RNCTIQ Cyber Investigation & Intelligence Platform Trace. Correlate. Investigate. Transforming an isolated IP address or domain name into a documented, time-stamped, and defensible investigative case ā without leaving a single interface.
Characterizing a single suspicious IP address usually means ten browser tabs, ten different query syntaxes, endless copy-pasting, and data that will be outdated three days later.
I built RNCTIQ so it all starts with a single input.
What the tool produces from a single indicator:
ā A reasoned assessment ā a score out of 100, based on 8 weighted dimensions, with every indicator and its contribution clearly explained.
ā Complete infrastructure mapping ā pivots through certificates, JARM fingerprints, and name servers.
ā Automatic correlation with your other investigations and cases.
ā Continuous monitoring that alerts you whenever the target changes.
ā A TLP-classified PDF report, ready to support investigative procedures.
Two things matter just as much as the features:
The legal framework is built in. Any action that interacts with the target is disabled by default and fully logged.
The tool does not draw conclusions; it documents evidence. A high score represents a convergence of indicators, not proof.
No API keys. No installation. Your data stays under your control.
#CyberSecurity #OSINT #ThreatIntelligence #DFIR #SOC