SSLBL: Malicious SSL certificate detected (OrcusRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedJune 25, 2025
UpdatedJune 25, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (OrcusRAT C&C)"; tls_cert_fingerprint; content:"83:21:71:b1:08:d6:f9:e2:a0:a9:d4:53:3e:1c:6a:cc:fb:ba:80:72"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/832171b108d6f9e2a0a9d4533e1c6accfbba8072/; sid:903203120; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!