Wazuh - Ruleset
-
Updated
Sep 19, 2024 - Python
Wazuh - Ruleset
Monitoring a Kubernetes cluster involves deploying and utilizing the Wazuh agent within the Kubernetes environment.
AI-powered security operations with Wazuh SIEM + Claude Desktop. Natural language threat detection, automated incident response & compliance. Real-time monitoring, ML anomaly detection. Transform your SOC with conversational security analysis. Production-ready MCP server.
CVE-2025-24016: Wazuh Unsafe Deserialization Remote Code Execution (RCE)
A configuration to allow Wazuh to communicate with ChatGPT, based on https://loggar.hashnode.dev/augmenting-wazuh-with-chatgpt-integration
(Unofficial) Wazuh integration to send alerts to IRIS.
Django middleware and signals for handling security events
INVENTORY is a lightweight web dashboard that pulls hardware, OS, and network data from Wazuh's API, presenting it in a simple interface for IT teams. It uses Wazuh's existing agent framework, so no additional software needs to be installed. The solution provides quick access to system details like CPU, RAM, and installed software while keeping sec
Open source SIEM and SOAR stack for security automation.
IDPS-ESCAPE (Intrusion Detection and Prevention Systems for Evading Supply Chain Attacks and Post-compromise Effects), part of project CyFORT: open-source SOAR system powered by a deep learning-based anomaly detection toolbox (ADBox) and a risk-aware AD-based active response (RADAR) subsystem integrated with OSS such as Wazuh and Suricata.
A Wazuh SIEM XDR integration that aims to enrich Wazuh alerts using VirusTotal and AlienVault OTX
Vulnerabilidad RCE en Spring Framework vía Data Binding on JDK 9+ (CVE-2022-22965 aka "Spring4Shell")
Fork of splunk/eventgen to generate ossec wazuh's alerts.json
Extract the last alert found in a .log file, given a date as a parameter - Use case: Wazuh log file
Add a description, image, and links to the wazuh topic page so that developers can more easily learn about it.
To associate your repository with the wazuh topic, visit your repo's landing page and select "manage topics."