-

Elastic Announces Osquery Management Integration for Unified Data Analysis to Address Cyber Threats

Accelerating Threat Hunting with Direct Access to Rich Host Data

MOUNTAIN VIEW, Calif.--(BUSINESS WIRE)--Elastic (NYSE: ESTC) (“Elastic”), the company behind Elasticsearch and the Elastic Stack, announces new updates across the Elastic Security solution in its 7.13 release to broaden support for osquery, the open source host instrumentation framework, with a new host management integration for Elastic Agent and unified analysis of osquery host data.

The osquery host management integration, now in beta, enables security teams to use osquery results to address cyber threats without the complexity or cost of a separate management layer. With one click, users can install and orchestrate osquery across their Windows, macOS, and Linux hosts.

Osquery data is ingested in Elasticsearch and shown in Kibana where users can run live queries with one or more agents, and define scheduled queries to capture changes to an organization’s security state. From a single pane of glass, users can centralize security analytics and contextualize osquery results against other event data, anomalies, and threats, and leverage that context to improve host visibility, analytical power, and monitoring.

Enhanced capabilities also include prebuilt and custom SQL queries, as well as Kibana query guidance to support users with code completion, code hinting, and content assistance.

For more information read the Elastic blog about what’s new in Elastic Security 7.13.

About Elastic:

Elastic is a search company built on a free and open heritage. Anyone can use Elastic products and solutions to get started quickly and frictionlessly. Elastic offers three solutions for enterprise search, observability, and security, built on one technology stack that can be deployed anywhere. From finding documents to monitoring infrastructure to hunting for threats, Elastic makes data usable in real time and at scale. Thousands of organizations worldwide, including Cisco, eBay, Goldman Sachs, Microsoft, The Mayo Clinic, NASA, The New York Times, Wikipedia, and Verizon, use Elastic to power mission-critical systems. Founded in 2012, Elastic is a distributed company with Elasticians around the globe and is publicly traded on the NYSE under the symbol ESTC. Learn more at elastic.co.

The release and timing of any features or functionality described in this document remain at Elastic’s sole discretion. Any features or functionality not currently available may not be delivered on time or at all.

Elastic and associated marks are trademarks or registered trademarks of Elastic N.V. and its subsidiaries. All other company and product names may be trademarks of their respective owners.

Contacts

Chloe Guillemot
Elastic Public Relations
PR-Team@elastic.co

Elastic N.V.

NYSE:ESTC

Release Versions

Contacts

Chloe Guillemot
Elastic Public Relations
PR-Team@elastic.co

More News From Elastic N.V.

Elastic Recognized as a Leader in the Gartner® Magic Quadrant™ for Enterprise AI Search 

SAN FRANCISCO--(BUSINESS WIRE)--Elastic (NYSE: ESTC) today announced that Gartner®, Inc. named it a Leader in the Magic Quadrant™ for Enterprise AI Search, positioning Elastic as the highest for Ability to Execute and furthest for Completeness of Vision. In addition, Elastic ranked first or second in every Use Case evaluated in the Gartner Critical Capabilities for Enterprise AI Search report. Elastic credits its position as a Leader to providing a foundational context layer that retrieves enter...

Elastic Introduces jina-ocr-v1: End-to-End Document Processing in a Single Frontier-Grade Model

SAN FRANCISCO--(BUSINESS WIRE)--Elastic (NYSE: ESTC) today announced the launch of jina-ocr-v1, a new optical character recognition (OCR) model for end-to-end document processing. At 574M active parameters, it delivers frontier-grade accuracy in a model roughly one tenth the size of the benchmark leader. Jina-ocr-v1 accurately converts complex visual documents into structured, machine-readable text, such as Markdown, in a single pass, making it easy to search, train models, and build agentic ap...

Elastic Announces General Availability of Cross-Project Search for Querying Across Serverless Projects Without Moving Data

SAN FRANCISCO--(BUSINESS WIRE)--Elastic (NYSE: ESTC) today announced the general availability of cross-project search (CPS) for Elastic Cloud Serverless, enabling teams to query across multiple serverless projects without moving or duplicating data. Security analysts, SREs and app engineers get a unified search experience across regions, cloud providers and project types, without the operational overhead of centralizing data. Organizations keep data in separate projects for good reasons, such a...
Back to Newsroom