What does 'Short-Term SSL Certificate Validity' mean in SOC or domain analysis?
It means the SSL/TLS certificate of the domain has an unusually short validity period, often lasting only days or weeks. This pattern is frequently associated with malicious infrastructures such as phishing pages, temporary command-and-control servers, or malware distribution hosts.