Unlock SSL Intelligence: How SSL History Boosts Threat Hunting
hunt.io | blog | #threat-hunting | #tls | #ssl-certificates | #apt41 | #ssl-intelligence | #c2-infrastructure
Summary
SSL intelligence—certificate issuers, validity and reuse patterns—exposes malicious infrastructure; Hunt.io cites KeyPlug/GhostWolf and Cyberhaven cases where certificate history revealed C2 servers.
- Published
- Collected
Skip to content