Quick Start
Configuration
Ingesters
Searching with Gravwell
Automation
API
More
Release notes
Quick Start
Configuration
Ingesters
Searching with Gravwell
Automation
API
More
Release notes
Ready to experience the power of Gravwell? Gravwell Community Edition (CE) is available for free.
LEARN MORE
All Lessons
Skillset Training
Detection Engineering
Detection Engineering: Overview
DE Part 1: Pivoting
DE Part 2: Automating Detections & Notifications
SOC: Orienting An Analyst
Part 0: Introduction - Video 1
Part 1: Understanding A Query - Video 2
Part 2: Operating on Enumerated Fields - Video 3
Part 3: Interacting with Enumerated Fields - Video 4
Part 4: A High Level View - Video 5
Part 5: Advanced Operating on Enumerated Fields - Video 6
Part 6: Finding The Victims - Video 7
Part 7: Hunting For A Phish - Video 8
Triage
Triage: Introduction
Triage: A Lead
Triage: Honing In
Triage: Who's Who
Triage: Risky Click
Triage: Execute!
Transitioning: Triage to Investigation
Transitioning: Triage to Investigation - Introduction
Transitioning: Triage to Investigation - Back In Action
Transitioning: Triage to Investigation - Well That’s New
Transitioning: Triage to Investigation - Campaigns
Transitioning: Triage to Investigation - Sweep
Platform basics
FLOWs - How Payloads Move Through Nodes
Flows - SOAR for Log Management
How To: Auto Extractors (AX)
How To: Macros
How To: Actionables
How To: Systems Overview (new features)
How To: Rapid Deployment - Installation to alerts in 3 mins
How-To: Compound Queries & Non-Temporal Joins
Bootcamp course
Bootcamp - Lesson 01
Lessons
/
Platform Basics
/
How To: Actionables
How To: Actionables
Detection Engineering: Overview
DE Part 1: Pivoting
DE Part 2: Automating Detections & Notifications
Part 0: Introduction - Video 1
Part 1: Understanding A Query - Video 2
Part 2: Operating on Enumerated Fields - Video 3
Part 3: Interacting with Enumerated Fields - Video 4
Part 4: A High Level View - Video 5
Part 5: Advanced Operating on Enumerated Fields - Video 6
Part 6: Finding The Victims - Video 7
Part 7: Hunting For A Phish - Video 8
Triage: Introduction
Triage: A Lead
Triage: Honing In
Triage: Who's Who
Triage: Risky Click
Triage: Execute!
Transitioning: Triage to Investigation - Introduction
Transitioning: Triage to Investigation - Back In Action
Transitioning: Triage to Investigation - Well That’s New
Transitioning: Triage to Investigation - Campaigns
Transitioning: Triage to Investigation - Sweep
FLOWs - How Payloads Move Through Nodes
Flows - SOAR for Log Management
How To: Auto Extractors (AX)
How To: Macros
How To: Actionables
How To: Systems Overview (new features)
How To: Rapid Deployment - Installation to alerts in 3 mins
How-To: Compound Queries & Non-Temporal Joins
Bootcamp - Lesson 01
null
TOP