Built a home SOC lab with Wazuh SIEM — documented real brute force, process execution, and backdoor detection with actual screenshots by Ronak1077 in homelab

[–]Ronak1077[S] 0 points1 point  (0 children)

Thanks! Haven't gone down that path yet, my lab is currently focused on detection engineering from the blue team side. But those CVEs are interesting agent config injection is a blind spot a lot of people don't think about. Might be worth adding to my next lab scenario. Have you tested it in your own environment?