What is Nostr?
MalwareLab /
npub1ksx…07l5
2024-02-02 21:02:41
in reply to nevent1q…c6gm

MalwareLab on Nostr: Yeah, Wazuh is great tool, it provides good visibility into your infrastructure. ...

Yeah, Wazuh is great tool, it provides good visibility into your infrastructure. #Velociraptor is another example, but more useful for incident response and threat hunting in larger networks.
In top of that, network monitoring with IDS such as #suricata + ET Open signatures is useful addition especially for detect threats and anomalies originating from devices without wazuh installed. Analyzing traffic from IoT, guest laptops and smartphones and identification of all devices connected to the network is often very educative exercise.
Author Public Key
npub1ksxp2k6449prsqz6e3uq4k87hzw64v6c6u7zqdw9u99ev2y7gfpsnh07l5