Skip to content
#

detection-engine

Here are 11 public repositories matching this topic...

GUARDIUM is an intelligent Wazuh rule optimization framework designed to reduce false positives, improve alert accuracy, and assist SOC teams in maintaining high-quality SIEM detections. GUARDIUM combines rule analysis, threat context, and Large Language Models (LLMs) to automatically evaluate, explain, and optimize Wazuh rules.

  • Updated Jan 21, 2026
  • Python

Improve this page

Add a description, image, and links to the detection-engine topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the detection-engine topic, visit your repo's landing page and select "manage topics."

Learn more