security-onion VS wazuh-ruleset

Compare security-onion vs wazuh-ruleset and see what are their differences.

Our great sponsors
  • WorkOS - The modern identity platform for B2B SaaS
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • SaaSHub - Software Alternatives and Reviews
security-onion wazuh-ruleset
3 1
2,900 319
- -
3.9 4.7
about 3 years ago over 2 years ago
Python
- -
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

security-onion

Posts with mentions or reviews of security-onion. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2022-02-02.

wazuh-ruleset

Posts with mentions or reviews of wazuh-ruleset. We have used some of these posts to build our list of alternatives and similar projects.
  • Windows events alerts with Wazuh
    1 project | /r/Wazuh | 19 Mar 2021
    In this repository https://github.com/wazuh/wazuh-ruleset you can find the decoders and rules that wazuh-manager has by default (all these files are being migrated to the repository wazuh/wazuh https://github.com/wazuh/wazuh).

What are some alternatives?

When comparing security-onion and wazuh-ruleset you can also consider the following projects:

Wazuh - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.

sigma - Main Sigma Rule Repository

DetectionLab - Automate the creation of a lab environment complete with security tooling and logging best practices

Fail2Ban - Daemon to ban hosts that cause multiple authentication errors

Sending your docker logs - Sending logs from docker containers to Logit.io

openscap - NIST Certified SCAP 1.2 toolkit

cyberchef-recipes - A list of cyber-chef recipes and curated links

openwisp-monitoring - Network monitoring system written in Python and Django, designed to be extensible, programmable, scalable and easy to use by end users: once the system is configured, monitoring checks, alerts and metric collection happens automatically.

Microsoft-365-Defender-Hunting-Queries - Sample queries for Advanced hunting in Microsoft 365 Defender

loglizer - A machine learning toolkit for log-based anomaly detection [ISSRE'16]

snort-rules - An UNOFFICIAL Git Repository of Snort Rules(IDS rules) Releases. [UnavailableForLegalReasons - Repository access blocked]

Check-WP-CVE-2020-35489 - The (WordPress) website test script can be exploited for Unlimited File Upload via CVE-2020-35489