Software Alternatives, Accelerators & Startups

Zeek VS tcpdump

Compare Zeek VS tcpdump and see what are their differences

Zeek logo Zeek

Buy and sell gift vouchers

tcpdump logo tcpdump

tcpdump is a common packet analyzer that runs under the command line.
  • Zeek Landing page
    Landing page //
    2023-05-21
  • tcpdump Landing page
    Landing page //
    2023-04-27

Zeek videos

Zeek in Action, Video 1, Suspected Malware Compromise

More videos:

  • Review - Zeek Bar Review
  • Tutorial - 12 Days of Defense - Day 2: How to use Zeek for PCAP Analysis

tcpdump videos

Tcpdump - Protocol Review 5 (TCP)

More videos:

  • Review - Tcpdump - Protocol Review 3 (UDP)
  • Review - Tcpdump - Protocol Review 4 (DNS) - Draft

Category Popularity

0-100% (relative to Zeek and tcpdump)
Cyber Security
100 100%
0% 0
Monitoring Tools
0 0%
100% 100
Security & Privacy
100 100%
0% 0
Log Management
0 0%
100% 100

User comments

Share your experience with using Zeek and tcpdump. For example, how are they different and which one is better?
Log in or Post with

Reviews

These are some of the external sources and on-site user reviews we've used to compare Zeek and tcpdump

Zeek Reviews

We have no reviews of Zeek yet.
Be the first one to post

tcpdump Reviews

6 Best Wireshark Alternatives for Windows and macOS
The quickness that you can have with tcpdump over Wireshark is awesome. It is one of those tools that many network administrators prefer whenever they need to take a look at the actual network packets that are being transmitted. The Tcpdump is not as feature rich as Wireshark but the output of its packet dump can be used as input by other programs. Moreover, It can be used...
Source: techwiser.com

What are some alternatives?

When comparing Zeek and tcpdump, you can also consider the following products

SonicWall Capture Advanced Threat Protection - SonicWall Capture Advanced Threat Protection is a new cloud-based sandbox service that helps to provide continuous security against complex threats by leveraging intelligence and automation to proactively protect organizations from advanced attacks,…

Wireshark - Wireshark is a network protocol analyzer for Unix and Windows. It lets you capture and interactively browse the traffic running on a computer network.

Suricata - Suricata is a high performance Network IDS, IPS and Network Security Monitoring engine.

netcat - Netcat is a featured networking utility which reads and writes data across network connections...

Maltrail - Malicious traffic detection system. Contribute to stamparm/maltrail development by creating an account on GitHub.

Ettercap - Ettercap is a suite for man in the middle attacks on LAN.