- Home
- Network Security
- Network Detection and Response
- Corelight Zeek
Corelight Zeek
Open source network security monitoring tool for traffic analysis

Corelight Zeek
Open source network security monitoring tool for traffic analysis
Corelight Zeek Description
Zeek is an open source network security monitoring tool originally developed in the 1990s under the name "Bro" and renamed in 2018. The tool operates as a passive network analysis system that runs on sensors (hardware, software, virtual, or cloud-based) to analyze network traffic in real-time. Zeek functions differently from active defense mechanisms like firewalls or intrusion prevention systems. It captures and analyzes network activity to generate high-fidelity transaction logs, file contents, and customizable data outputs. The tool provides visibility into network communications by tracking network events and producing detailed log files. The platform is designed for manual review by security analysts or integration into SIEM systems for centralized security monitoring. Zeek offers extensibility through community-contributed packages and can be customized to meet specific monitoring requirements. The project has been federally funded for over 20 years and is currently supported by Corelight. Zeek has a deployment base of over 10,000 installations worldwide and maintains an active open source community that contributes to its development through code, documentation, and feature enhancements.
Corelight Zeek FAQ
Common questions about Corelight Zeek including features, pricing, alternatives, and user reviews.
Corelight Zeek is Open source network security monitoring tool for traffic analysis developed by Zeek. It is a Network Security solution designed to help security teams with Bro, Community Driven, Log Analysis.
FEATURED
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
VPN service providing encrypted internet connections and privacy protection
Fractional CISO services for B2B companies to build security programs
Stay Updated with Mandos Brief
Get the latest cybersecurity updates in your inbox
TRENDING CATEGORIES
POPULAR
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
Real-time OSINT monitoring for leaked credentials, data, and infrastructure