Balázs Scheidler - Axofllow
by 
Balázs Scheidler
July 23, 2026

Closing the Data-Detection Gap: What We're Building

SANS 2026: 80% of detection teams can barely keep pace. Faster rule-writing won't help, a stable data layer will. See how to run Sigma in-stream, before the SIEM
SANS 2026: 80% of detection teams can barely keep pace. Faster rule-writing won't help, a stable data layer will. See how to run Sigma in-stream, before the SIEM
Bence Csáti - Axoflow
by 
Bence Csáti
July 20, 2026

Raw Logs Get AI Triage Wrong. Every Time.

We gave a security agent raw, unnormalized vendor logs and asked it to triage a real attack scenario. Nine runs, zero correct. Here's why raw logs break AI triage — and what changes once the data is normalized and enriched.
Raw Logs Get AI Triage Wrong. Every Time.

All Articles

syslog-ng 4.6 release with Google BigQuery, macOS, and Windows XML support — Axoflow blog cover
Balázs Scheidler - Axofllow
by 
Balázs Scheidler
January 25, 2024

Google BigQuery, macOS, and Windows XML support in syslog-ng version 4.6

syslog-ng 4.6 allows you to send data directly to Google BigQuery, better collect logs on macOS, parse Windows XML logs, and improves OpenTelemetry performance
Creating usable log messages: log timestamps — Axoflow blog series cover
Balázs Scheidler - Axofllow
by 
Balázs Scheidler
January 8, 2024

Creating Usable Log Messages: Getting Timestamps Right

Bad timestamps break log correlation. How to create usable log messages with correct, consistent timestamps across Python, OpenTelemetry, and syslog.
syslog-ng contributions by Axoflow, 2023
Attila Szakács - Axoflow
by 
Attila Szakács
December 24, 2023

syslog-ng 2023 community activity report

syslog-ng in 2023: new features (OpenTelemetry, Google Pub/Sub, Splunk, Grafana Loki, Amazon S3, OpenObserve drivers), contributions, and other developments
Creating usable log messages: log levels — Axoflow blog series cover
Balázs Scheidler - Axofllow
by 
Balázs Scheidler
December 20, 2023

Creating usable log messages: log levels

Learn how to create usable log messages by configuring log severity levels, with special focus on Python, OpenTelemetry, and syslog log levels.
Sending logs to Grafana Loki with syslog-ng and Logging operator — Axoflow blog cover
Kristóf Gyurácz - Axoflow
by 
Kristof Gyuracz
December 14, 2023

Send logs to Grafana Loki with syslog-ng and Logging operator

Forward Kubernetes logs to Grafana Loki using syslog-ng and the Logging operator with AxoSyslog. Cloud-native setup, dynamic labels, and full config.
Sending log and telemetry data to Google BigQuery with syslog-ng — Axoflow blog cover
Attila Szakács - Axoflow
by 
Attila Szakács
December 12, 2023

How to send log and telemetry data to Google BigQuery with syslog-ng

Send logs and telemetry data directly to Google BigQuery with syslog-ng, using gRPC
Multi-tenancy using Logging operator in Kubernetes — Axoflow blog cover
Péter Wilcsinszky - Axoflow
by 
Peter Wilcsinszky
December 6, 2023

Multi-tenancy using Logging operator

Solving logging in multi-tenant scenarios in Kubernetes is not always easy. Here is how Logging operator can help you.
Google Pub/Sub and OpenObserve support in syslog-ng 4.5 — Axoflow blog cover
Attila Szakács - Axoflow
by 
Attila Szakács
November 28, 2023

Google Pub/Sub and OpenObserve support in syslog-ng version 4.5

syslog-ng 4.5 integrates your telemetry pipeline to Google Pub/Sub and OpenObserve
Logging operator, the telemetry pipeline for Kubernetes, now a CNCF sandbox project — blog cover
Sándor Guba - Axoflow
by 
Sándor Guba
November 23, 2023

Logging Operator: the Telemetry Pipeline for Kubernetes

Logging operator is now a CNCF sandbox project. Learn what that means for you, the future plans, and what a telemetry pipeline for Kubernetes is.

Subscribe to stay in touch

Sign up for our newsletter to be the first to knew about new articles. We are excited to be realizing our vision above with a full Axoflow product suite.