Software Alternatives & Reviews

osquery VS Graylog

Compare osquery VS Graylog and see what are their differences

osquery logo osquery

Utilities, Application Utilities, and Desktop Querying Tools

Graylog logo Graylog

Graylog is an open source log management platform for collecting, indexing, and analyzing both structured and unstructured data.
  • osquery Landing page
    Landing page //
    2021-08-21
  • Graylog Landing page
    Landing page //
    2023-10-20

osquery videos

Kolide & OSQuery: How to Build Solid Queries and Packs for Detection and Threat Hunting

More videos:

  • Review - Using osquery & MITRE ATT&CK to Provide Analytics for Incident Response and Threat Hunting
  • Review - How Stripe is actioning the osquery API at scale [osquery@scale]

Graylog videos

Graylog 3 0 OpenSource Demo

More videos:

  • Review - Graylog, Open Source Log Management
  • Review - 22. Graylog 3.0 Sidecar Windows Configuration

Category Popularity

0-100% (relative to osquery and Graylog)
Security & Privacy
100 100%
0% 0
Monitoring Tools
7 7%
93% 93
Log Management
3 3%
97% 97
Cyber Security
100 100%
0% 0

User comments

Share your experience with using osquery and Graylog. For example, how are they different and which one is better?
Log in or Post with

Reviews

These are some of the external sources and on-site user reviews we've used to compare osquery and Graylog

osquery Reviews

We have no reviews of osquery yet.
Be the first one to post

Graylog Reviews

The Top 14 Free and Open Source SIEM Tools For 2022
Our last tool but by no means the least is Graylog. It is a log management platform that gathers data from different locations across your network infrastructure.
Source: logit.io
Top 10 Log Management Services
Graylog is a well-known log management tool because of its services. It provides a user interface just like some other log management tools. Almost all of the provided features are the same other than reading from Syslog files. Here you cannot read directly read from the Syslog files. It is inconvenient because you have to send your messages to Graylog.
Best Log Management Tools: Useful Tools for Log Management, Monitoring, Analytics, and More
Graylog is a free and open-source log management tool that supports in-depth log collection and analysis. Used by teams in Network Security, IT Ops and DevOps, you can count on Graylog’s ability to discern any potential risks to security, lets you follow compliance rules, and helps to understand the root cause of any particular error or problem that your apps are experiencing.
Source: stackify.com

Social recommendations and mentions

Based on our record, osquery should be more popular than Graylog. It has been mentiond 18 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

osquery mentions (18)

  • Show HN: Natural Language to SQL "Text-to-SQL" API by Dataherald
    The largest we have successfully deployed is on the OSQuery schema https://osquery.io/ which is 277 tables and lots of business context (malwares, vulnerabilities, Windows registry keys, etc). - Source: Hacker News / 3 months ago
  • Alternative to Endpoint Protector?
    From a self hosted standpoint OSQuery or Wazuh are your best bets for monitoring USB devices. Windows makes blocking really challenging and I’m not aware of any “free” solutions that attempt it. Source: about 1 year ago
  • Firewall rules beyond "deny incoming, enable only the ports that you need"
    Configure auditd to monitor host activity: https://izyknows.medium.com/linux-auditd-for-threat-detection-d06c8b941505 or osquery: https://osquery.io/ (or similar software: filebeat for example). Source: about 1 year ago
  • Best Websites For Coders
    OS Query : Easily ask questions about your Linux, Windows, and macOS infrastructure. - Source: dev.to / over 1 year ago
  • Tool that let you know see EXE file on multiple PC?
    Osquery + Fleet. https://osquery.io/ https://fleetdm.com/, using the two allows you to build a query to answer what ever questions you (or an auditor) might have about your environment. Source: over 1 year ago
View more

Graylog mentions (2)

  • Enhancing API Observability Series (Part 2): Log Analysis
    Graylog: Supports various log sources and formats, providing real-time search, analysis, and visualization functionalities. - Source: dev.to / about 2 months ago
  • Join us June 24 at 11:00 AM EDT: "All Things Configured” Discord Show with our founder, Lennart Koopman
    Join our new Graylog Community Discord channel for our new chat/call-in show, “All Things Configured”. Our founder, Lennart Koopman, will host the show with Jeff Darrington, Senior Technical Marketing Manager, as his guest. Jeff’s well-known to many of you as the star of our Graylog How-To series of videos and blog posts on Graylog.org. Get a jump on the event, which will be live on Friday, June 24 at 11:00 AM EDT. Source: almost 2 years ago

What are some alternatives?

When comparing osquery and Graylog, you can also consider the following products

Tripwire - Open Source Tripwire software is a security and data integrity tool useful for monitoring and...

Datadog - See metrics from all of your apps, tools & services in one place with Datadog's cloud monitoring as a service solution. Try it for free.

Ossec - OSSEC is an Open Source Host-based Intrusion Detection System.

Sumo Logic - Sumo Logic is a secure, purpose-built cloud-based machine data analytics service that leverages big data for real-time IT insights

AIDE - AIDE (Advanced Intrusion Detection Environment) is a file and directory integrity checker.

Logz.io - Logz.io provides log analysis software with alerts, role-based access, unlimited scalability and free ELK apps. Index, search & visualize your log data!