The Zeek Network Security Monitor 's Avatar

The Zeek Network Security Monitor

@zeek.org.bsky.social

Zeek is an open source network security monitor. Visit www.zeek.org for more information.

60 Followers  |  6 Following  |  46 Posts  |  Joined: 19.10.2023  |  1.893

Latest posts by zeek.org on Bluesky

The monthly newsletter is out now.

The monthly newsletter is out now.

In our July newsletter, we cover the final preparations for Zeek 8.0, community survey follow-ups, and upcoming events at the NSF Cybersecurity Summit and hack.lu . Read more here: community.zeek.org/t/zeek-newsl...

08.08.2025 17:28 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Zeek Feature pre-release 8.0.0-rc1 Zeek feature pre-release v8.0.0-rc1 is now available: https://zeek.org/get-zeek https://download.zeek.org/zeek-8.0.0-rc1.tar.gz Some highlights in this release: C++ 20-capable compilers are now r...

Big things are coming with Zeek 8.0, and the release candidate is available for you to explore now! Plus, we're preparing content that will give you a deeper look into what's new. Stay tuned...

community.zeek.org/t/zeek-featu...

#Zeek #OpenSource #NetworkSecurity #CyberSecurity

07.08.2025 17:25 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

Reminder that the Zeek Monthly Community Call is tomorrow at 10am Pacific -- tune in to learn about the upcoming Zeek 8.0 release and see community survey results.

Head to zeek.org/events for the Zoom link.

These calls are open to everyone. Looking forward to seeing you there!

05.08.2025 19:49 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
GitHub - cisagov/ICSNPP: Industrial Control Systems Network Protocol Parsers Industrial Control Systems Network Protocol Parsers - cisagov/ICSNPP

My team develops #Zeek network analyzers (github.com/cisagov/icsnpp) for #OT protocols. If you know this area, you know one of the hardest things is getting sample data. If you have traffic available for any of the more niche protocols on that list & are willing to share #PCAP, please reach out.

30.07.2025 21:22 β€” πŸ‘ 2    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Post image

Heads up: the Zeek Monthly Community Call is coming up next Wednesday, August 6 at 10am PT.

We'll share leadership updates, project news, training highlights, plus results from the recent community survey.

Look out for more details next week!

30.07.2025 19:16 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Zeek Newsletter - Issue 52 - June 2025 Welcome to the Zeek Newsletter In this Issue: Reminders Zeek Tip of the Month: getenv Function Community Call Recap Development Updates Ecosystem News Package Updates Get Involved [TL;DR] Zeek 8 d...

Zeek packages are community-contributed tools that expand what Zeek can detect, log, or analyze.

We spotlight the most recent packages each month, head to our newsletter to see what's been added: community.zeek.org/t/zeek-newsl...

29.07.2025 17:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Zeek Newsletter - Issue 52 - June 2025 Welcome to the Zeek Newsletter In this Issue: Reminders Zeek Tip of the Month: getenv Function Community Call Recap Development Updates Ecosystem News Package Updates Get Involved [TL;DR] Zeek 8 d...

Zeek 8 is getting better cluster metrics! πŸ“ˆ

Prometheus + telemetry.log now give you per-node events, topic breakdowns, and serialized event sizes. Super handy if you're running a cluster.

We talked about it in the latest newsletter, grab the details there: community.zeek.org/t/zeek-newsl...

16.07.2025 15:32 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

7,000 GitHub stars for Zeek! Thanks to everyone who contributes, tests, shares feedback, or just runs Zeek in production. We couldn't do it without you ❀️

#Zeek #OpenSource #Security

14.07.2025 17:26 β€” πŸ‘ 4    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Zeek Newsletter - Issue 52 - June 2025 Welcome to the Zeek Newsletter In this Issue: Reminders Zeek Tip of the Month: getenv Function Community Call Recap Development Updates Ecosystem News Package Updates Get Involved [TL;DR] Zeek 8 d...

Zeek 8.0 development is well underway with many updates including pluggable connection keys πŸ”‘

In case you missed it, we have more info and a tutorial available in our most recent newsletter: community.zeek.org/t/zeek-newsl...

11.07.2025 19:28 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
base/bif/zeek.bif.zeek β€” Book of Zeek (git/master)

Zeek Tip of the Month πŸ’‘

You can use getenv() to grab environment variables in scripts - perfect for Docker and other container setups. Docs here: docs.zeek.org/en/master/sc...

What's your #ZeekTip?

09.07.2025 17:01 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

ICYMI: We're gathering feedback on how Zeek helps you get the job done. What works? What needs work? Let us know...

zeek.org/survey

08.07.2025 18:08 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1
Preview
Zeek Newsletter - Issue 52 - June 2025 Welcome to the Zeek Newsletter In this Issue: Reminders Zeek Tip of the Month: getenv Function Community Call Recap Development Updates Ecosystem News Package Updates Get Involved [TL;DR] Zeek 8 d...

The new Zeek Newsletter is out! Issue 52 covers Zeek 8 progress, new packages, @securityonion.bsky.social + Malcolm updates, and this month’s #Zeek tip.

Check it out and stay in the loop: community.zeek.org/t/zeek-newsl...

03.07.2025 18:28 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Who attended #FIRSTCON25? Did anyone catch this lightning talk by LT member Aashish S.? 😁

02.07.2025 22:11 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Reminder! Our next Community Call is happening tomorrow. Join us live for project updates and get your Zeek questions answered.

