Clearcut is a tool that uses machine learning to help you focus on the log entries that really need manual review
☆197Oct 24, 2016Updated 9 years ago
Alternatives and similar repositories for Clearcut
Users that are interested in Clearcut are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Assimilate is a series of scripts for using the Naïve Bayes algorithm to find potential malicious activity in HTTP headers☆93Oct 15, 2017Updated 8 years ago
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆250Jul 19, 2021Updated 5 years ago
- An informational repo about hunting for adversaries in your IT environment.☆1,885Nov 17, 2021Updated 4 years ago
- Bro scripts written by CrowdStrike Services☆150May 3, 2021Updated 5 years ago
- ☆154Dec 6, 2018Updated 7 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Tool to gather Threat Intelligence indicators from publicly available sources☆656Mar 14, 2019Updated 7 years ago
- Automated, Collection, and Enrichment Platform☆325Nov 14, 2019Updated 6 years ago
- Data Hacking Project☆784Mar 5, 2019Updated 7 years ago
- ssdeep based clustering tool☆14Jan 17, 2016Updated 10 years ago
- ☆12Jun 24, 2017Updated 9 years ago
- Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark☆456Jun 1, 2026Updated 2 months ago
- ☆25Aug 14, 2015Updated 11 years ago
- "Evolving AppCompat/AmCache data analysis beyond grep"☆213Sep 15, 2021Updated 4 years ago
- Powershell Threat Hunting Module☆293Sep 21, 2016Updated 9 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- checks site content against known good ssdeep hash, identifies matches☆10Jun 2, 2019Updated 7 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆268Jun 15, 2021Updated 5 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Feb 27, 2018Updated 8 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- Provides an easy way to collect and send Slack access & integration logs.☆13Oct 19, 2021Updated 4 years ago
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,635Jan 12, 2026Updated 7 months ago
- Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.☆942Dec 12, 2023Updated 2 years ago
- Applied Network Security Monitoring☆15Nov 19, 2013Updated 12 years ago
- Detection of malware using dynamic behavior and Windows audit logs☆76Sep 3, 2015Updated 10 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Incident Response Forensic Framework☆607Nov 20, 2019Updated 6 years ago
- A Windows Event Processing Utility☆47Feb 21, 2018Updated 8 years ago
- threat language parser☆59Apr 20, 2015Updated 11 years ago
- domain name/brand infringement detector. pulls newly registered domains daily, searches variations of your company domain names and alert…☆23Feb 22, 2022Updated 4 years ago
- An analytical framework for network traffic and behavioral analytics☆457Dec 7, 2022Updated 3 years ago
- Detect Phishing with Bro IDS☆18Feb 1, 2017Updated 9 years ago
- A Python library to help with some common threat hunting data analysis operations☆142Apr 23, 2023Updated 3 years ago
- Indicator Extractor☆141Jul 14, 2018Updated 8 years ago
- Various scrips☆12Oct 19, 2022Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Jun 11, 2017Updated 9 years ago
- BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.☆1,454Dec 12, 2023Updated 2 years ago
- DPS' Lightweight Investigation Notebook☆435Dec 31, 2023Updated 2 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33May 14, 2016Updated 10 years ago
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆20May 25, 2022Updated 4 years ago
- Laika BOSS: Object Scanning System☆753Dec 16, 2024Updated last year
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,510Jan 12, 2026Updated 7 months ago