SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedSeptember 15, 2025
UpdatedSeptember 15, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"1a:8e:6e:8f:a9:ad:e3:eb:17:46:6b:a9:82:f4:0f:44:6a:bf:98:e6"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/1a8e6e8fa9ade3eb17466ba982f40f446abf98e6/; sid:903207447; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!