Insights

Latest news, security briefings, and technology trends.

map[class:w-full h-full object-cover object-center src:insights/img/Aesthetics-of-Log-Collection2.png]

The Aesthetics of Log Collection (2): Standardized Communication, CEF, and the Evolution of Ingestion Paradigms

CEF (Common Event Format): A Strategic Choice for Log Standardization CEF (Common Event Format), introduced by ArcSight—the longtime leader of the SIEM market—emerged as a powerful solution to the persistent issue of Log …...
map[class:w-full h-full object-cover object-center src:insights/img/Aesthetics-of-Log-Collection2.png]

The Aesthetics of Log Collection (2): Standardized Communication, CEF, and the Evolution of Ingestion Paradigms

CEF (Common Event Format): A Strategic Choice for Log Standardization CEF (Common Event Format), introduced by ArcSight—the longtime leader of the SIEM market—emerged as a powerful solution to the persistent issue of Log …...
map[class:w-full h-full object-cover object-center src:insights/img/Aesthetics-of-Log-Collection.png]

The Aesthetics of Log Collection (1): The Silent Outcry, Mastering the Art of Syslog

Regardless of whether a dedicated security department exists or if it’s driven by compliance, debating the necessity of log collection in a modern IT environment is no longer productive. Log collection has already …...
map[class:w-full h-full object-cover object-center src:insights/img/prisma-ccf.png]

Azure Sentinel, The Evolution of Prisma Cloud Log Integration: From Function Apps to CCF

Integrating Palo Alto Prisma Cloud (hereafter “Prisma”) logs into Azure Sentinel has undergone significant technical shifts. In this post, I will share the structural breakdown of Prisma and my practical experience …...
map[class:w-full h-full object-cover object-center src:insights/img/snmp-image.png]

SNMP: A Classic Monitoring Tool with Modern Security Depth

In the world of system monitoring, there are two primary pillars: analyzing system logs and utilizing SNMP (Simple Network Management Protocol) to verify system status and configurations. In the early days of security …...
map[class:w-full h-full object-cover object-center src:insights/img/BridgingTheGap.png]

Bridging the Gap: Why I am Documenting Fundamentals and Real-World Incidents

[Intro] Bridging the Gap: Why I am Documenting Fundamentals and Real-World Incidents Throughout my career, my primary focus has always been on precision and speed of execution. I have always been a process-driven …...