Interesting, never heard of Wazuh until now. That looks closer to what Trellix allows.
The guy in charge of picking endpoint security products (whose team writes these rules) has tried Defender and found it lacking in comparison. Also, that link is about historical search for threat hunting, so I’m not sure if it’s the correct one.
Edit: I just saw the section about writing detections, but that seems to be more of a reactive than proactive approach. It still does the detection from searches.
I did not, had no idea about it. Unfortunately the mouse started to fall apart a bit and Logitech has very few MMO mice meeting my needs, so I decided to switch to Razer Naga Pro V2. I haven’t tried configuring it on Linux yet, as I’m pretty sure the major supporting app doesn’t have V2 support yet.
I might actually contribute back based on the steps listed in the open issue for it. It just requires time, effort, and motivation I don’t have right now.