Open NDR combines dynamic network detections, AI, intrusion detection (IDS), network security monitoring (NSM), static file analysis, and packet capture (PCAP) in a single security tool that’s powered by proprietary and open-source technologies Zeek® and Suricata®, and YARA.
Zeek is the gold standard in open source network security monitoring with more than 10,000 deployments worldwide.
Corelight’s platform fuses alerts and packets with rich, interconnected context to create a single source of truth that attackers cannot alter.
Our open core approach and broad integration strategy allows you to easily integrate Corelight data into existing SIEM, XDR, and SOAR solutions.
COMPARE OPEN TO CLOSED NDR
This free ESG white paper explains the reasons to consider an open-source solution.