Journal of Information Technology and Computer Engineering
Vol. 7 No. 2 (2023)

Real-time Defense Against Cyber Threats: Analyzing Wazuh's Effectiveness in Server Monitoring

Alanda, Alde (Unknown)
Mooduto, H.A (Unknown)
Hadi, Ronal (Unknown)



Article Info

Publish Date
30 Sep 2023

Abstract

As cloud computing grows exponentially, organizations face escalating cybersecurity challenges due to increased cyber threats and attacks on cloud-based networks. Monitoring cloud servers is one action that can be taken to improve the security. This can be done with the help of various server monitoring tools, such as Wazuh. The study investigates Wazuh's effectiveness in real-time monitoring of three AWS EC2 instance-based cloud servers. Wazuh's capabilities such as log data collection, malware detection, active response automation, and Docker container monitoring, are examined. The research reveals detailed insights into user activities, web server access, and database operations. Wazuh proves adept at tracking file integrity, detecting malware, and responding actively, as evidenced by the 342 alerts generated during a 24-hour monitoring period. The result shows that Wazuh is a particularly effective tool for protecting cloud environments from cyberattacks because it provides quick and ongoing security monitoring, which is essential for securing intricate cloud infrastructures.

Copyrights © 2023






Journal Info

Abbrev

JITCE

Publisher

Subject

Computer Science & IT Control & Systems Engineering Electrical & Electronics Engineering Engineering

Description

Journal of Information Technology and Computer Engineering (JITCE) is a scholarly periodical. JITCE will publish research papers, technical papers, conceptual papers, and case study reports. This journal is organized by Computer System Department at Universitas Andalas, Padang, West Sumatra, ...