Integration Details

Blumira’s Next-Generation SIEM platform integrates with Malware Bytes to detect cybersecurity threats and provide an automated or actionable response to remediate when a threat is detected on an endpoint.

When configured, the Blumira integration with Malware Bytes will stream server and workstation endpoint security event logs and alerts to the Blumira service for threat detection and actionable response.

Configuration Instructions

To connect your Malwarebytes Management Console to connect to a Syslog Server, you will need to have at least version 1.6.0 of the Malwarebytes Management Console.

Upgrade the Malwarebytes Management Console

Once you’ve installed version 1.6.0 or higher, please do the following:

  1. Log on to the Management Console
  2. Click the Admin pane
  3. Click the Syslog Server tab
  4. Click Change
  5. Check Enable Syslog
  6. Enter the following information
    • Syslog Server: The IP address or Hostname of your Blumira sensor
    • Port: The port you’d like to use for Syslog traffic from your Management Server
    • Protocol: Select to use either TCP or UDP protocol
    • Facility: The Facility you’d like Malwarebytes information to appear in Syslog as
    • Severity: The Severity you’d like Malwarebytes information to appear in Syslog as
  7. Click OK