Anton on Security
Published in

Anton on Security

Security Correlation Then and Now: A Sad Truth About SIEM

We all know David Bianco Pyramid of Pain, a classic from 2013. The focus of this famous visual is on indicators that you “latch onto” in your detection activities. This post will reveal a related mystery connected to SIEM detection evolution and its current state. So, yeah, this is another way of saying that a very small number of people are perhaps very passionate about it …

But who am I kidding? I plan to present a dangerously long rant about the state of detection content today. So, yes, of course there will be jokes, but…




A new start for my security blog. Also see our podcast at

Recommended from Medium

Supercharge Your SOC

Vulnhub: Gigachad Walkthrough

Anton’s Security Blog Quarterly Q2 2021

Is AEM Susceptible to log4shell?

{UPDATE} Furious F3 Racing Hack Free Resources Generator

How to participate in MultiPad IDO

GameInfinity Airdrop

Detection as Code? No, Detection as COOKING!

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Anton Chuvakin

Anton Chuvakin


More from Medium

How to Measure Threat Detection Quality for an Organization?

Are you ready to conduct digital forensic investigations?

Digital forensic investigation is about proving beyond doubt what happened.

Thoughts on creating a Cyber Threat Intelligence Program from scratch

Building our Security Coordination Center (SCC) Hunting Program