For सेल्फ-होस्टेड SIEM, the strongest matches are wazuh/wazuh (Wazuh is an open-source SIEM platform that collects and), security-onion-solutions/securityonion (Security Onion is a full-featured open-source SIEM platform that) and crowdsecurity/crowdsec (CrowdSec is a self-hostable collaborative security engine that ingests). Each is ranked by relevance to your query, popularity and recent activity.
ये ओपन-सोर्स प्लेटफॉर्म इंफ्रास्ट्रक्चर के लिए सेंट्रलाइज्ड लॉग कलेक्शन, थ्रेट डिटेक्शन और सिक्योरिटी इवेंट कोरिलेशन प्रदान करते हैं।
Wazuh is an integrated security platform that combines endpoint detection and response, security information and event management, and cloud workload protection. It functions as a centralized system for collecting telemetry, aggregating logs, and correlating events across distributed infrastructure to maintain security and integrity. The platform distinguishes itself through its active response orchestration, which allows for the automated execution of scripts on remote endpoints to neutralize threats in real time. It provides deep visibility into system activity through file integrity monito
Wazuh is an open-source SIEM platform that collects and correlates security logs across distributed infrastructure, providing real-time alerting, automated response, and a centralized dashboard, which directly matches your self-hosted SIEM requirements.
Security Onion is a security information and event management platform and network security monitoring suite. It functions as an intrusion detection system and a network traffic analysis tool designed to identify malicious activity and network intrusions through signature-based detection and host-based monitoring. The platform integrates a security case management system to organize investigations by tracking detections and grouping related security events. It provides capabilities for full packet capture, network metadata extraction, and the collection and indexing of security logs from dive
Security Onion is a full-featured open-source SIEM platform that bundles log collection, correlation, alerting, and visualization tools, making it a direct match for self-hosted security monitoring and incident response.
CrowdSec is a collaborative, distributed security engine designed for threat detection and infrastructure protection. It functions as an intrusion detection system that parses logs and network traffic to identify malicious patterns, utilizing a bucket-based threshold detection model to aggregate events and trigger alerts. The platform is built on a modular architecture that includes a centralized local API server for managing security signals and a relational database for persistent storage of remediation decisions. What distinguishes the project is its decoupled enforcement model, which offl
CrowdSec is a self-hostable collaborative security engine that ingests and analyzes logs for threat detection and alerts, but it positions itself as an intrusion detection system (IDS/IPS) more than a full SIEM with built-in correlation, dashboarding, or incident management — so it fits the SIEM category in spirit but lacks the comprehensive feature set of a dedicated SIEM platform.