ClickHouse-backed IOC scanning, relationship graph visualization, wildcard expansion and MITRE ATT&CK mapping. 4-tab UI with real-time results.
Paste IPs, domains, URLs or hashes (MD5/SHA1/SHA256). Scan ClickHouse canonical_events for matches.
Trace event chains through IP/domain/process relationships with BFS depth control (max 5).
Resolve patterns like 10.0.1.* against 7-day ClickHouse data with regex matching.
Search events matching T-code patterns (T1003, T1059, T1550).
Full event search with severity/category/server/service filters and severity chips.
Export hunt results as CSV/JSON and copy IOCs for firewall rules or playbooks.
End-to-end pipeline diagrams from the SYNOTI engine.
Deploy SYNOTI on your infrastructure today — air-gapped, self-healing, AI-native.