TGViewer
Netlas.io Netlas.io @netlas · 2.32K subscribers
Post #542 935
⭐️ Ever wondered how professional threat intelligence feeds are actually built?

Our partners at RST Cloud pull back the curtain on their approach to threat hunting — revealing how they identify, track, and expand command-and-control (C2) infrastructure at scale.

🔍 Inside the post:
• How RST Cloud discovers malicious infrastructure in the wild
• Techniques for linking isolated IoCs into meaningful threat clusters
• The methodology behind building reliable, high-quality threat intelligence feeds
• How Netlas data helps enrich and accelerate investigations

This is a rare look into the real workflows behind modern threat intelligence — straight from a team doing it every day.

🕒 5 min read

👉 https://netlas.io/blog/с2_hunting_by_rst_cloud/
netlas.io How we hunt C2 infrastructure at RST Cloud using Netlas - Netlas Blog RST Cloud's C2 hunting workflow with Netlas: use JARM, HTTP headers, certificates, and domain pivots to detect active malicious infrastructure early.
  • 👍 3
  • ❤ 2
  • 🔥 2
More from @netlas
  1. Sep 23, 2026CVE-2026-87902: Path Traversal in WordPress leading to RCE, 9.2 Rating 🔥 Another newly di…
  2. Sep 22, 2026CVE-2026-93952: Improper Input Validation in VeloCloud Orchestrator, 10.0 Rating 🔥 A rece…
  3. Sep 21, 2026CVE-2026-13684 and others: Multiple vulnerabilities in Synology DSM, up to 9.8 Rating 🔥 S…
  4. Sep 18, 202611 new vulnerabilities in WordPress, no CVE assigned yet ❗️ WordPress 7.1.1 security relea…
  5. Sep 17, 2026CVE-2026-20329 and others: Multiple vulnerabilities in Cisco ASA, up to 9.9 Rating 🔥 Cisc…
  6. Sep 16, 2026CVE-2026-61642: Request smuggling is possible in Squid proxy, 7.7 Rating 🔥 A recently dis…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →