SSLBL: Malicious SSL certificate detected (Ransomware C&C)

SID: 903200307Rev: 136 views
History
Sourcesslbl/ssl-fp-blacklist
CreatedJune 25, 2025
UpdatedJune 25, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Ransomware C&C)"; tls_cert_fingerprint; content:"d8:af:2f:6a:1a:2b:a2:b1:b6:e1:a2:60:e7:91:fc:ab:88:cc:2c:8d"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/d8af2f6a1a2ba2b1b6e1a260e791fcab88cc2c8d/; sid:903200307; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!