Zeek Newsletter - Issue 25 - January 2023

Welcome to the Zeek Newsletter.


In this Issue:

  • TL;DR
  • Development Updates
  • Zeek in the Community
  • Zeek in the Enterprise
  • Upcoming Events
  • Zeek Package Updates
  • Get Involved

TL;DR

Welcome to 2023. This month’s newsletter is mostly about development updates, but we also want to know what you think about Zeek!

We’re running a survey until 10 February – no login or identifiers required unless you want to talk with us directly. Share your thoughts on how you use Zeek to defend your environment or conduct network research:

https://zeek.org/survey


Development Updates

On 5 January, Arne Welzel announced that Krisan Timur had transferred control of the “zeek” Docker Hub account to the Zeek project. Tags from the old zeekurity/zeek account have been re-pushed to zeek/zeek and the latest documentation is now updated. We plan to retire the “zeekurity” account in the future and recommend changing to “zeek” if you’re consuming these images.

On 9 January, Tim Wojtulewicz announced the release of Zeek 5.0.5, a bug fix release. Please update Zeek as soon as possible.

See the release notes for details:

https://github.com/zeek/zeek/releases/tag/v5.0.5

Binary packages for the new releases are available:

https://github.com/zeek/zeek/wiki/Binary-Packages

Updated source code is available:

https://zeek.org/get-zeek

https://download.zeek.org/zeek-5.0.5.tar.gz

On 20 January, Benjamin Bannier announced the release of Spicy 1.5.3. This is a bug fix release for the 1.5 Spicy release series we maintain for long-term support in Zeek LTS.

See the CHANGES file for a detailed list of changes.

https://github.com/zeek/spicy/blob/v1.5.3/CHANGES

On 25 January, Benjamin Bannier announced the release of Spicy 1.6.1. See the NEWS file for a high-level summary, or the CHANGES file for a detailed list of changes.

https://github.com/zeek/spicy/blob/v1.6.1/NEWS.rst

https://github.com/zeek/spicy/blob/v1.6.1/CHANGES


Zeek in the Community

Please visit our survey and let us know what you think about the Zeek project:

https://zeek.org/survey

There are 10 days left at the time of publication.

On 18 January, our friends at the Wireshark Foundation released Wireshark 4.0.3. For more information, please read their release notes:

https://www.wireshark.org/docs/relnotes/wireshark-4.0.3.html

On 31 January, our friends at the Open Information Security Foundation released Suricata 6.0.10. For more information, please visit their announcements page:

https://forum.suricata.io/t/suricata-6-0-10-released/3175

Thanks to everyone subscribed to our YouTube channel, we’ve hit the 4,000 mark, with 250k views! Check us out here:

https://youtube.com/c/zeekurity


Zeek in the Enterprise

We continue to provide experimental support for Windows. The Zeek 5.2 release, scheduled for early 2023, will be the first to formally feature Windows support. Please consider testing the new code by compiling it on Windows:

https://docs.zeek.org/en/master/install.html#building-from-source


Upcoming Events

All ZeekWeek 2022 videos are on YouTube.

The easiest way to stay informed on this content is to subscribe to the Zeek YouTube channel:

<https://youtube.com/c/Zeekurity>

The following playlist contains all 19 videos:

https://www.youtube.com/playlist?list=PL2EYTX8UVCMhWO6m_uanhXLrSPrCMxO74


Zeek Package Updates

Changes to packages are available via this search:

https://github.com/zeek/packages/pulls?q=is%3Apr+is%3Aclosed

The https://packages.zeek.org site reported the last 5 updates as of 3 January:

1/31/23, 4:12 AM shodan-zeek

1/30/23, 4:27 PM spicy-plugin

1/30/23, 3:32 PM spicy-tftp

1/24/23, 11:36 PM icsnpp-opcua-binary

1/19/23, 8:42 AM zeekjs


Get Involved

If you have any comments or material for the newsletter please email news@zeek.org or join the #news Slack channel.

https://zeekorg.slack.com

The Slack channel has been very active during the past month. Here is an invitation link:

https://join.slack.com/t/zeekorg/shared_invite/zt-12z1pjy93-zuVGuT1BF~yUJJvERxhp7g

Stay up to date by joining the Zeek Discourse:

https://community.zeek.org

Subscribe to our YouTube channel:

https://youtube.com/c/Zeekurity

Follow us on Twitter:

https://twitter.com/Zeekurity

Follow us on Mastodon:

https://infosec.exchange/@zeek

The old mailing list archives now redirect to this site:

https://community.zeek.org/archives/list/zeek@lists.zeek.org/

If you’d like to read the Leadership Team meeting notes, they are here:

https://github.com/zeek/zeek/wiki/LT-Meeting-Notes

Follow us on LinkedIn:

https://www.linkedin.com/company/zeekurity

To search LinkedIn for jobs mentioning Zeek skills, use this query:

<https://www.linkedin.com/jobs/search/?keywords=zeek>

See you next time!