Live data from Hacker News

Viewing profile — shaeqahmed

shaeqahmed

HN member
Joined
Wed, Jun 02, 2021, 1:30 AM UTC
HN karma
56
Public activity
27 items

About shaeqahmed

No profile information was provided.

Recent public activity

  1. comment
    Comment #34515727

    Matano is completely serverless and stores all data in ZSTD compressed parquet files in dirt-cheap object storage, allowing you to bring your own analytics stack for queries on lar…

  2. comment
    Comment #34514678

    Yep, SIEM is just a superset of Log Management as it needs to do things like alerting + correlation + detection etc. in addition to ingesting logs to be considered a SIEM. It is a …

  3. comment
    Comment #34514215

    Thank you for typing up a long detailed response. I think a lot of the points and concerns you bring up are valid, and we are mostly agreed upon. In Matano however, we see Python a…

  4. comment
    Comment #34512636

    Long term, I believe Python (along with good ol' SQL for correlation) is the best language to model the kind of attacker behaviours companies are dealing with in the cloud and a lo…

  5. comment
    Comment #34511501

    The code is written in high performance multi-threaded Rust and uses the [1] Arrow compute framework. We also batch events and target about 32MB of event data per lambda invocation…

  6. comment
    Comment #34510637

    We launched before Amazon Security Lake :) Amazon Security Lake's main value prop is that it is a single place where AWS / partner security logs can be stored and sent to downstrea…

  7. comment
    Comment #34510215

    Some big differences: - Matano has realtime Python + SQL detections as code with advanced correlation support. Chronicle uses inflexible YARA-like detection rules iirc - Matano sup…

  8. comment
    Comment #34509758

    Thank you! We definitely believe in open source and don't need AGPL. Sending you love as you deal with that Splunk instance. P.S. feel free to open some issues for any log sources …

  9. comment
    Comment #34509447

    Thank you! Yes with AppTrail we wanted to solve the pain points around SaaS audit logs but since it was a product that needed to be sold and integrated into B2B startups rather tha…

  10. comment
    Comment #34508147

    We are working on a solution for GCP and Azure :) GCP recently announced Iceberg support with BigLake and support for federation across multi-cloud lakes so it would be perfect use…

  11. comment
    Comment #34507787

    I completely agree with you and the need for a fully integrated solution with great visualizations without hosting additional tools that aren't purpose built! Unfortunately there a…

  12. comment
    Comment #34507571

    Many enterprises using Splunk are already being forced to purchase products like Cribl to route some of their data to a data lake because writing it all to Splunk is just way too e…

  13. comment
    Comment #34506802

    We think building a more efficient solution using data lakes is a win-win because it unlocks additional use cases for customers and allows them to analyze larger datasets within th…

  14. comment
    Comment #34506198

    Nope, Matano is named after one of the deepest lakes in the world - Lake Matano of Indonesia ;)

  15. comment
    Comment #34054067

    I'm on the fence about this one. When I heard it was announced, and that it was created by none other than the creators of the amazing AWS CDK, I was really excited by what could b…

  16. comment
    Comment #33350119

    okay but what about biometric auth via fingerprint - passwordless & zero context switches (provided your device supports this)

  17. comment
    Comment #32383084

    Yes, they would be handled automatically. Data ingestion is supported through S3 or Kafka, where files are picked up and ETL'D into structured Iceberg tables conforming to an ECS-l…

  18. comment
    Comment #32370098

    Matano is designed specifically for petabyte-scale security log analytics use cases, so performance and costs are a top priority. Our data pipeline borrows from Vector's Rust based…

  19. comment
    Comment #32369815

    Using and maintaining Matano is a fraction of the cost compared to popular non-serverless alternatives like ELK or Spunk. Matano is specifically designed for petabyte-scale securit…

  20. comment
    Comment #32369513

    It is similar, although Snowflake is more of a query engine whereas we are a cloud security data platform built on an open data model (Apache Iceberg). We help you ingest and norma…

  21. comment
    Comment #32369109

    Its a data lake in which you store security logs. That includes Cloud/SaaS audit logs, network security logs (Zeek, Suricata, Snort), VPN/Firewall logs, and more.

  22. story
  23. comment
    Comment #31116681

    Cool product and pricing model > Cloud Log Lake That's the first time I'm hearing a Clickhouse backend described as a lake. Care to explain?

  24. comment
    Comment #30476069

    > Customers also use Convoy as a broker for inter-service communication. Very cool product! But this part threw me off a bit, wouldn't a distributed message broker like Kafka be a …

  25. story