# ExtraHop Reveal(x) vs Zeek

| Attribute | ExtraHop Reveal(x) | Zeek |
|---|---|---|
| **Vioscale score** | 50.4 (13% (low)) | 52.4 (24% (low)) |
| activity.commits_last_30d | - | 100 |
| adoption.dependent_repos | - | 0 |
| adoption.github_stars | - | 7,907 |
| deployment.options | `{"cloud":true,"hybrid":true,"self_hosted":true}` | `{"cloud":true,"self_hosted":true}` |
| description.long | A network detection and response platform that analyzes encrypted and unencrypted network traffic in real-time, detects advanced threats and lateral movement, and provides network performance monitoring. Deployed as cloud or self-hosted infrastructure for hybrid, on-premises, and air-gapped environments. | A passive network monitoring tool that analyzes traffic on sensors to generate detailed logs and file data for security investigation and integration with SIEM platforms, without interfering with network operations. |
| integrations.count | 28 | 2 |
| integrations.list | `[{"name":"CrowdStrike Falcon"},{"name":"Microsoft Sentinel"},{"name":"Splunk"},{"name":"Google Cloud Platform"},{"name":"Google Security Operations"},{"name":"Cisco Meraki"},{"name":"Cisco ISE"},{"name":"Check Point Smart-1"},{"name":"IBM QRadar"},{"name":"Microsoft Defender for Endpoint"},{"name":"Red Hat Ansible"},{"name":"ServiceNow"},{"name":"Slack"},{"name":"Grafana"},{"name":"Netskope"},{"name":"Tines"},{"name":"Tenable"},{"name":"Red Canary"},{"name":"Symantec"},{"name":"Paessler PRTG"},{"name":"Netscaler"},{"name":"F5 iRules"},{"name":"FortiGate"},{"name":"HPE Aruba ClearPass"},{"name":"Microsoft Power BI"},{"name":"Microsoft Entra ID"},{"name":"Microsoft Teams"},{"name":"Kubernetes"}]` | `[{"name":"AWS Traffic Mirroring"},{"name":"Kafka"}]` |
| language.primary | - | C++ |
| market.availability | - | `{"primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` |
| platform.support | `{"web":true}` | - |
| pricing | - | `{"type":"open_source","summary":"Free and open source","sourceUrl":"https://zeek.org","retrievedAt":"2026-08-19T14:40:20.627Z"}` |
| pricing.model | commercial | commercial |
| pricing.price_level | - | free |
| release.cadence_days | - | 2 |
| release.history | - | `[{"url":"https://github.com/zeek/zeek/releases/tag/v9.0.0-rc1","date":"2026-08-21T20:24:47Z","type":"prerelease","version":"v9.0.0-rc1"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.2.2","date":"2026-08-19T17:51:40Z","type":"stable","version":"v8.2.2"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.10","date":"2026-08-19T17:50:34Z","type":"stable","version":"v8.0.10"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.2.1","date":"2026-07-10T20:04:31Z","type":"stable","version":"v8.2.1"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.9","date":"2026-07-10T20:04:48Z","type":"stable","version":"v8.0.9"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.2.0","date":"2026-05-12T19:14:11Z","type":"stable","version":"v8.2.0"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.8","date":"2026-05-12T19:14:56Z","type":"stable","version":"v8.0.8"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.1.2","date":"2026-04-20T16:26:51Z","type":"stable","version":"v8.1.2"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.7","date":"2026-04-20T16:25:30Z","type":"stable","version":"v8.0.7"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.1.1","date":"2026-01-29T19:43:34Z","type":"stable","version":"v8.1.1"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.6","date":"2026-01-29T19:44:35Z","type":"stable","version":"v8.0.6"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.5","date":"2026-01-29T19:43:49Z","type":"stable","version":"v8.0.5"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.1.0","date":"2025-12-15T19:17:27Z","type":"stable","version":"v8.1.0"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.4","date":"2025-11-05T18:19:02Z","type":"stable","version":"v8.0.4"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.3","date":"2025-10-15T18:04:48Z","type":"stable","version":"v8.0.3"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.2","date":"2025-10-13T16:21:13Z","type":"stable","version":"v8.0.2"},{"url":"https://github.com/zeek/zeek/releases/tag/v7.0.11","date":"2025-10-13T16:19:38Z","type":"stable","version":"v7.0.11"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.1","date":"2025-08-26T18:45:38Z","type":"stable","version":"v8.0.1"},{"url":"https://github.com/zeek/zeek/releases/tag/v7.0.10","date":"2025-08-26T18:43:29Z","type":"stable","version":"v7.0.10"},{"url":"https://github.com/zeek/zeek/releases/tag/v8.0.0","date":"2025-08-12T19:46:42Z","type":"stable","version":"v8.0.0"}]` |
| security.gdpr | yes | - |
| security.hipaa | yes | - |
| security.scorecard | - | 6.4 |
| security.soc2 | yes | - |
| security.vulnerabilities | - | `{"count":0,"source":"https://advisories.ecosyste.ms/api/v1/advisories?ecosystem=go&package_name=github.com%2Fzeek%2Fzeek&per_page=100","last_12m":0,"max_severity":null}` |

## Capabilities (Network Security)

| Capability | ExtraHop Reveal(x) | Zeek |
|---|:--:|:--:|
| **Capabilities** |  |  |
| Deployment model | - | - |
| Behavioral anomaly detection | - | - |
| Full packet pcap retention | - | - |
| Encrypted traffic metadata analysis | - | - |
| Active endpoint containment response | - | - |
| Host microsegmentation | - | - |
| Network access control 802 1x | - | - |
| EDR crowdstrike sentinelone integration | - | - |
| Iot ot device discovery | - | - |
| Fips 140 2 certification | - | - |
| SOC2 type ii | - | - |
| ISO 27001 | - | - |
| Pricing model | - | - |

*Source: Vioscale. Generated 2026-09-01T15:15:48.798Z. "-" = undocumented, not absent.*
