SecTower Blog

    Industry insights, technical guides, cheat sheets, and solutions to complex problems

    Building a SOC from Scratch: Seven Principles of Security Operations Architecture
    Security Operations

    Building a SOC from Scratch: Seven Principles of Security Operations Architecture

    What every CISO and security leader needs to know before spending a dollar — and the seven principles that separate resilient operations from expensive alert factories.

    Aug 7, 2026
    4 min read
    "Search Not Executed": Fixing the Minimum Free Disk Space Error After a Splunk ES Upgrade
    Cybersecurity

    "Search Not Executed": Fixing the Minimum Free Disk Space Error After a Splunk ES Upgrade

    After a Splunk Enterprise Security upgrade, searches stop with a minimum free disk space error. The message points at concurrency and dispatch, but the real culprit is usually an unclean /opt/splunk/etc/backup. Here is how to diagnose, fix, and prevent it.

    Aug 7, 2026
    7 min read
    The OSINT Framework: Turning Public Data Into Defensible Intelligence
    Threat Intelligence

    The OSINT Framework: Turning Public Data Into Defensible Intelligence

    Most security teams already do OSINT. Few do it as a framework. Here is the process model, the five collection domains, the OPSEC and legal guardrails, and how to operationalize open-source intelligence inside a SOC.

    Jul 29, 2026
    9 min read
    ShinyHunters' Oracle PeopleSoft Campaign: 8 Detection Use Cases Every SOC Should Deploy
    Cybersecurity

    ShinyHunters' Oracle PeopleSoft Campaign: 8 Detection Use Cases Every SOC Should Deploy

    Google Threat Intelligence Group recently analyzed a ShinyHunters campaign exploiting Oracle PeopleSoft. Here are eight high-value detection use cases every SOC should deploy—applicable to Splunk, Sentinel, QRadar, Elastic, Chronicle, and other SIEMs.

    Jul 16, 2026
    5 min read
    Threat Advisory

    When One HTTP Request Is All It Takes: The ShinyHunters PeopleSoft Campaign

    A SecTower threat advisory on the ShinyHunters campaign exploiting Oracle PeopleSoft zero-day CVE-2026-35273, how it worked, and what defenders should do now.

    Jul 16, 2026
    6 min read
    Splunk

    SPLUNK UBA End of Sale/End of Life

    Frequently Asked Questions (FAQ)

    Jan 20, 2026
    4 min read
    Cybersecurity

    Vulnerabilities in the Wild

    Vulnerabilities in the Wild

    Jan 20, 2026
    2 min read
    Cybersecurity

    Understanding Zero Trust Architecture: A Complete Guide

    Learn how Zero Trust security models are revolutionizing enterprise cybersecurity by eliminating implicit trust and continuously validating every request.

    Jan 17, 2026
    1 min read
    Cloud

    AWS vs Azure vs GCP: Choosing the Right Cloud Platform in 2025

    A comprehensive comparison of the three major cloud providers to help you make an informed decision for your organization's cloud strategy.

    Jan 14, 2026
    2 min read
    DevOps

    Kubernetes Security Best Practices Cheat Sheet

    Essential security configurations and best practices every DevOps team should implement in their Kubernetes clusters.

    Jan 12, 2026
    2 min read
    Cybersecurity

    Implementing SIEM: From Planning to Production

    A step-by-step guide to planning, deploying, and operationalizing a Security Information and Event Management system.

    Jan 9, 2026
    2 min read