Wazuh
FreeFree forever
Overview
Wazuh combines SIEM and XDR capabilities in a single open-source security platform. Its agent collects telemetry from endpoints while the server analyzes events and the indexer stores security data for investigation through a centralized dashboard. Features include vulnerability detection file integrity monitoring malware detection configuration assessment threat hunting automated response and compliance reporting.
Key features
- Unified SIEM and XDR platform
- Endpoint security agent
- Log and security event analysis
- Vulnerability detection
- File integrity monitoring
- Malware detection
- Configuration assessment
- Threat hunting
- Automated incident response
- Cloud and container security
- Compliance monitoring