP format, providing fast, indexed access. An intuitive and simple web interface is provided for PCAP browsing, searching, and exporting.

    8 Arkime alternatives

    License model

    • FreeOpen Source

    Platforms

    • Linux
    • Self-Hosted

    Arkime Features

    1.  Network Scanner

    Arkime VS Zeek

     
    • Arkime is the most popular Self-Hosted alternative to Zeek.

    • Arkime is Free and Open SourceZeek is also Free and Open Source
  6. Maltrail icon
     1 like
    Copy a direct link to this comment to your clipboard

    Maltrail is a malicious traffic detection system, utilizing publicly available (black)lists containing malicious and/or generally suspicious trails, along with static trails compiled from various AV reports and custom user defined lists, where trail can be anything from domain...

    License model

    • FreeOpen Source

    Platforms

    • Linux
    • Self-Hosted

    Maltrail VS Zeek

     
  7. Redborder icon
     1 like
    Copy a direct link to this comment to your clipboard

    redborder is an Open Source, Big Data cybersecurity and traffic analysis platform accompanied by a set of active probes managed in an integrated manner. Can be deployed on-premise or used as a cloud service. Managing SNORT events.

    License model

    • FreeOpen Source

    Platforms

    • Mac
    • Windows
    • Linux

    Redborder VS Zeek

     
7 of 7 Zeek alternatives