home.social

#wazuh — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #wazuh, aggregated by home.social.

fetched live
  1. Most SIEMs are bloated black boxes designed to drain your budget. Build an open-source threat hunting setup with Wazuh using actual production configs. #Wazuh #SIEM #Security

    valtersit.com/guides/security/

  2. Most SIEMs are bloated black boxes designed to drain your budget. Build an open-source threat hunting setup with Wazuh using actual production configs. #Wazuh #SIEM #Security

    valtersit.com/guides/security/

  3. Most SIEMs are bloated black boxes designed to drain your budget. Build an open-source threat hunting setup with Wazuh using actual production configs. #Wazuh #SIEM #Security

    valtersit.com/guides/security/

  4. Most SIEMs are bloated black boxes designed to drain your budget. Build an open-source threat hunting setup with Wazuh using actual production configs. #Wazuh #SIEM #Security

    valtersit.com/guides/security/

  5. Most SIEMs are bloated black boxes designed to drain your budget. Build an open-source threat hunting setup with Wazuh using actual production configs. #Wazuh #SIEM #Security

    valtersit.com/guides/security/

  6. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #prometheus #rockylinux #vpsguide #ufw #firewalld #netdata #logwatch #wazuh #ossec #grafana

  7. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #prometheus #rockylinux #vpsguide #ufw #firewalld #netdata #logwatch #wazuh #ossec #grafana

  8. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #prometheus #rockylinux #vpsguide #ufw #firewalld #netdata #logwatch #wazuh #ossec #grafana

  9. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing ...
    Continued 👉 #prometheus #logwatch #firewalld #vpsguide #ufw #ossec #wazuh #rockylinux #grafana #netdata

    Ultimate Guide to VPS Security...

  10. Wazuh без ограничений дашборда: работаем напрямую с индексами

    На связи Андрей, руководитель направления Под кат →

    habr.com/ru/companies/selectel

    #selectel #wazuh #python

  11. Wazuh без ограничений дашборда: работаем напрямую с индексами

    На связи Андрей, руководитель направления Под кат →

    habr.com/ru/companies/selectel

    #selectel #wazuh #python

  12. Wazuh без ограничений дашборда: работаем напрямую с индексами

    На связи Андрей, руководитель направления Под кат →

    habr.com/ru/companies/selectel

    #selectel #wazuh #python

  13. Как собрать базовый стек для защиты инфраструктуры на open source

    Привет, Хабр! На связи Виктор Иевлев, я руковожу отделом информационной безопасности в «Гарде». Полноценную защиту корпоративной инфраструктуры сегодня сложно представить без коммерческих средств защиты информации. Однако далеко не каждая компания может позволить себе сразу построить такой стек. Стартапы, небольшие организации, компании с ограниченным бюджетом зачастую вынуждены искать компромиссные решения и использовать open source. Я уже рассказывал в одной из статей об open source-сканерах уязвимостей. В этот раз предлагаю остановиться на защитных решениях и попробовать собрать минимальный стек на базе open source. Узнать подробности

    habr.com/ru/companies/garda/ar

    #open_source #firewall #siem #wazuh #ids #xdr #защита_информации #информационная_безопасность

  14. Как собрать базовый стек для защиты инфраструктуры на open source

    Привет, Хабр! На связи Виктор Иевлев, я руковожу отделом информационной безопасности в «Гарде». Полноценную защиту корпоративной инфраструктуры сегодня сложно представить без коммерческих средств защиты информации. Однако далеко не каждая компания может позволить себе сразу построить такой стек. Стартапы, небольшие организации, компании с ограниченным бюджетом зачастую вынуждены искать компромиссные решения и использовать open source. Я уже рассказывал в одной из статей об open source-сканерах уязвимостей. В этот раз предлагаю остановиться на защитных решениях и попробовать собрать минимальный стек на базе open source. Узнать подробности

    habr.com/ru/companies/garda/ar

    #open_source #firewall #siem #wazuh #ids #xdr #защита_информации #информационная_безопасность

  15. Как собрать базовый стек для защиты инфраструктуры на open source

    Привет, Хабр! На связи Виктор Иевлев, я руковожу отделом информационной безопасности в «Гарде». Полноценную защиту корпоративной инфраструктуры сегодня сложно представить без коммерческих средств защиты информации. Однако далеко не каждая компания может позволить себе сразу построить такой стек. Стартапы, небольшие организации, компании с ограниченным бюджетом зачастую вынуждены искать компромиссные решения и использовать open source. Я уже рассказывал в одной из статей об open source-сканерах уязвимостей. В этот раз предлагаю остановиться на защитных решениях и попробовать собрать минимальный стек на базе open source. Узнать подробности

    habr.com/ru/companies/garda/ar

    #open_source #firewall #siem #wazuh #ids #xdr #защита_информации #информационная_безопасность

