From https://github.com/DtxdF/serpico:
"serpico is a security scanner for FreeBSD packages and releases that compares the versions against a list of versions marked as vulnerable, then displays vulnerability information in a JSON-compact format for easy analysis by other security tools."
Context
Tracking information about XDR/SIEM solutions, I was inclined to deploy Wazuh on another infrastructure at work.
On gcu IRC channel we had an exchange about antivirus on OpenBSD and:
- Wazuh was claimed to be difficult to maintain
- I discovered Wazuh was ported to FreeBSD @ https://www.freebsd.org/status/report-2026-01-2026-03/wazuh/ - that's this report which points to Serpico