Security Vision SIEM Adds Monitoring for Missing Logs, Correlation Quality, and SOC SLA Compliance
Security Vision has released a major update to its SIEM platform. The new version monitors not only external attackers but also the stability of the data sources feeding the system, the performance of correlation rules, and the progress of ongoing investigations by analysts.
One of the key additions is monitoring for collection stability. Administrators can now oversee each individual source, configure acceptable deviations in event volume, and receive automatic notifications when events suddenly cease. This capability is intended to surface blind spots proactively rather than after an incident has already occurred.
A separate dashboard displays the quality of correlation rules. Rules can be tested against simulated events, and the platform supports import and export in Sigma format, simplifying the transfer of detection content between different systems.
The StatAnalyser service tracks atypical behavior using statistical rules and marks suspicious incidents with a dedicated indicator. Investigations benefit from a new retrospective process-chain builder inside each incident card. The system automatically runs additional queries to reconstruct parent processes, user sessions, and lateral movement across hosts, giving analysts a more coherent view of the compromise instead of isolated events.
The platform also monitors the SOC team itself. A new dashboard tracks SLA compliance during incident handling and allows managers to drill from aggregate statistics down to the performance of individual analysts.
Together these features aim to create a closed, manageable cycle for SOC operations: verify that data is actually arriving, assess detection quality, identify anomalies, reconstruct attack paths, and oversee team response. The updated SIEM is positioned as an active control point for the entire investigation process rather than a passive log repository.
Related articles
Yandex Maps Adds Upcoming Speed Limits and Camera Direction Details to Navigation
Yandex Maps has updated its navigation mode to display speed restrictions on upcoming road segments along the entire route. Drivers can now see a sequence of limits in advance, such as 80 km/h followed by 60 km/h after an interchange and then 40 km/h. The application also provides more detailed information about the two nearest traffic cameras, including the specific lane they target and whether they monitor oncoming or same-direction traffic. Voice alerts now warn users when a camera measures speed after the vehicle has already passed it. Pilot testing showed positive effects on speed limit compliance. The changes aim to make urban and highway driving more predictable by removing the need to guess restrictions or camera focus ahead.
Kaspersky Releases Corporate Version of Kaspersky Password Manager for Mid-Size and Large Organizations
Kaspersky has introduced a business edition of Kaspersky Password Manager designed for centralized credential management across medium and large enterprises. The solution generates complex passwords, stores them in encrypted vaults, and audits existing credentials for strength and exposure in data leaks. Employees only need to remember a single master password while the platform also supports storage of TOTP tokens, passkeys, corporate documents, and payment card details. Administrators gain tools to enforce password policies centrally and apply role-based access controls. Supporting statistics from Kaspersky Digital Footprint Intelligence show widespread password reuse and simplicity, with 37 percent of users merely changing letter case when recycling passwords. The company links these habits to real risk, noting that credential compromise initiated one quarter of attacks against organizations in 2025.
GitHub Experiences Major Global Outage Affecting API, Actions, Copilot and Multiple Core Services
On August 17, GitHub suffered a widespread outage that impacted nearly all major platform functions including the web interface, API, Issues, Pull Requests, Actions, Webhooks, Pages, Git Operations, and Copilot. Approximately 20% of requests to the site and API failed during peak impact, with archive and raw repository content loads reaching around 50% error rates. Corporate authentication mechanisms such as SAML and OIDC, along with SCIM and Team Sync services, were also disrupted while Codespaces remained operational. The incident began around 13:40 UTC with progressive degradation across components, prompting GitHub to identify and mitigate the root cause. Services are gradually recovering but error rates remain slightly elevated, and the incident has not yet been fully closed. Parallel issues were reported in other Microsoft services including Teams and Copilot, with unconfirmed speculation linking the event to Amazon Web Services network problems.
SASTAV and ARX ASPM PLATFORM Integrate Static Code Analysis with Application Security Risk Management
Russian developers ShiftLeft Security and ARX Security have ensured compatibility between the SASTAV SAST solution and the ARX ASPM PLATFORM. The integration allows static analysis of source code to be launched and configured directly from the ASPM platform interface. For each project, specialists can select repositories and branches, form rule sets, set scanning parameters, and establish quality gates that determine whether a product can be released with detected defects. Risk acceptance procedures are also configured within the same interface. SASTAV handles static code analysis, enabling creation and editing of rules, assignment of different check sets to individual repositories, and management of scanning parameters. ARX ASPM PLATFORM serves as a unified center for managing AppSec tools, collecting results from various analyzers, correlating related findings, assessing risks, and displaying the overall security posture of digital products. Both solutions leverage artificial intelligence at different stages: SASTAV uses it for defect verification, automatic triage, prioritization, and code change recommendations, while the ARX AI assistant determines defect statuses. The combined system reduces manual operations, accelerates DevSecOps project onboarding, and lowers the burden on AppSec teams.