Zeek Newsletter - Issue 44 - October 2024

Welcome to the Zeek Newsletter.


In this Issue:

  • TL;DR
  • Development Updates
  • Zeek in the Community
  • Zeek in the Enterprise
  • Friends of Zeek
  • Upcoming Events
  • Zeek Package Updates
  • Get Involved

TL;DR

Zeek webinars continue. See Upcoming Events for details.

UPDATE: Mark your calendars! The Zeek Project is organizing a two-day Zeek community workshop in Munich, Germany, on February 26th & 27th, 2025 . We’ll have a mix of presentations and training sessions (Zeek & Spicy), with several Zeek team members on site. Attendance will be free of charge. We’ll share more details soon, including how to register. Stay tuned!


Development Updates

Tim released Zeek versions 6.0.8 and 7.0.3. These are bugfix and security releases.

https://zeek.org/get-zeek

https://download.zeek.org/zeek-6.0.8.tar.gz

https://download.zeek.org/zeek-7.0.3.tar.gz

See the release notes for details of the addressed bugs and security issues:

https://github.com/zeek/zeek/releases/tag/v6.0.8

https://github.com/zeek/zeek/releases/tag/v7.0.3

Binary packages for the new releases will also be available shortly:

https://github.com/zeek/zeek/wiki/Binary-Packages

With the arrival of 7.0, the 6.2 feature release series is now unmaintained. There will be no other 6.2 releases. The 6.0 long term support (LTS) series will continue to get patches until 7.1 is released in approximately months. Users running 6.2 should upgrade to 7.0.

For more information on release cadence, see:

https://github.com/zeek/zeek/wiki/Release-Cadence


Zeek in the Community

Seth published a new version of Malcolm. Please see the project site for details:

https://malcolm.fyi/


Zeek in the Enterprise

The recording of the 16 October webinar, Zeek@Meta: Scale, Log Enrichment and Detections, is live here:

https://youtube.com/live/QgLkJ_J2pp4

The recording of the 30 October webinar, Automated Zeek Builds and Adventures with the Management Framework, is live here:

https://youtube.com/live/TiwGcxpu4hg


Friends of Zeek

The Suricata project released version 7.0.7. Visit their site for details:

https://suricata.io/download/


Upcoming Events

The next Zeek webinar, How Zeek Helps Secure Open Science by Aaron J. Scantlin, will take place Wednesday 6 November at 1 pm ET. Register for free here:

https://us06web.zoom.us/webinar/register/WN_RaVh0OdcRnG2EzhLNFiz7Q

We will host another Zeek webinar, What’s in a Name – Hiding in Plain Sight by Brian Olson, on Wednesday 13 November at 1 pm ET. Register for free here:

https://us06web.zoom.us/webinar/register/WN_Hh0wmjsZR7yEIkVzybmhXQ

We will host another Zeek webinar, Parsnip: Lowering the Barrier of Entry for Parser Development, by Melanie Pierce, on Wednesday 20 November at 1 pm ET. Register for free here:

https://us06web.zoom.us/webinar/register/WN_B4eYpXi8SEeC_EYzbn1ARQ

The next Training Group Call is 8 November at 12 noon ET. Here is the Zoom link:

https://ESnet.zoom.us/j/6445948648

Meeting ID: 644 594 8648

Passcode: Rockon!

The next Zeek Community Call is 4 December at 1 pm ET. There is no need to register. Here is the Zoom link:

https://us06web.zoom.us/j/99882457331?pwd=WVZLRGtpbmx1V2FqSnlRT1FLRC9lQT09


Zeek Package Updates

Changes to packages are available via this search:

https://github.com/zeek/packages/pulls?q=is%3Apr+is%3Aclosed

The https://packages.zeek.org site reported the last 5 updates as of 2 June:

11/4/24, 4:14 AM shodan-zeek

10/30/24, 4:13 PM icannTLD

10/25/24, 2:16 PM ja4

10/25/24, 12:23 PM cve-2022-22954

10/23/24, 2:39 PM ssl-extensions


Get Involved

If you have any comments or material for the newsletter please email news@zeek.org or join the #news Slack channel.

https://zeekorg.slack.com

Here is an invitation to the Slack channel:

https://join.slack.com/t/zeekorg/shared_invite/zt-12z1pjy93-zuVGuT1BF~yUJJvERxhp7g

Stay up to date by joining the Zeek Discourse:

https://community.zeek.org

Subscribe to our YouTube channel:

https://youtube.com/c/Zeekurity

Follow us on Mastodon:

https://infosec.exchange/@zeek

The old mailing list archives now redirect to this site:

https://community.zeek.org/archives/list/zeek@lists.zeek.org/

If you’d like to read the Leadership Team meeting notes, they are here:

https://github.com/zeek/zeek/wiki/LT-Meeting-Notes

Follow us on LinkedIn:

https://www.linkedin.com/company/zeekurity

To search LinkedIn for jobs mentioning Zeek skills, use this query:

https://www.linkedin.com/jobs/search/?keywords=zeek

See you next time!