Incident Management with Wazuh and Rootly

Incident Management with Wazuh and Rootly

February 7th 2026 / Ambassadors
By Saif Ullah / Medium

The article describes integrating Wazuh with Rootly to automatically turn security alerts into managed incidents.

Read more
Backup, Restore, and Diff the Wazuh Indexer Security State

Backup, Restore, and Diff the Wazuh Indexer Security State

February 4th 2026 / Ambassadors
By Kevin Branch / Bue Wolf Ninja

The article explains that Wazuh Indexer security settings are stored in a system index that is often excluded from normal backups.
It presents scripts to back up, restore, and compare (diff) this security state safely.
This helps prevent configuration loss and makes auditing and recovery easier.

Read more
Windows Security Monitoring with Wazuh

Windows Security Monitoring with Wazuh

February 3rd 2026 / Ambassadors
By Marco Teixeira / Medium

Wazuh is used to monitor Windows security by collecting and correlating Event Logs, Sysmon, Defender, and Active Directory data.
The article explains how to configure agents, rules, and alerts to detect suspicious activity.
It highlights improving detection through log correlation and behavioral analysis.

Read more
Stop Creating Decoders Manually: Introducing the Wazuh Custom Decoder Generator Tool

Stop Creating Decoders Manually: Introducing the Wazuh Custom Decoder Generator Tool

February 3rd 2026 / Ambassadors
By Dileep Kumar Chokkapu / Medium

The article highlights the difficulty of manually creating Wazuh decoders for diverse log formats.
It introduces a Custom Decoder Generator that automatically builds decoders from sample logs.
This tool saves time, reduces errors, and simplifies testing and customization.

Read more
TROUBLESHOOTING WAZUH — COMPREHENSIVE GUIDE

TROUBLESHOOTING WAZUH — COMPREHENSIVE GUIDE

February 1st 2026 / Ambassadors
By Michał Bednarczyk / Medium

The article explains how to troubleshoot common Wazuh issues by checking the status and logs of its main components.

Read more
Wazuh Anomaly Detection for LOLBins

Wazuh Anomaly Detection for LOLBins

January 30th 2026 / Ambassadors
By Jimmy Yammine / LinkedIn

A practical implementation guide on using Wazuh 𝗔𝗻𝗼𝗺𝗮𝗹𝘆 𝗗𝗲𝘁𝗲𝗰𝘁𝗶𝗼𝗻 to identify abnormal usage of 𝗪𝗶𝗻𝗱𝗼𝘄𝘀 𝗟𝗢𝗟𝗕𝗶𝗻𝘀 with OpenSearch ML.

Read more