- Home
- Security Operations
- Extended Detection and Response
- Wazuh Extended Detection and Response (XDR)
Wazuh Extended Detection and Response (XDR)
Open source XDR platform for threat detection and response across IT layers

Wazuh Extended Detection and Response (XDR)
Open source XDR platform for threat detection and response across IT layers
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Wazuh Extended Detection and Response (XDR) Description
Wazuh Extended Detection and Response (XDR) is an open source security platform that provides threat detection, analysis, and response capabilities across multiple IT infrastructure layers. The platform collects telemetry from endpoints, network devices, cloud workloads, third-party APIs, and other sources for unified security monitoring. The platform includes a universal agent that runs on common operating systems to perform malware detection, file integrity monitoring, vulnerability assessment, system configuration scanning, and automated threat response. Wazuh maps detected events to adversary tactics and techniques, ingests third-party threat intelligence data, and supports custom queries for threat hunting. Wazuh provides behavioral analysis capabilities that monitor file integrity, network traffic, user behavior, and system performance metrics to identify deviations from normal patterns. The active response module automatically executes built-in or custom response actions to mitigate threats according to incident response plans. The platform includes cloud workload protection with built-in integrations for cloud services, supporting native and hybrid cloud environments including container infrastructure. It performs regulatory compliance checks against standards such as PCI-DSS, HIPAA, and GDPR, and generates compliance reports. Wazuh ingests telemetry via syslog or APIs from third-party applications, devices, and workloads including cloud providers and SaaS vendors. The platform is customizable and maintained by a community of users and developers.
Wazuh Extended Detection and Response (XDR) FAQ
Common questions about Wazuh Extended Detection and Response (XDR) including features, pricing, alternatives, and user reviews.
Wazuh Extended Detection and Response (XDR) is Open source XDR platform for threat detection and response across IT layers developed by Wazuh. It is a Security Operations solution designed to help security teams with XDR, Open Source, Threat Detection.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox