SSLBL: Malicious SSL certificate detected (PureLogsStealer C&C)

SID: 903210516Rev: 1EnabledDerived1 views
Filesslblacklist_tls_cert.rules
CreatedAugust 27, 2026
UpdatedAugust 27, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (PureLogsStealer C&C)"; tls_cert_fingerprint; content:"96:9b:40:a4:fd:2f:b5:79:a2:9a:ed:9b:2f:81:a7:cf:5c:c0:b1:db"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/969b40a4fd2fb579a29aed9b2f81a7cf5cc0b1db/; sid:903210516; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!