Gravwell Resources
Learn about everything from customer success stories, product info, to viewpoints from
the core team.
Blog
Today, we’re excited to announce a new and improved Logbot, Gravwell’s AI-powered security data assistant, as part of Gravwell v5.9. The release adds deeper platform integration, faster natural-language investigation workflows, instant playbook and automation generation, and bidirectional AI integrations through MCP. These upgrades bring AI-driven assistance directly into daily workflows, helping practitioners get to answers faster and do more with complex security data.
All
Add Threat Hunting to your SIEM with Gravwell
HEC Support: Gravwell's HTTP Ingester for Splunk Compatibility
Practical Application of MITRE ATT&CK
What's in a Sysmon Event Pt. 2 - Network Connections
What's in a Sysmon Event Pt. 1 - Process creation
A personal short story about broken pricing models
Windows DNS threat hunting with Sysmon and Gravwell
Monitoring Vehicle CANBus Activity with Gravwell
DOCUMENTATION
All Gravwell documentation is open to everyone.
If you’re just starting out with Gravwell, we recommend reading the Quick Start first, then moving on to the Search pipeline documentation to learn more.







