Software Alternatives & Reviews

tcpdump VS Zeek

Compare tcpdump VS Zeek and see what are their differences

tcpdump logo tcpdump

tcpdump is a common packet analyzer that runs under the command line.

Zeek logo Zeek

Buy and sell gift vouchers
  • tcpdump Landing page
    Landing page //
    2023-04-27
  • Zeek Landing page
    Landing page //
    2023-05-21

tcpdump videos

Tcpdump - Protocol Review 5 (TCP)

More videos:

  • Review - Tcpdump - Protocol Review 3 (UDP)
  • Review - Tcpdump - Protocol Review 4 (DNS) - Draft

Zeek videos

Zeek in Action, Video 1, Suspected Malware Compromise

More videos:

  • Review - Zeek Bar Review
  • Tutorial - 12 Days of Defense - Day 2: How to use Zeek for PCAP Analysis

Category Popularity

0-100% (relative to tcpdump and Zeek)
Monitoring Tools
100 100%
0% 0
Cyber Security
0 0%
100% 100
Log Management
100 100%
0% 0
Security & Privacy
0 0%
100% 100

User comments

Share your experience with using tcpdump and Zeek. For example, how are they different and which one is better?
Log in or Post with

Reviews

These are some of the external sources and on-site user reviews we've used to compare tcpdump and Zeek

tcpdump Reviews

6 Best Wireshark Alternatives for Windows and macOS
The quickness that you can have with tcpdump over Wireshark is awesome. It is one of those tools that many network administrators prefer whenever they need to take a look at the actual network packets that are being transmitted. The Tcpdump is not as feature rich as Wireshark but the output of its packet dump can be used as input by other programs. Moreover, It can be used...
Source: techwiser.com

Zeek Reviews

We have no reviews of Zeek yet.
Be the first one to post

What are some alternatives?

When comparing tcpdump and Zeek, you can also consider the following products

Wireshark - Wireshark is a network protocol analyzer for Unix and Windows. It lets you capture and interactively browse the traffic running on a computer network.

Suricata - Suricata is a high performance Network IDS, IPS and Network Security Monitoring engine.

netcat - Netcat is a featured networking utility which reads and writes data across network connections...

SonicWall Capture Advanced Threat Protection - SonicWall Capture Advanced Threat Protection is a new cloud-based sandbox service that helps to provide continuous security against complex threats by leveraging intelligence and automation to proactively protect organizations from advanced attacks,…

Ettercap - Ettercap is a suite for man in the middle attacks on LAN.

Maltrail - Malicious traffic detection system. Contribute to stamparm/maltrail development by creating an account on GitHub.