01.07.2025 17:44 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Input Framework β€” Book of Zeek (git/master)

Zeek Tip ⚑ Use the Input Framework to read JSON content directly. Check out the docs: docs.zeek.org/en/master/fr...

30.06.2025 19:22 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Mark your calendars for the next Zeek Community Call on Wednesday, July 2 at 10am PT / 1pm ET πŸ“†

Our Leadership Team will be sharing Zeek news, project updates, and more. Link: shorturl.at/YgDwq

#zeek #zeekproject #opensource #cybersecurity #networksecurity

25.06.2025 19:11 β€” πŸ‘ 4    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1

Heads up: Zeek’s next in-person training will be at the NSF Cybersecurity Summit in Boulder, CO this October. More details are coming soon.

Are you planning to go? Or did you attend last year? We’d love to hear your highlights. #Zeek #Cybersecurity #NSFSummit #OpenSourceSecurity

24.06.2025 19:34 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
A screenshot of the Malcolm documentation for the role-based access control feature, found at https://malcolm.fyi/docs/authsetup.html#AuthKeycloakRBAC

A screenshot of the Malcolm documentation for the role-based access control feature, found at https://malcolm.fyi/docs/authsetup.html#AuthKeycloakRBAC

#Malcolm (malcolm.fyi) v25.06.0 features πŸ” #rbac, other ✨ improvements, πŸ†™ component version updates, πŸ› bug fixes, & more. Details @ github.com/idaholab/Malcolm/releases. Malcolm is a powerful tool suite for NSM πŸ•΅πŸ»β€β™‚οΈ. #Zeek #Arkime #NetBox #Suricata #NetworkTrafficAnalysis #networksecuritymonitoring

23.06.2025 16:42 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
The zeek project survey 2025 is live!

The zeek project survey 2025 is live!

If Zeek is part of your work, your research, or you're just exploring what it can do, this is your chance to tell us what’s working and what’s not. It only takes 10 minutes to share your thoughts β†’ forms.gle/mMfMSANgK8p1...

#zeek #zeekproject #opensource #cybersecurity #networksecurity

23.06.2025 17:46 β€” πŸ‘ 5    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

This is the thing that I spent the most time on in the last 6 months. If you're a Zeek user, I'd love to hear what you think, good or bad!

19.06.2025 16:31 β€” πŸ‘ 2    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Generic event metadata API proposal Β· zeek zeek Β· Discussion #4334 This discussion outlines an API sketch after starting a prototype implementation and talking to Robin and Benjamin about #4177. Today, event metadata is attached to remote events as vector of key-v...

New in Zeek: Custom Event Metadata - Docs coming soon πŸ€—In the meantime, check out github.com/zeek/zeek/di... #Zeek #OpenSource #SecurityTools

20.06.2025 13:00 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Reminder: The Zeek Project Survey 2025 launches June 23! Help us improve our tools, docs, and community support by sharing your experience with us. Whether you’re new or a long-time contributor, your input shapes the future of Zeek.

Stay tuned for the survey link! #Zeek #OpenSource #Cybersecurity

17.06.2025 18:49 β€” πŸ‘ 3    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Have you heard? We’re looking for feedback on our new Storage Framework -- head over to the docs and let us know what you think: docs.zeek.org/en/master/fr...

16.06.2025 15:33 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1
Post image

πŸšͺKnock knock.
πŸ—£οΈ Who’s there?
πŸšͺZeek.
πŸ—£οΈ Zeek who?
πŸšͺπŸ˜€ We’re Zeek-ing your input in the Zeek Project Survey launching June 23.

More details coming soon!

12.06.2025 21:30 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Post image

ICYMI: We recently looked at parser performance and shared the results in our latest blog: Are Spicy parsers slower than Binpac Parsers? zeek.org/2025/06/are-...

11.06.2025 18:07 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Zeek 8 is officially in motion! Catch the full update and more in this month's newsletter: community.zeek.org/t/zeek-newsl...

#zeek #opensource #security

05.06.2025 19:48 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

The monthly Zeek Community Call is tomorrow! Hop in for updates, questions, or just to lurk. All are welcome.

πŸ•™ June 4, 10am PT / 1pm ET. Join here: shorturl.at/vQWjB

#zeek #openSource #networkSecurity

03.06.2025 18:16 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Our next Zeek Community Call is next week. Come hang out with us to get updates, ask questions or just say hi. No RSVP required. πŸ‘‰ June 4, 10am PT / 1pm ET // Link: shorturl.at/vQWjB #zeek #openSource #networkSecurity

28.05.2025 17:53 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Zeek: Introducing Zeek 7.2 The Zeek team is proud to announce Zeek 7.2! Work on this release began in December 2024 and includes some 1,200 commits, 330 merged pull requests, and 130 closed issues. The 7.2 release brings imp…

ICYMI: Zeek 7.2 is here! 1200 commits, 330 PRs, 130 closed issues, and some major new features like smarter storage, cluster magic, and WebSockets that play nice.

More details on our blog: zeek.org/2025/05/intr...

#Zeek #NetworkSecurity #Release

16.05.2025 18:33 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Try now!

16.05.2025 18:26 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

@zeek.org is following 6 prominent accounts