Clearcut is a tool that uses machine learning to help you focus on the log entries that really need manual review
☆196Oct 24, 2016Updated 9 years ago
Alternatives and similar repositories for Clearcut
Users that are interested in Clearcut are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Assimilate is a series of scripts for using the Naïve Bayes algorithm to find potential malicious activity in HTTP headers☆93Oct 15, 2017Updated 8 years ago
- A threat hunting / data analysis environment based on Python, Pandas, PySpark and Jupyter Notebook.☆250Jul 19, 2021Updated 5 years ago
- An informational repo about hunting for adversaries in your IT environment.☆1,882Nov 17, 2021Updated 4 years ago
- Bro scripts written by CrowdStrike Services☆150May 3, 2021Updated 5 years ago
- ☆154Dec 6, 2018Updated 7 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Tool to gather Threat Intelligence indicators from publicly available sources☆655Mar 14, 2019Updated 7 years ago
- Automated, Collection, and Enrichment Platform☆326Nov 14, 2019Updated 6 years ago
- Data Hacking Project☆783Mar 5, 2019Updated 7 years ago
- ssdeep based clustering tool☆14Jan 17, 2016Updated 10 years ago
- ☆12Jun 24, 2017Updated 9 years ago
- Zeek Analysis Tools (ZAT): Processing and analysis of Zeek network data with Pandas, scikit-learn, Kafka and Spark☆456Jun 1, 2026Updated last month
- ☆25Aug 14, 2015Updated 10 years ago
- "Evolving AppCompat/AmCache data analysis beyond grep"☆212Sep 15, 2021Updated 4 years ago
- Powershell Threat Hunting Module☆293Sep 21, 2016Updated 9 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- checks site content against known good ssdeep hash, identifies matches☆10Jun 2, 2019Updated 7 years ago
- VolatilityBot – An automated memory analyzer for malware samples and memory dumps☆268Jun 15, 2021Updated 5 years ago
- Basic Anomaly IDS capabilities with Python and Bro☆105Feb 27, 2018Updated 8 years ago
- Tool to extract indicators of compromise from security reports in PDF format☆439Feb 24, 2023Updated 3 years ago
- A community-driven, open-source project to share detection logic, adversary tradecraft and resources to make detection development more e…☆4,610Jan 12, 2026Updated 6 months ago
- Sources, configuration and how to detect evil things utilizing Microsoft Sysmon.☆943Dec 12, 2023Updated 2 years ago
- Applied Network Security Monitoring☆15Nov 19, 2013Updated 12 years ago
- Incident Response Forensic Framework☆608Nov 20, 2019Updated 6 years ago
- A Windows Event Processing Utility☆47Feb 21, 2018Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- threat language parser☆59Apr 20, 2015Updated 11 years ago
- domain name/brand infringement detector. pulls newly registered domains daily, searches variations of your company domain names and alert…☆23Feb 22, 2022Updated 4 years ago
- An analytical framework for network traffic and behavioral analytics☆457Dec 7, 2022Updated 3 years ago
- Detect Phishing with Bro IDS☆18Feb 1, 2017Updated 9 years ago
- A Python library to help with some common threat hunting data analysis operations☆142Apr 23, 2023Updated 3 years ago
- Indicator Extractor☆141Jul 14, 2018Updated 8 years ago
- Various scrips☆12Oct 19, 2022Updated 3 years ago
- FireEye Alert json files to MISP Malware information sharing plattform (Alpha)☆32Jun 11, 2017Updated 9 years ago
- BinaryAlert: Serverless, Real-time & Retroactive Malware Detection.☆1,453Dec 12, 2023Updated 2 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- DPS' Lightweight Investigation Notebook☆434Dec 31, 2023Updated 2 years ago
- Python scripts to parse scans.io ssl data and ingest into elasticsearch for searching☆33May 14, 2016Updated 10 years ago
- Utilizing your Threat data from a MISP instance into CarbonBlack Response by exposing the data in the Threat Intelligence Feed.☆20May 25, 2022Updated 4 years ago
- Laika BOSS: Object Scanning System☆751Dec 16, 2024Updated last year
- Real Intelligence Threat Analytics (RITA) is a framework for detecting command and control communication through network traffic analysis…☆2,511Jan 12, 2026Updated 6 months ago
- Collecting & Hunting for IOCs with gusto and style☆118Aug 9, 2018Updated 7 years ago
- This package allows for creating alerts in The Hive from emails retrieved from a Microsoft Exchange mailbox.☆12Jul 13, 2017Updated 9 years ago