Loading SaaS profile...
Loading SaaS profile...
OSSEC is an open-source, host-based intrusion detection system (HIDS) designed to monitor and protect multi-platform server environments. The software performs real-time log analysis, file integrity monitoring (FIM), Windows registry checking, rootkit detection, and automated active response across operating systems. Managed by Atomicorp, OSSEC offers a lightweight architecture that correlates security events from multiple host agents into a centralized manager. It provides enterprise IT and security operations teams with centralized compliance tracking and threat visibility.
Performs multi-platform log analysis and event correlation across Linux, Windows, macOS, and BSD systems. Monitors file integrity and Windows registry changes to detect unauthorized modifications or malware activity. Executes automated active responses such as IP blocking or account disabling upon detecting intrusion rules. Generates audit logs and compliance checks tailored to regulatory frameworks like PCI-DSS and HIPAA.
Free and open-source GNU GPL licensing eliminates per-agent software subscription overhead. Centralized manager-agent architecture allows scalable threat monitoring across thousands of distributed servers. Highly configurable decoders and rule engines enable custom detection logic for specialized application logs. Cross-platform support ensures unified security monitoring across legacy on-premise hardware and modern cloud instances.
Category: Utilities & System Tools
Team Size: 26-100
Visit WebsiteOSSEC is an open-source, host-based intrusion detection system (HIDS) designed to monitor and protect multi-platform server environments. The software performs real-time log analysis, file integrity monitoring (FIM), Windows registry checking, rootkit detection, and automated active response across operating systems. Managed by Atomicorp, OSSEC offers a lightweight architecture that correlates security events from multiple host agents into a centralized manager. It provides enterprise IT and security operations teams with centralized compliance tracking and threat visibility.
OSSEC was created in 2004 by security engineer Daniel B. Cid. Designed to replace heavy proprietary host security software, Cid built OSSEC as an open-source tool for log analysis and rootkit detection. The project was acquired by Third Brigade in 2008 and subsequently Trend Micro in 2009, before being transferred to the OSSEC Foundation and maintained commercially by Atomicorp.