01Comprehensive Log Analysis (auth.log, syslog, web logs, journalctl)
02Threat Intelligence Lookups (IP reputation via AbuseIPDB, file/domain reputation via VirusTotal)
03System Hardening & Integrity Checks (Lynis audit, rootkit scans, file hashing, SUID/SGID file discovery)
04Real-time Network Monitoring (listening ports, active connections, traffic capture)
050 GitHub stars
06Wazuh SIEM Integration (agent status, manager logs, alerts, indexer search)