Hello Mehran,
We have different ways to keep data exfiltration, such as FIM, (with which we can monitor specific directories for changes and then make changes there and observe the alerts that are generated), logcollector (to monitors configured files and commands for new log messages) or Azure and AWS cloud integration.
Please, tell me your use case if you want a more specific answer.
I hope I helped you.
Best regards.
Does Wazuh support data exfiltration? If not any plan to develop?
Thanks
--
You received this message because you are subscribed to the Google Groups "Wazuh mailing list" group.
To unsubscribe from this group and stop receiving emails from it, send an email to wazuh+un...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/wazuh/64e7053b-89b0-41af-b8f6-dcbcf2335d66%40googlegroups.com.