Operations | Monitoring | ITSM | DevOps | Cloud

Introducing APEX: Adversarial Pattern Extraction and Correlation

In this Black Hat talk, Nicole Beckwith introduces APEX (Adversarial Pattern Extraction and Correlation), a detection framework—not a Cribl product—that clusters TTP-based signals around entities to support behavioral detection. It is intended for security practitioners, SOC and detection teams, and threat hunters who want to learn how to use raw telemetry or OCSF data, TTP chaining, time windows, criticality, and cross-correlation to detect behavior beyond static indicators and rule-count coverage.

Leading With Observability: Scaling Fin to 2x Engineering Productivity

A few months ago, Darragh Curran, CTO at Fin (formerly Intercom) set a public goal to double productivity and nearly tripled it instead. They did so by pulling a few levers: AI writing code at scale, building an AI-driven PR review system, leveraging as a trust mechanism, and with leadership becoming more hands-on through the transition. Charity wanted to pick Darragh’s brain on the messy bits, not just the highlight reel, so she invited him to participate in our first episode of Leading With Observability.

Why New Devices Sit Stuck in Enrollment

A device ships out, IT pushes the enrollment profile, and then... nothing. Every tech who's supported Apple Business Manager, Android enrollment, or Windows Autopilot has hit this wall at least once — and it's rarely obvious whether the problem is a bad Wi-Fi handshake, a broken ABM sync, or a config profile that silently failed to apply. In this session, we'll walk through exactly where enrollment breaks and how to fix it fast.

The Cyber Resilience Act isn't just for hardware

There's a common assumption that the EU Cyber Resilience Act is a hardware and IoT manufacturer concern. Actually, it affects any SaaS company selling into the EU too, and that's a gap in awareness worth closing. This video covers what the CRA is actually there to do and what it means for your own software supply chain: Securing your customers' supply chain starts with being able to account for your own.

Your SBOM is already out of date

MIT and Apache 2.0 are the easy licenses. Generally, they let you do what you want. Copyleft licenses are the ones that come back to ask questions later, especially once you're generating revenue off the component. This video covers why license compliance gets challenging, and what actually keeps it under control: The goal isn't avoiding open source. It's knowing what's actually in there before a license or a vulnerability surprises you.

Fleet Monitoring with Netdata

Modern infrastructure doesn't only live in data centers anymore. It's in retail stores, factory floors, vehicles, cell sites, kiosks, and robots, thousands of nodes across hundreds of locations, connected over links you don't control, in places your team can't easily reach. Traditional observability wasn't built for this. Centralizing every metric from every device gets expensive fast, degrades over constrained links, and goes blind exactly when a remote node needs attention most. In this webinar, we'll show how Netdata inverts the model by putting intelligence at the edge.