Security Onion 🧅​

2.1K Followers
0 Following
716 Posts

Peel back the layers of your network and make your adversaries cry!

Free platform for threat hunting, enterprise security monitoring, and log management.

Questions: http://securityonion.net/discuss

Websitehttps://securityonion.net
Bloghttps://blog.securityonion.net
Docshttps://securityonion.net/docs
YouTubehttps://securityonion.net/youtube
Traininghttps://securityonionsolutions.com/training
Applianceshttps://securityonionsolutions.com/hardware
Good morning Charm City! If you're at #AFCEATechnet, come to booth 3242 to see the legendary Michael Stokes and learn about using Security Onion to peel back the layers of your network.
It's time for O's, Bohs, and SO -- Security Onion Solutions is coming to Baltimore! Looking forward to seeing all our friends at #AFCEATechnet in Charm City this week, come see us at booth 3242 to find out how we can help you peel back the layers of your network and make the bad guys cry.

Security Onion 3.1.0 Hotfix 20260528 Now Available!

We've released a hotfix to Security Onion 3.1.0 to address issues for deployments with Heavy Nodes or custom Logstash pipelines - please check out this blog post for more information.

https://blog.securityonion.net/2026/05/security-onion-310-hotfix-20260528-now.html

Security Onion 3.1.0 Hotfix 20260528 Now Available!

Last week, we released Security Onion 3.1.0: https://blog.securityonion.net/2026/05/security-onion-310-now-available-with.html Today we are ...

Our printed documentation book has been updated for Security Onion 3.1 and is available from Amazon now!

For those who don't know, we offer a softcover copy of our documentation for the current version of Security Onion via Amazon. All proceeds go to the Rural Technology Fund, and the book comes with a 20% off discount code for our on-demand training and the Security Onion Certified Professsional (SOCP) certification exam.

https://blog.securityonion.net/2026/05/security-onion-documentation-printed.html

IT'S TIME FOR SOUP!

Security Onion 3.1.0 is now available and includes new features, updated components, and many quality-of-life improvements!

Get all the details on our blog:

https://blog.securityonion.net/2026/05/security-onion-310-now-available-with.html

Security Onion 3.1.0 Now Available with Elastic 9.3.3, Suricata 8.0.5, Zeek 8.0.8, and much more!

Security Onion 3.1.0 is now available and includes new features, updated components, and many quality of life improvements! For a full scree...

DID YOU KNOW?

Starting in version 2.4.170, Security Onion Pro users have access to a new type of Security Onion node, the Hypervisor Node. The Hypervisor node uses Linux-native virtualization libraries to run multiple independent SO nodes on a single piece of hardware -- if you have a powerful server that's being underutilized, this allows you to spin up additional nodes on it from inside the Security Onion Console, with no reliance on other virtualization platforms.

More information here: https://docs.securityonion.net/en/2.4/hypervisor.html

Hypervisor — Security Onion Documentation 2.4 documentation

SAVE THE DATE!

We will once again be hosting the Security Onion Conference in beautiful Augusta, GA on October 23rd. Registration will open on August 7.

Today, we are opening our Call For Presenters (CFP) for the conference. Have you developed a unique use case for Security Onion? Integrated it with other tools? Deployed it in an exciting new environment? We want to hear all about it!

https://blog.securityonion.net/2026/05/security-onion-conference-2026-save.html

Security Onion Conference 2026 Save the Date and CFP

This year's Security Onion Conference is currently scheduled to be held in person in Augusta, GA on Friday, October 23, 2026. Registration w...

ICYMI: Last week we had a webinar with our friends from Garland Technology on using their TAPs and packet brokers along with Security Onion for a holistic view of what's happening on your network. Check it out!

https://www.youtube.com/watch?v=VvBlag1aEtA

See Everything, Miss Nothing Enhancing Threat Detection with Complete Packet Visibility

YouTube

THURSDAY: Join our Senior Engineer Matthew Gracie, along with Chris Bihary and our friends from Garland Technology, for the webinar "See Everything, Miss Nothing: Enhancing Threat Detection with Complete Packet Visibility and Full Packet Capture". Come learn how Garland TAPs and packet brokers can feed Security Onion to give you full visibility into your network traffic.

Register below!

https://events.gcc.teams.microsoft.com/event/1478fd6a-f493-4cd2-ab4c-12d4d604f942@7f9f4943-49f1-41ac-a0ea-5c9d202f2c32

Microsoft Virtual Events Powered by Teams

Microsoft Virtual Events Powered by Teams

DID YOU KNOW?

Security Onion can be configured to automatically perform reverse DNS lookups to provide hostname information in the SOC interface. Just turn on the "enableReverseLookup" function in Configuration and enjoy!