  16. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #firewalld #wazuh #vpsguide #rockylinux #ufw #logwatch #netdata #prometheus #grafana

  17. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #firewalld #wazuh #vpsguide #rockylinux #ufw #logwatch #netdata #prometheus #grafana

  18. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #firewalld #wazuh #vpsguide #rockylinux #ufw #logwatch #netdata #prometheus #grafana

  19. ⚠️ #Wazuh cluster flaws enable manager takeover

    Cluster vulnerabilities can expose secrets, bypass #RBAC and chain into privileged actions or full manager compromise.
    🔗 read more: securityonline.info/...

    #ransomNews #cybersecurity

  20. ⚠️ #Wazuh cluster flaws enable manager takeover

    Cluster vulnerabilities can expose secrets, bypass #RBAC and chain into privileged actions or full manager compromise.
    🔗 read more: securityonline.info/...

    #ransomNews #cybersecurity

  21. ⚠️ #Wazuh cluster flaws enable manager takeover

    Cluster vulnerabilities can expose secrets, bypass #RBAC and chain into privileged actions or full manager compromise.
    🔗 read more: securityonline.info/...

    #ransomNews #cybersecurity

  22. ⚠️ #Wazuh cluster flaws enable manager takeover

    Cluster vulnerabilities can expose secrets, bypass #RBAC and chain into privileged actions or full manager compromise.
    🔗 read more: securityonline.info/...

    #ransomNews #cybersecurity

  23. ⚠️ #Wazuh cluster flaws enable manager takeover

    Cluster vulnerabilities can expose secrets, bypass #RBAC and chain into privileged actions or full manager compromise.
    🔗 read more: securityonline.info/...

    #ransomNews #cybersecurity

  24. Tired of Wazuh false positives from broad rule groups like 'syslog' or 'generic'? Query wazuh.db directly: join rules & groups tables to count per group, then tighten overly permissive ones. Works on Wazuh 4.x. #wazuh #sqlite #ValtersIT

    valtersit.com/vault/detect-ove

  25. Tired of Wazuh false positives from broad rule groups like 'syslog' or 'generic'? Query wazuh.db directly: join rules & groups tables to count per group, then tighten overly permissive ones. Works on Wazuh 4.x. #wazuh #sqlite #ValtersIT

    valtersit.com/vault/detect-ove

  26. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #rockylinux #prometheus #logwatch #firewalld #vpsguide #grafana #ufw #netdata #wazuh

  27. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #rockylinux #prometheus #logwatch #firewalld #vpsguide #grafana #ufw #netdata #wazuh

  28. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #rockylinux #prometheus #logwatch #firewalld #vpsguide #grafana #ufw #netdata #wazuh

  29. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #rockylinux #prometheus #logwatch #firewalld #vpsguide #grafana #ufw #netdata #wazuh

  30. three critical (9.1) advisories for wazuh i reported were published today. same trust assumption broken in three places: the cluster fernet key authenticates membership, and the cluster protocol then lets that peer pick filesystem paths.

    CVE-2026-49441: the peer-supplied metadata key in process_files_from_worker is used directly as the destination path. write etc/ossec.conf, root rce via wazuh-logcollector.

    CVE-2026-48024: same function, merged-file branch. traversal in the merged header name and in merge_type.

    CVE-2026-48162: the DAPI tmp_file field is joined to WAZUH_PATH with os.path.join and shipped back to the peer. absolute paths win, so it reads anything the wazuh user can open. grab private_key.pem, forge ES512 admin jwts offline. survives cluster key rotation, since the jwt keypair is a different scope.

    patched in 4.14.6.

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    #Wazuh #InfoSec #CVE #SIEM #ResponsibleDisclosure #CyberSecurity

  31. three critical (9.1) advisories for wazuh i reported were published today. same trust assumption broken in three places: the cluster fernet key authenticates membership, and the cluster protocol then lets that peer pick filesystem paths.

    CVE-2026-49441: the peer-supplied metadata key in process_files_from_worker is used directly as the destination path. write etc/ossec.conf, root rce via wazuh-logcollector.

    CVE-2026-48024: same function, merged-file branch. traversal in the merged header name and in merge_type.

    CVE-2026-48162: the DAPI tmp_file field is joined to WAZUH_PATH with os.path.join and shipped back to the peer. absolute paths win, so it reads anything the wazuh user can open. grab private_key.pem, forge ES512 admin jwts offline. survives cluster key rotation, since the jwt keypair is a different scope.

    patched in 4.14.6.

