SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedOctober 10, 2025
UpdatedOctober 10, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"2c:ec:55:d5:63:ba:02:f6:cc:47:e4:b5:28:09:2e:d2:2b:89:fa:37"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/2cec55d563ba02f6cc47e4b528092ed22b89fa37/; sid:903208223; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!