Sysmon and wazuh integration with Sigma sysmon rules [updated]
-
Updated
Jul 21, 2021
Sysmon and wazuh integration with Sigma sysmon rules [updated]
On progress
Command line tool to review, merge and modify OSSEC/Wazuh rules in bulk
Making Wazuh Deployment Easy
An alternative to "wazuh-docker" with CI/CD-built images for amd64 and arm64, published on Docker Hub.
☢️ Python script to send Wazuh alerts to Telegram by bot.
This script is for demo purposes only. It deploys a bare minimum, single-node Docker host and Wazuh stack running as a docker-compose stack.
🛡️ Enhance network security with advanced Wazuh detection rules, designed for open-source collaboration and robust monitoring of threats.
Akamai integration for Wazuh that fetches events using the SIEM API
Guide explaining how to deploy the entire Threat Intelligence pipeline inside Wazuh.
Setting Up Wazuh SIEM/XDR Homelab and Integration of Microsoft Defender into it.
Docker Container Setup with Wazuh for Vulnerability Scanning DVWA Container
Docker image and Helm chart for Wazuh Manager and Filebeat, configurable for sending alerts to a specific OpenSearch instance 🐺
Dieses Projekt zeigt Schritt für Schritt, wie man mit Wazuh, pfSense und Windows 11 ein komplettes SIEM-/XDR-HomeLab aufbaut, Windows-Endpoints per Agent einbindet und typische Monitoring-Szenarien wie File Integrity Monitoring (FIM) und Registry-Überwachung in einer virtuellen Testumgebung umsetzt.
In Progress Project: A lab-based SOC simulation using Wazuh SIEM/XDR to detect real-world attack scenarios including database exfiltration, credential theft, and insider enumeration across a virtualized environment.
Implementing a comprehensive and scalable security monitoring solution for Windows endpoint.
Install wazuh-manager and ELK cluster in Amazon Opsoworks
AI-powered Wazuh alert triage and response platform — MITRE ATT&CK insights and automated GitLab incident creation over mTLS
SOC Home Lab with Ubuntu (host), Wazuh SIEM, Windows endpoint (victim) with Sysmon, and Kali Linux (attacker). Simulates real-world attacks for aspiring SOC analysts. Practice threat detection, log analysis, and incident response using Wazuh and Sysmon in a controlled environment.
Add a description, image, and links to the wazuh-manager topic page so that developers can more easily learn about it.
To associate your repository with the wazuh-manager topic, visit your repo's landing page and select "manage topics."