SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedOctober 14, 2025
UpdatedOctober 14, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Rhadamanthys C&C)"; tls_cert_fingerprint; content:"24:04:d4:6d:ff:0c:d2:ed:c0:0a:e7:6d:01:bc:c1:64:a3:07:08:0a"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/2404d46dff0cd2edc00ae76d01bcc164a307080a/; sid:903208242; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!