SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedJune 25, 2025
UpdatedJune 25, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"4a:23:17:92:49:b1:fa:85:55:97:f4:f8:2e:b9:97:f2:3c:26:b6:14"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/4a23179249b1fa855597f4f82eb997f23c26b614/; sid:903205320; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!