Scan Dependency CVEs with Syft and Grype in GitHub Actions
Use SBOM-based scanning to identify vulnerable dependencies before running code locally or building images in CI.
Writing & analysis
Longer-form writing about operational trade-offs, lessons from implementation, and the decisions that make systems easier to trust.
Use SBOM-based scanning to identify vulnerable dependencies before running code locally or building images in CI.
A Wazuh-by-Ansible series covering deployment, SAML, configuration, rule tuning, malware detection, backups, and Zeek telemetry.
How to install Zeek on selected hosts, collect JSON logs with the Wazuh agent, and promote them into custom network-security rules.
How I backed up Wazuh index data to Google Cloud Storage, kept snapshots for 9 days, and trimmed live index data to 7 days with three small moves.
Build scheduled YARA malware scanning with Wazuh and Ansible to detect custom file signatures beyond traditional antivirus coverage.
How I added recurring ClamAV scans as a reporting layer on top of on-access protection, with clean Wazuh alerts and per-directory audit visibility.