FAQ: Threat Hunting with IPS/IDS

This FAQ, collaboratively created by the community, addresses the content of the lesson titled “FAQ: Threat Hunting with IPS/IDS”

You can locate this exercise within the LetsDefend content:

Threat Hunting with IPS/IDS

If there are any specific questions regarding the lesson or exercise, please don’t hesitate to ask them here.

Hey team,
So i was going through this exercise and in that on the Practical lab page, when we open the lab environment, it will direct us to an IP, which states Wazuh login page. In the lab it was already mentioned that Wazuh will be acting as the SIEM solution. But i dont know what credentials should i use to log into Wazuh. Like i tried my lefsdend creds, but it was not working, i checked some random creds, still not working.
Could you help me in how to tackle this case.

Check the buttons under the “Lab Environment” section(connect issue) while the lab is running. You will see the credentials. (username: letsdefend password: letsdefend123)