SSLBL: Malicious SSL certificate detected (ACRStealer C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedOctober 7, 2025
UpdatedOctober 7, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (ACRStealer C&C)"; tls_cert_fingerprint; content:"fc:0a:fa:a2:e3:0b:12:1c:2d:92:98:27:af:d6:9e:4c:63:66:9a:c3"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/fc0afaa2e30b121c2d929827afd69e4c63669ac3/; sid:903208209; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!