#wazuh — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #wazuh, aggregated by home.social.
-
Ultimate Guide to #VPS #Security Hardening
This article provides a guide to VPS security hardening.
Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
Continued 👉 https://blog.radwebhosting.com/vps-security-hardening/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #prometheus #wazuh #vpsguide #rockylinux #grafana #ossec #netdata #logwatch #ufw #firewalld -
Ultimate Guide to #VPS #Security Hardening
This article provides a guide to VPS security hardening.
Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
Continued 👉 https://blog.radwebhosting.com/vps-security-hardening/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #prometheus #wazuh #vpsguide #rockylinux #grafana #ossec #netdata #logwatch #ufw #firewalld -
Ultimate Guide to #VPS #Security Hardening
This article provides a guide to VPS security hardening.
Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
Continued 👉 https://blog.radwebhosting.com/vps-security-hardening/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #prometheus #wazuh #vpsguide #rockylinux #grafana #ossec #netdata #logwatch #ufw #firewalld -
Ultimate Guide to #VPS #Security Hardening
This article provides a guide to VPS security hardening.
Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
Continued 👉 https://blog.radwebhosting.com/vps-security-hardening/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #grafana #netdata #ufw #wazuh #vpsguide #ossec #firewalld #logwatch #prometheus #rockylinux -
Ultimate Guide to #VPS #Security Hardening
This article provides a guide to VPS security hardening.
Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
Continued 👉 https://blog.radwebhosting.com/vps-security-hardening/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #grafana #netdata #ufw #wazuh #vpsguide #ossec #firewalld #logwatch #prometheus #rockylinux -
Ultimate Guide to #VPS #Security Hardening
This article provides a guide to VPS security hardening.
Securing a Virtual Private Server (VPS) is not a one-time task—it’s an ongoing discipline. Whether you’re hosting websites, applications, databases, or client workloads, a hardened VPS dramatically reduces the risk of compromise, data loss, downtime, and reputation ...
Continued 👉 https://blog.radwebhosting.com/vps-security-hardening/?utm_source=mastodon&utm_medium=social&utm_campaign=mastodon.social #grafana #netdata #ufw #wazuh #vpsguide #ossec #firewalld #logwatch #prometheus #rockylinux -
three critical (9.1) advisories for wazuh i reported were published today. same trust assumption broken in three places: the cluster fernet key authenticates membership, and the cluster protocol then lets that peer pick filesystem paths.
CVE-2026-49441: the peer-supplied metadata key in process_files_from_worker is used directly as the destination path. write etc/ossec.conf, root rce via wazuh-logcollector.
CVE-2026-48024: same function, merged-file branch. traversal in the merged header name and in merge_type.
CVE-2026-48162: the DAPI tmp_file field is joined to WAZUH_PATH with os.path.join and shipped back to the peer. absolute paths win, so it reads anything the wazuh user can open. grab private_key.pem, forge ES512 admin jwts offline. survives cluster key rotation, since the jwt keypair is a different scope.
patched in 4.14.6.
https://github.com/wazuh/wazuh/security/advisories/GHSA-3v57-hgvj-3vj2
https://github.com/wazuh/wazuh/security/advisories/GHSA-gh4h-fx78-q8xc
https://github.com/wazuh/wazuh/security/advisories/GHSA-r6f5-h662-8ffc
#Wazuh #InfoSec #CVE #SIEM #ResponsibleDisclosure #CyberSecurity
-
Since last Saturday, we managed to generate 6.3kWh with our new solar panel. Meanwhile we are migrating our servers and services from low power #Xeon #rack servers, to ultra low power single board computers #sbc with #arm processors. We use #RaspberryPi5 running #raspios and #odroidm1 running #armbian. Most demanding servers migrated nicely. Last week we migrated #nextcloud, and today #zabbix and #wazuh. Performance is better than expected!