RedELK VS wazuh-ruleset

Compare RedELK vs wazuh-ruleset and see what are their differences.

Our great sponsors
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
  • SaaSHub - Software Alternatives and Reviews
RedELK wazuh-ruleset
5 1
2,288 319
2.7% -
7.1 4.7
3 months ago over 2 years ago
Python Python
BSD 3-clause "New" or "Revised" License -
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

RedELK

Posts with mentions or reviews of RedELK. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-06-04.

wazuh-ruleset

Posts with mentions or reviews of wazuh-ruleset. We have used some of these posts to build our list of alternatives and similar projects.
  • Windows events alerts with Wazuh
    1 project | /r/Wazuh | 19 Mar 2021
    In this repository https://github.com/wazuh/wazuh-ruleset you can find the decoders and rules that wazuh-manager has by default (all these files are being migrated to the repository wazuh/wazuh https://github.com/wazuh/wazuh).

What are some alternatives?

When comparing RedELK and wazuh-ruleset you can also consider the following projects:

dsiem - Security event correlation engine for ELK stack

sigma - Main Sigma Rule Repository

HELK - The Hunting ELK

Fail2Ban - Daemon to ban hosts that cause multiple authentication errors

wazuh-dashboard-plugins - Plugins for Wazuh Dashboard

openscap - NIST Certified SCAP 1.2 toolkit

awesome-pcaptools - A collection of tools developed by other researchers in the Computer Science area to process network traces. All the right reserved for the original authors.

openwisp-monitoring - Network monitoring system written in Python and Django, designed to be extensible, programmable, scalable and easy to use by end users: once the system is configured, monitoring checks, alerts and metric collection happens automatically.

praeco - Elasticsearch alerting made simple.

loglizer - A machine learning toolkit for log-based anomaly detection [ISSRE'16]

masscan - TCP port scanner, spews SYN packets asynchronously, scanning entire Internet in under 5 minutes.

Check-WP-CVE-2020-35489 - The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489