top of page


The Big Data Blog


Tracking Kerberos & NTLM Authentication Failures and Investigation
When investigating intrusion attempts or suspicious login activity in Windows environments, one of the most overlooked sources of truth lies in the authentication failure logs — specifically, Kerberos Event ID 4771 and NTLM Event ID 4776 . These tiny events, often lost in the noise of massive log volumes, can tell a deep story: Was someone trying to guess passwords? Was an attacker using a stolen hash? Or was it just a misconfigured system clock? Kerberos Pre-Authentication
Oct 18, 20257 min read


Log Analysis – It’s Not About Knowing, It’s About Correlating
I know, I know — Log Analysis doesn’t sound like the most exciting topic these days . Everyone in cybersecurity has gone through it at some point, and if you’ve sat in an interview, you’ve probably been asked about it too. There are already tons of articles and videos on this topic out there. But here’s the thing — log analysis isn’t about knowing event IDs by heart . It’s about correlating different events together to tell a story . That’s the part most people miss. And tha
Oct 16, 202510 min read


Part 7 : Secrets Management — The Right Way to Keep Your Secrets Safe
Hey everyone Let’s talk about one of the most underrated but dangerous parts of automation and DevOps: secrets management . You might not realize it, but every single system you build — whether it’s an app, CI/CD pipeline, or cloud deployment — has secrets . These are things like API tokens, SSH keys, database passwords, and service credentials that your automation tools, containers, and scripts need to function. -------------------------------------------------------------
Oct 15, 20254 min read


Managing Vulnerable Dependencies — The Hidden Risk in Open-Source Code
When we talk about secure coding , we usually think about the code we write — avoiding insecure functions, preventing injections, or...
Oct 13, 20253 min read


Understanding Semgrep — A Powerful Open-Source SAST Tool for Developers and Security Teams
If you’ve ever worked on secure coding or DevSecOps pipelines, you’ve probably come across the term SAST — Static Application Security...
Oct 9, 20253 min read
Ready to discuss:
- Schedule a call for a consultation
- Message me via "Let's Chat" for quick questions
Let's connect!
bottom of page