compare
Graylog vs Security Onion
The same facts for both, read from GitHub every night, and the relation a person reviewed.
| Fact | Graylog | Security Onion |
|---|---|---|
| Language | Java | Shell |
| Licence | Other | Other |
| Stars | 8.2k | 4.9k |
| Latest | 7.1.9 | 3.3.0-20260911 |
| Last push | 2026-10-06 | 2026-10-06 |
| Release cadence | too few releases | about 24 days between releases |
| Active contributors | 29+ commit authors on the default branch in the last 90 days | 8 commit authors on the default branch in the last 90 days |
| Flags | none | none |
How they relate
Both replace Splunk. Alternatives to Splunk →
Full replacementGraylogLog collection, search, dashboards and alerts, with its own query syntax instead of SPL.
PartialSecurity OnionNetwork and host security monitoring with alerting, hunting and case management, not general log analytics.
Graylog
This repository publishes tags, not GitHub releases.
Security Onion
- 3.3.0-202609112026-09-11Add x86-64-v3 CPU pre-flight check to soup
- 3.3.0-202609082026-09-08Bump version from 3.2.0 to 3.3.0
- 3.2.0-202607292026-07-29Bump version from 3.1.0 to 3.2.0
- 3.1.0-202605282026-05-28Add version number to HOTFIX file
- 3.1.0-202605212026-05-21Version Bump
Graylog
unsigned The latest release, 7.1.9, carries no signature GitHub could verify.
Loading the security report
Security Onion
✓ signed The latest release, 3.3.0-20260911, carries a signature GitHub verified.
Loading the security report