Wazuh by Wazuh is an open-source cybersecurity platform that integrates Security Information and Event Management (SIEM) and Extended Detection and Response (XDR) capabilities. It provides robust security monitoring and protection for IT assets, including endpoints, network devices, cloud workloads, and applications. Wazuh collects and analyzes telemetry from various sources to detect, analyze, and respond to threats across multiple IT infrastructure layers. It includes components such as the Wazuh indexer, Wazuh server, Wazuh dashboard, and Wazuh agents. The Wazuh indexer is a scalable full-text search and analytics engine that indexes and stores alerts generated by the Wazuh server. The Wazuh server manages agents, configures them remotely, and analyzes data using threat intelligence. The Wazuh dashboard is a web interface for data visualization, analysis, and management. Wazuh agents are installed on endpoints to provide threat prevention, detection, and response capabilities. Wazuh supports integration with third-party solutions and cloud platforms, enhancing its functionality and ensuring compliance with regulatory standards.