San Francisco, CA, USA
2017
  |  By Jack Coates and
Do more with less. That’s the mandate we’re all hearing. AI has fundamentally changed how we work. Modern AI workloads generate 10-100x more queries than humans ever could, pushing legacy architectures past performance limits. And the audacity of it all? Legacy logging vendors continue to raise costs without delivering meaningful innovation. IT and security teams are still forced to choose between speed and retention. Investigations are still slow. Data onboarding is still painful.
  |  By Ryan Conway and
Modern enterprises are generating more high-volume observability and security data than ever, which means the cost and complexity of getting analytics-ready data into Databricks are only growing. With the new Databricks Destination for Cribl Stream, organizations finally have a governed, scalable, and cost-efficient way to take full control of their data pipelines, accelerate AI-driven analytics, and unlock real business value from their Databricks investment.
  |  By Nick Heudecker
As AI agents move from copilots to autonomous systems, they’re generating and consuming data at unprecedented scale. The result is a new kind of infrastructure pressure — one that’s quietly reshaping how organizations think about data, cost, and control. Across IT, Security, and Observability, leaders are realizing a hard truth: too much data is too costly.
  |  By Glenn Block
In September, I wrote about how Cribl and Microsoft Fabric Real-Time Intelligence provide a powerful combination, unlocking new analytics capabilities for security and IT teams. I also said there was more to come… Today, Cribl is thrilled to announce a new Cribl Destination for Microsoft Fabric Real-Time Intelligence, marking another big step forward in our collaboration with Microsoft to make it much easier for Cribl customers to use Fabric.
  |  By Matthew Kelly
As Chief Legal Officer, I’ve personally navigated the complex, ever-shifting landscape where privacy compliance meets rapidly evolving technologies. Whether it’s the sweeping reach of a law protecting personal data in the EU, the specific demands of a law giving California residents more control over their personal information, or the critical protections of a law safeguarding sensitive patient health information in the U.S., one challenge remains.
  |  By Clint Sharp
At Cribl, we’ve talked a lot about epochs. A moment in time when there was a before and after. AI, and specifically agentic AI, is an epoch. The way we work is going to forever change. There have been many such events in our lifetimes: the PC, the Internet, and the smartphone. AI will change how we work forever. Prior to the PC, there were people whose jobs were literally titled “computer”.
  |  By Nicholas Filippi and
Investigations move fast. Data is messy. And today’s analysts are expected to connect the dots across massive datasets and various tools—while documenting every step and sharing results with stakeholders. What does that look like? A security investigation may involve 10 or more queries—each one filtering, transforming, and analyzing data from a different angle—duplicated across multiple browser tabs so nothing gets lost.
  |  By Felicia Dorng and
What happens when your data pipelines slow down, drop volume, or quietly change shape? Most monitoring tools won’t catch those shifts until it’s too late—when downstream systems are already impacted, dashboards are broken, or critical information is missing. That’s why we’re excited to introduce Cribl Insights, to give you real-time visibility into every part of your Cribl environment: data flows, operations, processing, user activity, configuration changes, and more.
  |  By Bill Emmett
Telemetry data is growing at an average of 29% a year — doubling costs every 18 months. That’s putting pressure on ITOps budgets, observability platforms, SecOps teams, and SIEM deployments alike. In this post, we’ll explore how unchecked data volumes, siloed tools, and aging architectures are creating a telemetry cost crunch that limits visibility, slows both troubleshooting and threat detection, and impacts business outcomes.
  |  By Dritan Bitincka
As a Co-founder and CPO at Cribl, I'm genuinely stoked that our new federal suite, Cribl.Cloud Government, has achieved an “In Process” designation under the Federal Risk and Authorization Management Program (FedRAMP). This isn’t any old milestone. We’re bringing all of Cribl’s kickass capabilities to government agencies, even those that require the strictest compliance and security standards. Because, who doesn’t love a good set of rules?
  |  By Cribl
In this demo, Nate Zemanek , Staff Solutions Engineer, shows how Cribl Search runs fast investigations. As an open data platform, Cribl Search lets you pull data from multiple sources and query everything from a single pane of glass. You’ll see how to run fast queries with the new lakehouse engine, search historical data with a federated approach, and bring everything together for full context. Then, use Notebooks to collaborate and share findings across teams to understand what happened—faster.
  |  By Cribl
In this episode, Leon runs through all the updates in Cribl release 2603, which includes a massive update to Cribl Search, the ability to detect PII and secrets in the background as part of Cribl Guard, and two cool enhancements to Cribl Packs - monitoring and enhanced routing. Try Cribl Now! Sandboxes let you get hands-on experience with Cribl without the fuss or friction.
  |  By Cribl
Security and compliance teams need to know exactly what sensitive data is flowing through their environments and where it’s going. ​​Because surprise PII is no one’s favorite kind of surprise. Meanwhile, upstream teams are shipping new apps, changing schemas, adding fields, and generally moving fast. However, you can only manage and protect the data you currently know of and expect. But sensitive data has a habit of showing up where no one expected it…
  |  By Cribl
Get a quick look at the new Cribl Search experience—built to help teams investigate faster, onboard data easily, and get answers from their logs without complex query languages. In this quick overview, we show how Cribl Search helps you move from raw data to insights in minutes: The result? Faster investigations, simpler workflows, and powerful AI-assisted analysis across your telemetry. Learn how the new Cribl Search makes exploring and analyzing data easier for everyone—from experienced analysts to teams just getting started.
  |  By Cribl
On release days, we wear teal, y'all! Check out the fun and exciting new features from Cribl releases on a monthly (:fingers-crossed:) basis. Here's what's new in Cribl 4.16.
  |  By Cribl
Get instant visibility into how data moves through your Cribl environment with Cribl Insights. In this demo, Product Manager Pavan Venkatesh walks through how Cribl Insights helps you understand system health, data flows, and how to set up alerts and notifications —so you can proactively troubleshoot faster and optimize resources to get max ROI.
  |  By Cribl
In this demo, Product Manager David Cavuto walks through how Cribl Notebooks helps security and IT teams investigate faster by combining live data, historical context, and interactive analysis — all in one place.
  |  By Cribl
Email is still mission-critical, but most teams have very little visibility into what’s actually happening behind the scenes. In this video, I give a quick walkthrough of an inbox intelligence dashboard built on Cribl Search. It shows email volume, delivery health, and unusual activity at a glance, without digging through raw logs unless of course you like doing that.
  |  By Cribl
Big alert. Old data. No time for a replay. In this video, learn how to run Sigma detections directly against object storage—S3, Azure Blob, or GCS—using Cribl Search. No rehydration, no re-ingest, no SIEM bill shock. Just click, run, and hunt across months or years of data with ready-to-use Sigma Packs.
  |  By Cribl
Ever run a SIEM search only to see nothing for your firewall logs? In this video, we show a smarter way to detect when log sources stop sending data using Cribl Lake, Cribl Search, and Cribl Stream. Learn how to track “last seen” times, build efficient aggregations, and get real-time alerts—without burning SIEM resources or storage.
  |  By Cribl
How do you get the data out of your infrastructure and applications in order to properly observe, monitor, and secure their running states while minimizing overlap, wasted resources, and cost? Many business folks need a broad category of tools in all their environments to solve challenges such as up and down monitoring, metrics, a time series database (TSDB), log analytics, event streaming, security information and event management (SIEM), user behavior analytics (UBA), and data lakes. The answer to the proposed question to solve these hurdles is using an observability pipeline.
  |  By Cribl
Observability allows you to understand the behavior of applications and infrastructure from the data they produce.
  |  By Cribl
Using Splunk for long-term storage can drive up costs and slow down searches, especially as data volumes increase and teams expand their use cases.
  |  By Cribl
The observability market is changing quickly. Rushing into a monolithic observability product limits your future options by locking you in to a single vendor.
  |  By Cribl
Traditional security tools struggle to adapt to the new world of cyber threats. To keep up with the growing number of daily threats, understaffed security teams need new cloud-delivered solutions and tactics focused on generating attack resolutions, consistently and repeatedly. Enter Exabeam. Exabeam powers security teams with analytics-driven insights to uncover, investigate, and resolve threats legacy tools may miss.

