Submitting the form

Searching...

All results for 'Wazuh'

Showing 12 of 386 results

Blog / Engineering / Managing multiple Wazuh clusters with Cross-Cluster Search

Cross-Cluster Search (CCS) in Wazuh allows alerts from remote Wazuh clusters to be queried and viewed at a centralized location. The centralized location known as the Cross-Cluster Search (CCS) environment is trusted by the remote Wazuh clusters, enabling it to perform search operations. This lets security alerts be seen via a single Wazuh dashboard at […]

Blog / Engineering / Wazuh multi-site implementation

Wazuh multi-site implementation offers a solution that helps organizations unify their security monitoring capabilities across multiple geographically dispersed locations or sites. This implementation focuses on having Wazuh cluster components that collect, process, and store logs from the Wazuh agents within each site. A single Wazuh dashboard displays security alerts generated from events occurring in monitored […]

Blog / Engineering / Wazuh agent deployment strategies for persistence in Kubernetes

The Wazuh agent is a component of the Wazuh SIEM and XDR solution that protects monitored endpoints such as servers, laptops, and virtual machines. Deploying Wazuh agents in containerized endpoints orchestrated by Kubernetes requires a more resilient deployment strategy. In containerized environments where workloads are ephemeral and dynamic, maintaining a persistent identity and configuration for […]

Blog / Engineering / Measuring Wazuh performance and operational efficiency

Measuring performance and operational efficiency of your XDR/SIEM ensures that it runs reliably, scales effectively, and delivers timely security insights. Monitoring metrics like resource usage, connection times, and log processing helps identify bottlenecks, optimize configurations, and prevent downtime. It also ensures that threat detection and intelligence coverage remain consistent, even under high workloads. The Wazuh […]

Migrating from OSSEC to Wazuh

Blog / Engineering / Migrating from OSSEC to Wazuh

OSSEC is an open source host-based Intrusion Detection System (IDS) that provides log analysis, integrity monitoring, real-time alerting, and active response capabilities. In recent years, the OSSEC project has been in maintenance mode with limited emphasis on active development.  In 2015, the Wazuh team decided to fork the project, expanding upon the OSSEC core functionalities […]

Blog / News / Wazuh and Infocean Technology Announce Partnership to Strengthen Wazuh Engagement Throughout APAC Region.

San Jose, California, February 2026 – Wazuh, the leading open-source Security Information and Event Management (SIEM) and Extended Detection and Response (XDR) solution, announced a partnership with Infocean Technology Company Limited, a cybersecurity provider across the APAC region. Through this partnership, Infocean Technology delivers a cost-effective SIEM solution designed to address the security needs of […]

Blog / Engineering / Wazuh integration with Amazon Security Lake as a custom source

Amazon Security Lake is a fully managed service that helps organizations aggregate, store, and analyze security data from various sources, such as AWS services, on-premise logs, and third-party SaaS applications. Security administrators can use AWS services like Athena to query the security data, which gives them insight into potential threats and vulnerabilities across an organization’s […]

Blog / Engineering / Automating security reporting and response with Wazuh and Shuffle

Security teams process large volumes of alerts each day, which makes it difficult to identify recurring threats, prioritize incidents, and respond consistently. While continuous monitoring is essential, organizations can also benefit from scheduled summaries that consolidate alert activity over a defined period. These reports help analysts recognize patterns, surface recurring issues, and track risk trends […]

Blog / Engineering / How Wazuh provides endpoint security without kernel-level access

User mode and kernel mode are two operating states within a computer system that define different levels of access and control to the hardware resources of a computer. Choosing the right mode between the two is important, as it affects the security and stability of the computer.  User mode is a restricted operating environment where […]

Blog / Engineering / Ransomware protection on Windows with Wazuh

Providing Ransomware protection on our endpoints is important as these attacks have become one of the most prevalent and damaging cyber threats faced by organizations and individuals. These types of attacks continue to rise due to the lucrative nature of ransom payments. Ransomware attacks adopt sophisticated techniques, such as advanced encryption algorithms and social engineering […]

No results for 'Wazuh'

Please make sure that all words are spelled correctly.