SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedSeptember 15, 2025
UpdatedSeptember 15, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)"; tls_cert_fingerprint; content:"36:0e:af:d3:6e:e2:19:b4:51:18:d1:ee:cb:6d:df:02:41:a1:0c:83"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/360eafd36ee219b45118d1eecb6ddf0241a10c83/; sid:903207568; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!