EDR Basics "Activity 35 Error"

I am performing activity 31 to 35 multiple times but Wazuh not generating any new alert and I need this alert to answer 2nd and 4th task

Can anyone help this out


PFA - I’m performing all steps right and also Artomic is running

I am having the same issue not able to get the last answer the attack doesn’t work

I just ran through the lab, and it does work as written:

Some gotchas are to be sure you have the agent installed, be sure you have updated ossec.conf to send sysmon data, and be sure the wazuh service is running after you restart it. If not there is a syntax error in ossec.conf.

1 Like

Thank you so much for your advice I will do it again

I got the same result, but it appears the system is not accepting the number one answer. What’s the name of the agent running on windows?