H2FSpawn/wazuh-mikrotik-decoder
Wazuh decoders and detection rules for MikroTik RouterOS syslog output. Covers firewall drops, DHCP leases, system events, login failures, and brute force detection. Tested on RouterOS 7.x and Wazuh 4.12–4.14.
GitHub repository with 12 stars and 0 forks.
Topics: decoder, homelab, mikrotik, router-os, routeros, siem, syslog, wazuh, wazuh-integration