RSAC 2025 Recap

Endace Highlights and Resources

LP Eye Mobile Banner

Below you’ll find brochures, solution briefs, and videos that explain how integrating Endace’s award-winning, Always-On Packet Capture delivers unparalleled visibility into threats and issues across your On-Prem, Private, and Public Cloud networks.

We’ve also included insights, trends, and stats gathered from the SOC at RSAC 2025—offering a unique behind-the-scenes look at what today’s threat landscape really looks like in action.

Endace's Open, Scalable EndaceProbe Packet Capture Platform

Watch how Endace's Always-On Packet Capture helps you

  • Streamline investigations so you can respond faster and more accurately to security threats
  • Access definitive, packet-level evidence that enables conclusive investigation and resolution
  • Integrate forensic evidence directly into your security and performance monitoring tools
  • Deploy and host your chosen network security tools on a common hardware platform.

Full Hybrid Cloud Visibility

Introducing_Endace_Brochure_Cover

The EndaceProbe’s always-on, hybrid cloud packet capture gives SecOps and NetOps teams access to definitive packet-level forensic evidence.

With weeks or months of critical evidence at their fingertips, teams can quickly and accurately investigate issues, turbocharging their ability to respond to threats at pace.

Download the brochure for an overview of our products and how they work.

EndaceProbe: Scalable, Always-On Packet Capture for On-Prem, Private and Public Cloud

EndaceProbe: Scalable Always-On, Hybrid Cloud Packet Capture

EndaceProbe gives you 100% accurate, always-on packet capture across your entire network.

Check out our range of EndaceProbe Appliances for on-premise networks, and virtual EndaceProbes for private and public cloud deployments.

Rapid, search and data-mining from a central console and a powerful API gives you complete visibility into every activity across your hybrid cloud network.

Meet our Partners

Get the complete picture with full packet capture integrated into all your tools and workflows.

Watch the demos to see how integrating Always-On packet capture into tools including Cisco Secure Analytics (Stealthwatch), Cisco Secure Firewall Threat Defense (Firepower), Splunk SIEM and Splunk SOAR enables SecOps and NetOps teams to investigate and respond to issues faster, and more accurately.

Why Packet Capture is Important for Zero Trust

Endace and Zero Trust

Find out why having access to Always-On packet capture can be the secret to effective Zero Trust deployments and watch the interview with Endace VP Product, Cary Wright.

Closer NetOps and SecOps Collaboration

Introducing_Endace_Brochure_Cover

Discover how the traditionally divergent missions of network and security teams are converging, fostering increased collaboration and innovation. According to the latest research by Enterprise Management Associates (EMA), 84% of enterprises are experiencing a positive shift in the partnership between these essential teams.

Scalable Packet Capture in the Cloud

Introducing_Endace_Brochure_Cover

The rapid growth of cloud vulnerabilities, hijacked cloud credentials, APTs targeting cloud, and lack of network layer visibility in cloud has made one thing clear: recorded network packet data is just as essential in the cloud as it is in physical networks.

Watch the video to learn more.

REMOVE THIS SECTION

Lorem Ipsum Dolor Sit Amet

Introducing_Endace_Brochure_Cover

Combining Cisco® Secure Firewall Threat Defense or Cisco Stealthwatch® with EndaceProbe’s always-on, hybrid cloud packet capture gives SecOps and NetOps teams access to definitive packet-level forensic evidence.

With weeks or months of critical evidence at their fingertips, teams can quickly and accurately investigate issues, turbocharging their ability to respond to threats at pace.

Download the brochure for an overview of our products.

Scalable Packet Capture in the Cloud

Introducing_Endace_Brochure_Cover

The rapid growth of cloud vulnerabilities, hijacked cloud credentials, APTs targeting cloud, and lack of network layer visibility in cloud has made one thing clear: recorded network packet data is just as essential in the cloud as it is in physical networks.

Watch the video to learn more.

Be in to win a PS5!

Win a PS5

Schedule a demo before June 30th and be in to win!

Endace’s always-on, hybrid cloud packet capture brings clarity to every network activity from a central console. Give all your teams and tools access to a single source of truth. Integrate Endace's 100% accurate, Always-On Packet with all your security tools for evidence at your fingertips.

Give us 30 minutes to show you how Endace provides the world's most scalable, full Packet Capture Platform to provide deep visibility into your hybrid cloud environments.

 

Endace in the SOC at RSAC 2025: Highlights

RSAC Special Briefing at the SoC

Endace partnered with Cisco to monitor live traffic across the Moscone wireless network as part of the SOC at RSAC 2025 ®. The data we captured revealed just how active and complex event traffic can be:          

  • 36 TB of packet data recorded        
  • 45 billion packets captured (up from 19B in 2024)   
  • 3.4 Gbps peak bandwidth (up from 2.2 Gbps in 2024)         
  • 309k files extracted and 27k analyzed
  • 930 million logs captured   
  • Unencrypted traffic increased from 20% in 2024 to 26% in 2025
  • 2825 clear text usernames/passwords 

There were some fascinating insights from running the SOC. From the surprising increase in unencrypted traffic, to the substantial growth in the volume of recorded data, the changes revealed just how dynamic and complex modern network environments have become.

What was clear, was the incredible value of having Always-On Packet Capture able to record every packet and deliver complete, real-time visibility into threats, performance issues, and anomalous behaviour across the RSAC network. All tightly integrated with Cisco and Splunk security tools.

A full report of the findings will be available in late summer and we will send you a copy.


Book a demo to see how Endace could deliver this level of visibility in your environment.

Turbocharging Cisco and Splunk with Integrated Packet Capture

Combining Cisco® Secure Firewall Threat Defense (FTD), Secure Analytics, Splunk® SIEM and SOAR with EndaceProbe’s Always-On, hybrid cloud packet capture gives SecOps and NetOps teams one-click access to definitive packet-level forensic evidence from inside their Cisco and Splunk solutions.

Put evidence at your fingertips from the tools you use everyday. Watch the demo videos and download the solution briefs.

Cisco_FTD Cisco_SW Splunk SIEM Splunk SOAR