SSLBL: Malicious SSL certificate detected (Guildma C&C)
Sourcesslbl/ssl-fp-blacklist
CreatedOctober 24, 2025
UpdatedOctober 24, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (Guildma C&C)"; tls_cert_fingerprint; content:"a2:b0:84:52:3a:20:c4:d3:aa:3b:67:c6:bd:48:11:d5:5c:93:bb:97"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/a2b084523a20c4d3aa3b67c6bd4811d55c93bb97/; sid:903208319; rev:1;)
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!