📢 Read the latest Release Notes to learn what's new on Hunters! 💡

IBM

Prev Next

TL;DR

Supported data types

3rd party

detection

Hunters detection

IOC search

Search

Table name

Log format

Collection method

IBM DB2 Logs

✅

✅

ibm_db2_logs

Nested-Json-Text

S3


Overview

International Business Machines Corporation (IBM), nicknamed "Big Blue," is a leading global technology company headquartered in Armonk, New York, founded in 1911 as the Computing-Tabulating-Recording Company (CTR). With a history stretching back over a century, IBM has evolved from producing early tabulating machines and time clocks into a dominant force in mainframe computers and, currently, a major player in hybrid cloud computing, artificial intelligence (AI), and quantum computing. As of 2026, the company operates in over 170 countries, providing a wide array of services including IT consulting, infrastructure, and software, while powering critical infrastructure, such as processing over 90% of global credit card transactions. Known for its extensive research and innovation, holding numerous patents, IBM continues to focus on ethical AI solutions and enterprise-scale digital transformation, including initiatives like the AI-driven "Watson" platform.

Supported data types

IBM DB2 Logs

Overview:

IBM Db2 is a family of AI-powered, cloud-native relational database management systems (RDBMS) designed to manage, analyze, and secure data for mission-critical transactional and analytical workloads. First released in 1983 for IBM mainframes, modern Db2 has evolved into a versatile platform supporting on-premises, cloud, and hybrid environments, including Linux, UNIX, and Windows (LUW) operating systems. Known for high performance, reliability, and scalability, Db2 supports both SQL and NoSQL data models, including JSON and XML, making it suitable for both traditional relational structures and modern, unstructured data. Key features include advanced data compression, in-memory processing for analytics, robust security features, and automated database management, such as the Db2 Genius Hub for autonomous operations.


Table name: ibm_db2_logs


Send data to Hunters

Hunters supports the ingestion of IBM DB2 Logs via an intermediary AWS S3 bucket.

To connect IBM DB2 Logs:

  1. Export your logs from IBM DB2 Logs to an AWS S3 bucket.

  2. Once the export is completed and the logs are collected to S3, follow the steps in this section.

Expected format

Logs are expected in Nested-Json-Text:

{"host":"host.example.internal","source":"/var/log/db2/diagnostic/db2diag.log","_raw":"1-1-2020 12:00:00 DB2-102-083 Successful Identity request, subsystem=DB2SUBSYS, Auth ID=AUTHUSER1, Correlation ID=12.34  05, Connecting Type=LOCAL, Plan Name=, Original OID=ENTRPPRD, End User UID=, Transaction Name=, Workstation Name=, by=ENTRPPRD, original id=ENTRPPRD, secondary ids=()","_time":1577836800,"cribl_breaker":"fallback","cribl_pipe":["passthru","passthru"]}