Wazuh SIEM integration with Microsoft Defender XDR using Graph API

Wazuh SIEM integration with Microsoft Defender XDR using Graph API

October 7th 2026 / Ambassadors
By Jędrzej Boguszyński / Blog

Running Microsoft Defender XDR alongside Wazuh? Learn how to unify incidents, alerts, and Defender for Cloud events in a single Wazuh dashboard using custom rules, with no more switching between consoles.

Read more
Wazuh Community Rulesets

Wazuh Community Rulesets

October 1st 2026 / Ambassadors
By Marco Teixeira / LinkedIn

All Wazuh rules and decoders brought together in one place. Over 110 community sources plus the Wazuh blog: 16,500+ rules, 5,300+ decoders and 479 packs, each file unchanged and credited to its original author.

Read more
Wazuh NCA ECC Compliance Pack

Wazuh NCA ECC Compliance Pack

September 30th 2026 / Ambassadors
By Hamza Jameel / GitHub

Wazuh meets NCA ECC: a community pack maps Saudi Essential Cybersecurity Controls (ECC-2:2024) to native Wazuh capabilities, with no extra agents and no built-in rules modified.

Read more
Detect a Quartet of Linux Local Root Vulnerabilities with Wazuh 4.14.8

Detect a Quartet of Linux Local Root Vulnerabilities with Wazuh 4.14.8

September 30th 2026 / Ambassadors
By Kislley Rodrigues / GitHub

Detection has to be behavioral, at the syscall level. This repository provides auditd sensor rules and Wazuh detection rules built on four axes, plus an SCA policy that checks the sensor and the exploit prerequisites on each endpoint:

Read more
Inventory: Computer Park Management with Wazuh

Inventory: Computer Park Management with Wazuh

September 29th 2026 / Ambassadors
By Marcus de Almeida / LinkedIn

Wazuh’s open and extensible architecture makes it a foundation the community can build on. Wazuh Ambassador Marcus de Almeida did exactly that with INVENTORY, an open-source asset management layer powered by the data Wazuh already collects through SysCollector.

Read more
Building Wazuh-AFD (Anti-Forensics Detection & Automated Active Response Framework)

Building Wazuh-AFD (Anti-Forensics Detection & Automated Active Response Framework)

September 26th 2026 / Ambassadors
By Muhammad Usman / Medium

This engineering manual provides a comprehensive, step-by-step blueprint for building Wazuh-AFD (Anti-Forensics Detection): an enterprise-grade detection and automated active response framework. Designed for cybersecurity students, junior analysts, and security engineers

Read more