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    #Wazuh #InfoSec #CVE #SIEM #ResponsibleDisclosure #CyberSecurity

  32. three critical (9.1) advisories for wazuh i reported were published today. same trust assumption broken in three places: the cluster fernet key authenticates membership, and the cluster protocol then lets that peer pick filesystem paths.

    CVE-2026-49441: the peer-supplied metadata key in process_files_from_worker is used directly as the destination path. write etc/ossec.conf, root rce via wazuh-logcollector.

    CVE-2026-48024: same function, merged-file branch. traversal in the merged header name and in merge_type.

    CVE-2026-48162: the DAPI tmp_file field is joined to WAZUH_PATH with os.path.join and shipped back to the peer. absolute paths win, so it reads anything the wazuh user can open. grab private_key.pem, forge ES512 admin jwts offline. survives cluster key rotation, since the jwt keypair is a different scope.

    patched in 4.14.6.

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    #Wazuh #InfoSec #CVE #SIEM #ResponsibleDisclosure #CyberSecurity

  33. three critical (9.1) advisories for wazuh i reported were published today. same trust assumption broken in three places: the cluster fernet key authenticates membership, and the cluster protocol then lets that peer pick filesystem paths.

    CVE-2026-49441: the peer-supplied metadata key in process_files_from_worker is used directly as the destination path. write etc/ossec.conf, root rce via wazuh-logcollector.

    CVE-2026-48024: same function, merged-file branch. traversal in the merged header name and in merge_type.

    CVE-2026-48162: the DAPI tmp_file field is joined to WAZUH_PATH with os.path.join and shipped back to the peer. absolute paths win, so it reads anything the wazuh user can open. grab private_key.pem, forge ES512 admin jwts offline. survives cluster key rotation, since the jwt keypair is a different scope.

    patched in 4.14.6.

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    #Wazuh #InfoSec #CVE #SIEM #ResponsibleDisclosure #CyberSecurity

  34. three critical (9.1) advisories for wazuh i reported were published today. same trust assumption broken in three places: the cluster fernet key authenticates membership, and the cluster protocol then lets that peer pick filesystem paths.

    CVE-2026-49441: the peer-supplied metadata key in process_files_from_worker is used directly as the destination path. write etc/ossec.conf, root rce via wazuh-logcollector.

    CVE-2026-48024: same function, merged-file branch. traversal in the merged header name and in merge_type.

    CVE-2026-48162: the DAPI tmp_file field is joined to WAZUH_PATH with os.path.join and shipped back to the peer. absolute paths win, so it reads anything the wazuh user can open. grab private_key.pem, forge ES512 admin jwts offline. survives cluster key rotation, since the jwt keypair is a different scope.

    patched in 4.14.6.

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    github.com/wazuh/wazuh/securit

    #Wazuh #InfoSec #CVE #SIEM #ResponsibleDisclosure #CyberSecurity

  35. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ...
    Continued 👉 #ufw #logwatch #grafana #wazuh #prometheus #rockylinux #ossec #firewalld #vpsguide #netdata

    Ultimate Guide to VPS Security...

  36. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #rockylinux #ufw #prometheus #netdata #firewalld #logwatch #grafana #wazuh #vpsguide

  37. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #rockylinux #ufw #prometheus #netdata #firewalld #logwatch #grafana #wazuh #vpsguide

  38. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and ...
    Continued 👉 blog.radwebhosting.com/vps-sec #ossec #rockylinux #ufw #prometheus #netdata #firewalld #logwatch #grafana #wazuh #vpsguide

  39. Ultimate Guide to #VPS #Security Hardening

    This article provides a guide to VPS security hardening.

    Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ...
    Continued 👉 #ufw #vpsguide #firewalld #grafana #wazuh #ossec #prometheus #netdata #logwatch #rockylinux

    Ultimate Guide to VPS Security...

  40. Panel auto-hospedado, gratuito y de código abierto para gestionar nuestra red LAN y NAS:
    wazuh.com/
    #wazuh

  41. Panel auto-hospedado, gratuito y de código abierto para gestionar nuestra red LAN y NAS:
    wazuh.com/
    #wazuh

  42. Panel auto-hospedado, gratuito y de código abierto para gestionar nuestra red LAN y NAS:
    wazuh.com/
    #wazuh

  43. Panel auto-hospedado, gratuito y de código abierto para gestionar nuestra red LAN y NAS:
    wazuh.com/
    #wazuh

  44. Panel auto-hospedado, gratuito y de código abierto para gestionar nuestra red LAN y NAS:
    wazuh.com/
    #wazuh