Gravwell Resources
Learn about everything from customer success stories, product info, to viewpoints from
the core team.
Blog
Not everyone is comfortable handing over the keys to their cybersecurity program to agents, and one reason is that many SIEM AI capabilities are still surface-deep. They draw conclusions solely from limited, preassembled context such as alerts, cases, and preconfigured integrations.
All
Windows DNS threat hunting with Sysmon and Gravwell
Benchmarking Gravwell's Hybrid Indexing
Monitoring Vehicle CANBus Activity with Gravwell
New Gravwell Feature: Introducing Autoextractors
Fighting social media propaganda
Announcing the new Gravwell HTTP Ingester
Super Computing 2018: A Threat Hunting Case Study
DOCUMENTATION
All Gravwell documentation is open to everyone.
If you’re just starting out with Gravwell, we recommend reading the Quick Start first, then moving on to the Search pipeline documentation to learn more.








