Wazuh
What is it?
Wazuh is a security operations tool
Wazuh - Open Source XDR. Open Source SIEM.
How do we use it?
We use wazuh for many things:
Tracking vulnerable packages
Collecting and analysing logs
Looking for misconfigurations and breaches of compliance
Looking for indicators of compromise
Addressing vulnerabilities and incidents
How might it affect you?
You will see the wazuh-agent
service running on your instances
The agent may make various changes to your instances to either enforce compliance or address possible compromises
Do you need to do anything?
We will contact you about any issues found and advise you of remediations.