Sysmon and wazuh integration with Sigma sysmon rules [updated]
-
Updated
Jul 21, 2021
Sysmon and wazuh integration with Sigma sysmon rules [updated]
Making Wazuh Deployment Easy
An alternative to "wazuh-docker" with CI/CD-built images for amd64 and arm64, published on Docker Hub.
☢️ Python script to send Wazuh alerts to Telegram by bot.
This script is for demo purposes only. It deploys a bare minimum, single-node Docker host and Wazuh stack running as a docker-compose stack.
On progress
Akamai integration for Wazuh that fetches events using the SIEM API
Dieses Projekt zeigt Schritt für Schritt, wie man mit Wazuh, pfSense und Windows 11 ein komplettes SIEM-/XDR-HomeLab aufbaut, Windows-Endpoints per Agent einbindet und typische Monitoring-Szenarien wie File Integrity Monitoring (FIM) und Registry-Überwachung in einer virtuellen Testumgebung umsetzt.
🛡️ Enhance network security with advanced Wazuh detection rules, designed for open-source collaboration and robust monitoring of threats.
Implementing a comprehensive and scalable security monitoring solution for Windows endpoint.
Docker image and Helm chart for Wazuh Manager and Filebeat, configurable for sending alerts to a specific OpenSearch instance 🐺
Install wazuh-manager and ELK cluster in Amazon Opsoworks
Setting Up Wazuh SIEM/XDR Homelab and Integration of Microsoft Defender into it.
SOC Home Lab with Ubuntu (host), Wazuh SIEM, Windows endpoint (victim) with Sysmon, and Kali Linux (attacker). Simulates real-world attacks for aspiring SOC analysts. Practice threat detection, log analysis, and incident response using Wazuh and Sysmon in a controlled environment.
This repo is about my take on simulating a brute force on my homelab.
Automated Wazuh SIEM Installation & Configuration
This repo is to showcase the EICAR Detection test I did on my Homelab
Docker Container Setup with Wazuh for Vulnerability Scanning DVWA Container
Add a description, image, and links to the wazuh-manager topic page so that developers can more easily learn about it.
To associate your repository with the wazuh-manager topic, visit your repo's landing page and select "manage topics."