SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedSeptember 23, 2025
UpdatedSeptember 23, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)"; tls_cert_fingerprint; content:"51:b9:3e:d8:ac:7e:b7:e7:00:27:ab:6b:c9:16:b8:83:ab:29:2c:72"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/51b93ed8ac7eb7e70027ab6bc916b883ab292c72/; sid:903208107; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!