Zeek Newsletter - Issue 34 - November-December 2023

Welcome to the Zeek Newsletter.


In this Issue:

  • TL;DR
  • Development Updates
  • Zeek in the Community
  • Zeek in the Enterprise
  • Upcoming Events
  • Zeek Package Updates
  • Get Involved

TL;DR

On the surface, it’s been a quiet six weeks. Behind the scenes, Zeek project developers continue to work on the code base. The Leadership Team is busy planning for 2024 as well.


Development Updates

We have not published any new releases since the last newsletter. We hear that developers have been looking at Spicy performance and Zeek Agent. Expect news on development in the new year.


Zeek in the Community

We are considering holding another in-person ZeekWeek event in 2024. Stay tuned for details. Thank you to those who responded to our polls on social media.


Zeek in the Enterprise

The Corelight blog featured how a subset of Zeek logs map to the MITRE Attack framework:

https://corelight.com/blog/confronting-initial-access-techniques


Upcoming Events

The next Zeek Community Call is 3 Jan at 1 pm ET. There is no need to register. Here is the Zoom link:

https://us06web.zoom.us/j/99882457331?pwd=WVZLRGtpbmx1V2FqSnlRT1FLRC9lQT09


Zeek Package Updates

Changes to packages are available via this search:

https://github.com/zeek/packages/pulls?q=is%3Apr+is%3Aclosed

The https://packages.zeek.org site reported the last 5 updates as of 2 June:

12/15/23, 4:14 AM shodan-zeek

12/14/23, 7:01 PM Zeek-Pcap-Features-Extractor

12/13/23, 2:55 PM domain-tld

12/11/23, 6:39 PM zeekjs

12/11/23, 4:05 PM zeek-agent-v2


Get Involved

If you have any comments or material for the newsletter please email news@zeek.org or join the #news Slack channel.

https://zeekorg.slack.com

The Slack channel has been active during the past month. Here is an invitation link:

https://join.slack.com/t/zeekorg/shared_invite/zt-12z1pjy93-zuVGuT1BF~yUJJvERxhp7g

Stay up to date by joining the Zeek Discourse:

https://community.zeek.org

Subscribe to our YouTube channel:

https://youtube.com/c/Zeekurity

Follow us on Twitter:

https://twitter.com/Zeekurity

Follow us on Mastodon:

https://infosec.exchange/@zeek

The old mailing list archives now redirect to this site:

https://community.zeek.org/archives/list/zeek@lists.zeek.org/

If you’d like to read the Leadership Team meeting notes, they are here:

https://github.com/zeek/zeek/wiki/LT-Meeting-Notes

Follow us on LinkedIn:

https://www.linkedin.com/company/zeekurity

To search LinkedIn for jobs mentioning Zeek skills, use this query:

https://www.linkedin.com/jobs/search/?keywords=zeek

See you next time!