Snort

Snort

Cisco
Zeek

Zeek

The Zeek Project
+
+

Related Products

  • Blumira
    150 Ratings
    Visit Website
  • Cloudbrink
    28 Ratings
    Visit Website
  • Emtrain
    41 Ratings
    Visit Website
  • LeanData
    1,135 Ratings
    Visit Website
  • HostZealot
    297 Ratings
    Visit Website
  • Signalmash
    16 Ratings
    Visit Website
  • Notifyre
    47 Ratings
    Visit Website
  • Setplex
    10 Ratings
    Visit Website
  • UptimeRobot
    793 Ratings
    Visit Website
  • NetBrain
    247 Ratings
    Visit Website

About

Snort is the foremost Open Source Intrusion Prevention System (IPS) in the world. Snort IPS uses a series of rules that help define malicious network activity and uses those rules to find packets that match against them and generates alerts for users. Snort can be deployed inline to stop these packets, as well. Snort has three primary uses: As a packet sniffer like tcpdump, as a packet logger — which is useful for network traffic debugging, or it can be used as a full-blown network intrusion prevention system. Snort can be downloaded and configured for personal and business use alike. Once downloaded and configured, Snort rules are distributed in two sets: The “Community Ruleset” and the “Snort Subscriber Ruleset.” The Snort Subscriber Ruleset is developed, tested, and approved by Cisco Talos. Subscribers to the Snort Subscriber Ruleset will receive the ruleset in real-time as they are released to Cisco customers.

About

Zeek (formerly Bro) is the world’s leading platform for network security monitoring. Flexible, open source, and powered by defenders. Zeek has a long history in the open source and digital security worlds. Vern Paxson began developing the project in the 1990s under the name “Bro” as a means to understand what was happening on his university and national laboratory networks. Vern and the project’s leadership team renamed Bro to Zeek in late 2018 to celebrate its expansion and continued development. Zeek is not an active security device, like a firewall or intrusion prevention system. Rather, Zeek sits on a “sensor,” a hardware, software, virtual, or cloud platform that quietly and unobtrusively observes network traffic. Zeek interprets what it sees and creates compact, high-fidelity transaction logs, file content, and fully customized output, suitable for manual review on disk or in a more analyst-friendly tool like a security and information event management (SIEM) system.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

IT teams searching for a network detection and prevention solution

Audience

Organizations interested in an open source network security monitoring tool

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

Free
Free Version
Free Trial

Reviews/Ratings

Overall 5.0 / 5
ease 3.0 / 5
features 5.0 / 5
design 5.0 / 5
support 5.0 / 5

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Cisco
Founded: 1984
United States
www.snort.org

Company Information

The Zeek Project
Founded: 1994
United States
zeek.org

Alternatives

Alternatives

EventSentry

EventSentry

NETIKUS.NET ltd
Snort

Snort

Snort Social
RedSeal

RedSeal

RedSeal Networks
Nagios Network Analzyer

Nagios Network Analzyer

Nagios Enterprises

Categories

Categories

Integrations

Elastic Observability
NXLog
Cybraics
Dropzone AI
EndaceProbe
IronNet Collective Defense Platform
Joe Sandbox
Malcolm
Observe
Onum
Palo Alto ATP
Panaseer
Picus
Project Ares
Security Onion
Tenzir
ThreatQ
Wraith
cPacket

Integrations

Elastic Observability
NXLog
Cybraics
Dropzone AI
EndaceProbe
IronNet Collective Defense Platform
Joe Sandbox
Malcolm
Observe
Onum
Palo Alto ATP
Panaseer
Picus
Project Ares
Security Onion
Tenzir
ThreatQ
Wraith
cPacket
Claim Snort and update features and information
Claim Snort and update features and information
Claim Zeek and update features and information
Claim Zeek and update features and information