Route observability data where it has the most value. Slash costs, improve performance, and get the right data to the right destinations, in the right formats, at the right time.

Cribl is a company built to solve customer challenges and enable customer choice. Its solutions deliver innovative and customizable controls to route security and machine data where it has the most value. We call this an observability pipeline, and it helps slash costs, improve performance, and get the right data, to the right destinations, in the right formats, at the right time.

LogStream Gives You The Simplicity, Flexibility, and Control...

  • To Route Your Data: Send data to the most effective destinations including low-cost storage locations like S3 for long-term retention. Route data to the best tool for the job – or all the tools for the job – by translating and formatting data into any tooling schema you require. Let different departments choose different analytics environments without having to deploy new agents or forwarders.
  • To Reduce Your Data: Reduce as much as 50% of ingested log volume to control costs and improve system performance. Eliminate duplicate fields, null values, and any elements that provide little analytical value. Filter and screen events for dynamic sampling, or aggregate log data into metrics for massive volume reduction. Do all of this without worry: You can keep a full-fidelity copy in a low-cost destination and replay it back if needed.
  • To Collect More Data: LogStream is the best way to get multiple data formats into your analytics tools. Use the LogStream universal receiver to collect from any observability data source – and even to schedule batch collection from multiple APIs. In addition, recall data from low-cost storage to replay logs to analytics tools for later investigations with ad-hoc data collection.
  • To Shape Your Data: Shape all of the data you need to drive decisions about your environment. Translate and transform data from all of your sources to the tools you choose. Get a more complete picture of your data by enriching logs with third-party data. LogStream collects data from all of your sources and shapes it into actionable logs and metrics for analysis.

Cribl’s mission is to unlock the value of all your observability data, regardless of source or destination.

Download LogStream for free to get started!