SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedSeptember 25, 2025
UpdatedSeptember 25, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)"; tls_cert_fingerprint; content:"d8:26:bd:d5:1b:74:65:91:d4:75:64:b5:d3:31:17:33:70:bb:f9:c5"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/d826bdd51b746591d47564b5d331173370bbf9c5/; sid:903208129; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!