A simulated Wazuh 4.14 server for the Crumble & Co. course: dashboard, SSH terminal, the crumble-sim log simulator with the 65-minute storyline, and a Windows laptop for the agent. Nothing to install: use it when the course VM does not run on your laptop.
Agent groups, deploy the Windows agent, FIM, the nine simulated log sources, syslog.
Discover and DQL on the archives: Bronze, Silver and Gold hunting questions on the storyline.
Decoders, rules, CDB lists and correlation rules with wazuh-logtest, exactly as on a real manager.
Detection pack, SOC dashboard with visualizations, incident report.
Reset everything in this browser: delete all saved lab data.